Skip to content
Merged
Show file tree
Hide file tree
Changes from all commits
Commits
File filter

Filter by extension

Filter by extension

Conversations
Failed to load comments.
Loading
Jump to
Jump to file
Failed to load files.
Loading
Diff view
Diff view
14 changes: 8 additions & 6 deletions de/15.8/admin/general-guide.rst
Original file line number Diff line number Diff line change
Expand Up @@ -383,6 +383,9 @@ SPNEGO

|image5|

.. note::
SPNEGO-bezogene Einstellungen werden prozessweit innerhalb der zugrunde liegenden Bibliothek gemeinsam genutzt. Damit Änderungen daran wirksam werden, ist ein Neustart von |Fess| erforderlich.

Krb5-Konfiguration
::::::::::::::::::

Expand All @@ -407,6 +410,7 @@ Vorab-Authentifizierung Benutzername
::::::::::::::::::::::::::::::::::::

Gibt den Benutzernamen für die SPNEGO-Vorab-Authentifizierung an.
Werden Benutzername und Passwort leer gelassen, wird die keytab-basierte Serveranmeldung verwendet.

Vorab-Authentifizierung Passwort
::::::::::::::::::::::::::::::::
Expand All @@ -422,6 +426,7 @@ Unsichere Basic-Authentifizierung erlauben
::::::::::::::::::::::::::::::::::::::::::

Gibt an, ob Basic-Authentifizierung über unsichere (HTTP) Verbindungen erlaubt werden soll.
Dies ist standardmäßig deaktiviert, damit Anmeldedaten nicht im Klartext übertragen werden (über HTTPS-Verbindungen wird Basic-Authentifizierung weiterhin angeboten).

NTLM-Aufforderung
::::::::::::::::::
Expand All @@ -432,21 +437,18 @@ Localhost erlauben
::::::::::::::::::

Gibt an, ob der Zugriff vom Localhost erlaubt werden soll.
Dies ist aus Sicherheitsgründen standardmäßig deaktiviert, da bei Aktivierung Anfragen vom selben Host ohne Kerberos-Prüfung als Server-Betriebssystembenutzer authentifiziert werden.

Delegation erlauben
:::::::::::::::::::

Gibt an, ob Kerberos-Delegation erlaubt werden soll.

Verzeichnisse ausschließen
::::::::::::::::::::::::::

Gibt Verzeichnisse an, die von der SPNEGO-Authentifizierung ausgeschlossen werden sollen.

Logger-Ebene
::::::::::::

Gibt die Protokollausgabeebene für die SPNEGO-Authentifizierung als numerischen Wert an.
Gibt die Protokollausgabeebene für die SPNEGO-Authentifizierung als numerischen Wert von 0 bis 7 an.
Wird das Feld leer gelassen oder ein nicht-numerischer Wert angegeben, wird die Protokollebene automatisch ermittelt.

Entra ID
--------
Expand Down
14 changes: 8 additions & 6 deletions en/15.8/admin/general-guide.rst
Original file line number Diff line number Diff line change
Expand Up @@ -383,6 +383,9 @@ SPNEGO

|image5|

.. note::
SPNEGO settings are shared process-wide inside the underlying library, so a |Fess| restart is required to apply changes to them.

Krb5 Config
:::::::::::

Expand All @@ -407,6 +410,7 @@ Pre-Auth Username
:::::::::::::::::

Specifies the username for SPNEGO pre-authentication.
Leaving the username and password empty enables keytab-based server login.

Pre-Auth Password
:::::::::::::::::
Expand All @@ -422,6 +426,7 @@ Allow Unsecure Basic Auth
:::::::::::::::::::::::::

Specify whether to allow Basic authentication over unsecure (HTTP) connections.
This is disabled by default to prevent credentials from being sent in clear text (Basic authentication is still offered over HTTPS connections).

Prompt NTLM
::::::::::::
Expand All @@ -432,21 +437,18 @@ Allow Localhost
:::::::::::::::

Specify whether to allow access from localhost.
This is disabled by default for security reasons, because when enabled, same-host requests are authenticated as the server OS user without Kerberos verification.

Allow Delegation
::::::::::::::::

Specify whether to allow Kerberos delegation.

Exclude Directories
:::::::::::::::::::

Specifies directories to exclude from SPNEGO authentication.

Logger Level
::::::::::::

Specifies the log output level for SPNEGO authentication as a numeric value.
Specifies the log output level for SPNEGO authentication as a numeric value from 0 to 7.
If left empty or set to a non-numeric value, the log level is detected automatically.

Entra ID
--------
Expand Down
14 changes: 8 additions & 6 deletions es/15.8/admin/general-guide.rst
Original file line number Diff line number Diff line change
Expand Up @@ -383,6 +383,9 @@ SPNEGO

|image5|

.. note::
La configuración de SPNEGO se comparte a nivel de proceso dentro de la biblioteca subyacente, por lo que es necesario reiniciar |Fess| para aplicar los cambios.

Configuración Krb5
:::::::::::::::::::

Expand All @@ -407,6 +410,7 @@ Nombre de usuario de preautenticación
::::::::::::::::::::::::::::::::::::::

Especifica el nombre de usuario para la preautenticación SPNEGO.
Si el nombre de usuario y la contraseña se dejan vacíos, se habilita el inicio de sesión del servidor basado en keytab.

Contraseña de preautenticación
:::::::::::::::::::::::::::::::
Expand All @@ -422,6 +426,7 @@ Permitir autenticación básica no segura
::::::::::::::::::::::::::::::::::::::::

Especifique si desea permitir la autenticación básica a través de conexiones no seguras (HTTP).
Esto está deshabilitado de forma predeterminada para evitar que las credenciales se envíen en texto claro (la autenticación básica sigue estando disponible en las conexiones HTTPS).

Solicitud NTLM
:::::::::::::::
Expand All @@ -432,21 +437,18 @@ Permitir localhost
::::::::::::::::::

Especifique si desea permitir el acceso desde localhost.
Esto está deshabilitado de forma predeterminada por motivos de seguridad, ya que si se habilita, las solicitudes desde el mismo host se autentican como el usuario del sistema operativo del servidor sin verificación Kerberos.

Permitir delegación
:::::::::::::::::::

Especifique si desea permitir la delegación Kerberos.

Directorios excluidos
:::::::::::::::::::::

Especifica los directorios que se excluirán de la autenticación SPNEGO.

Nivel de registrador
::::::::::::::::::::

Especifica el nivel de salida de registro para la autenticación SPNEGO como valor numérico.
Especifica el nivel de salida de registro para la autenticación SPNEGO como valor numérico de 0 a 7.
Si se deja vacío o se establece un valor no numérico, el nivel de registro se detecta automáticamente.

Entra ID
--------
Expand Down
14 changes: 8 additions & 6 deletions fr/15.8/admin/general-guide.rst
Original file line number Diff line number Diff line change
Expand Up @@ -383,6 +383,9 @@ SPNEGO

|image5|

.. note::
Les paramètres SPNEGO sont partagés au niveau du processus au sein de la bibliothèque sous-jacente ; un redémarrage de |Fess| est donc nécessaire pour appliquer les modifications qui leur sont apportées.

Configuration Krb5
:::::::::::::::::::

Expand All @@ -407,6 +410,7 @@ Nom d'utilisateur de pré-authentification
::::::::::::::::::::::::::::::::::::::::::

Spécifie le nom d'utilisateur pour la pré-authentification SPNEGO.
Laisser le nom d'utilisateur et le mot de passe vides active la connexion du serveur basée sur un keytab.

Mot de passe de pré-authentification
:::::::::::::::::::::::::::::::::::::
Expand All @@ -422,6 +426,7 @@ Autoriser l'authentification Basic non sécurisée
:::::::::::::::::::::::::::::::::::::::::::::::::

Spécifie s'il faut autoriser l'authentification Basic sur les connexions non sécurisées (HTTP).
Ceci est désactivé par défaut afin d'éviter que les identifiants ne soient transmis en clair (l'authentification Basic reste proposée sur les connexions HTTPS).

Invite NTLM
::::::::::::
Expand All @@ -432,21 +437,18 @@ Autoriser localhost
:::::::::::::::::::

Spécifie s'il faut autoriser l'accès depuis localhost.
Ceci est désactivé par défaut pour des raisons de sécurité, car lorsqu'il est activé, les requêtes provenant du même hôte sont authentifiées en tant qu'utilisateur du système d'exploitation du serveur sans vérification Kerberos.

Autoriser la délégation
:::::::::::::::::::::::

Spécifie s'il faut autoriser la délégation Kerberos.

Répertoires exclus
::::::::::::::::::

Spécifie les répertoires à exclure de l'authentification SPNEGO.

Niveau de journalisation
::::::::::::::::::::::::

Spécifie le niveau de sortie du journal pour l'authentification SPNEGO sous forme de valeur numérique.
Spécifie le niveau de sortie du journal pour l'authentification SPNEGO sous forme de valeur numérique de 0 à 7.
Si ce champ est laissé vide ou défini sur une valeur non numérique, le niveau de journalisation est détecté automatiquement.

Entra ID
--------
Expand Down
14 changes: 8 additions & 6 deletions ja/15.8/admin/general-guide.rst
Original file line number Diff line number Diff line change
Expand Up @@ -383,6 +383,9 @@ SPNEGO

|image5|

.. note::
SPNEGO関連の設定は基盤ライブラリ内でプロセス全体に共有されるため、変更を反映するには |Fess| の再起動が必要です。

Krb5設定
:::::::

Expand All @@ -407,6 +410,7 @@ JAASのサーバーログインモジュール名を指定します。
::::::::::::::

SPNEGO事前認証に使用するユーザー名を指定します。
ユーザー名とパスワードを空欄にすると、keytabベースのサーバーログインが使用されます。

事前認証パスワード
::::::::::::::
Expand All @@ -422,6 +426,7 @@ Basic認証によるフォールバックを許可するかを指定します。
:::::::::::::::::

非セキュア(HTTP)接続でのBasic認証を許可するかを指定します。
資格情報が平文で送信されるのを防ぐため、デフォルトでは無効です(HTTPS接続ではBasic認証が提供されます)。

NTLMプロンプト
:::::::::::
Expand All @@ -432,21 +437,18 @@ NTLMプロンプトを有効にするかを指定します。
::::::::::::::

ローカルホストからのアクセスを許可するかを指定します。
有効にすると同一ホストからのリクエストがKerberos検証なしでサーバーOSのユーザーとして認証されるため、セキュリティ上の理由からデフォルトでは無効です。

委任許可
::::::

Kerberos委任を許可するかを指定します。

除外ディレクトリ
::::::::::::

SPNEGO認証から除外するディレクトリを指定します。

ロガーレベル
:::::::::

SPNEGO認証に関するログの出力レベルを数値で指定します。
SPNEGO認証に関するログの出力レベルを0〜7の数値で指定します。
空欄または数値以外の値を指定した場合は、自動的にログレベルが判定されます。

Entra ID
--------
Expand Down
14 changes: 8 additions & 6 deletions ko/15.8/admin/general-guide.rst
Original file line number Diff line number Diff line change
Expand Up @@ -383,6 +383,9 @@ SPNEGO

|image5|

.. note::
SPNEGO 관련 설정은 기반 라이브러리 내에서 프로세스 전체에 공유되므로, 변경 사항을 적용하려면 |Fess| 를 재시작해야 합니다.

Krb5 설정
::::::::

Expand All @@ -407,6 +410,7 @@ JAAS의 서버 로그인 모듈명을 지정합니다.
::::::::::::::

SPNEGO 사전 인증에 사용하는 사용자명을 지정합니다.
사용자명과 비밀번호를 비워 두면 keytab 기반 서버 로그인이 사용됩니다.

사전 인증 비밀번호
::::::::::::::
Expand All @@ -422,6 +426,7 @@ Basic 인증 폴백을 허용할지 여부를 지정합니다.
::::::::::::::::::

비보안(HTTP) 연결에서의 Basic 인증을 허용할지 여부를 지정합니다.
자격 증명이 평문으로 전송되는 것을 방지하기 위해 기본적으로 비활성화되어 있습니다(HTTPS 연결에서는 Basic 인증이 계속 제공됩니다).

NTLM 프롬프트
:::::::::::
Expand All @@ -432,21 +437,18 @@ NTLM 프롬프트를 활성화할지 여부를 지정합니다.
::::::::::::

로컬호스트에서의 접근을 허용할지 여부를 지정합니다.
활성화하면 동일 호스트에서의 요청이 Kerberos 검증 없이 서버 OS 사용자로 인증되므로, 보안상의 이유로 기본적으로 비활성화되어 있습니다.

위임 허용
::::::::

Kerberos 위임을 허용할지 여부를 지정합니다.

제외 디렉터리
::::::::::

SPNEGO 인증에서 제외할 디렉터리를 지정합니다.

로거 레벨
::::::::

SPNEGO 인증에 관한 로그 출력 레벨을 숫자로 지정합니다.
SPNEGO 인증에 관한 로그 출력 레벨을 0~7 사이의 숫자로 지정합니다.
비워 두거나 숫자가 아닌 값을 지정하면 로그 레벨이 자동으로 판별됩니다.

Entra ID
--------
Expand Down
14 changes: 8 additions & 6 deletions zh-cn/15.8/admin/general-guide.rst
Original file line number Diff line number Diff line change
Expand Up @@ -383,6 +383,9 @@ SPNEGO

|image5|

.. note::
SPNEGO 相关设置在底层库中以进程级别共享,因此更改这些设置后需要重启 |Fess| 才能生效。

Krb5配置
::::::

Expand All @@ -407,6 +410,7 @@ Krb5配置
:::::::::

指定 SPNEGO 预认证使用的用户名。
将用户名和密码留空时,将使用基于 keytab 的服务器登录。

预认证密码
::::::::
Expand All @@ -422,6 +426,7 @@ Krb5配置
:::::::::::::::

指定是否允许在非安全(HTTP)连接上使用 Basic 认证。
为防止凭据以明文形式发送,默认情况下此项处于禁用状态(HTTPS 连接仍会提供 Basic 认证)。

NTLM提示
::::::
Expand All @@ -432,21 +437,18 @@ NTLM提示
:::::::::

指定是否允许从本地主机访问。
出于安全考虑,默认情况下此项处于禁用状态,因为启用后,来自同一主机的请求将在不进行 Kerberos 验证的情况下以服务器操作系统用户身份进行认证。

允许委托
::::::

指定是否允许 Kerberos 委托。

排除目录
::::::

指定从 SPNEGO 认证中排除的目录。

日志记录级别
::::::::::

以数值指定 SPNEGO 认证的日志输出级别。
以 0 到 7 之间的数值指定 SPNEGO 认证的日志输出级别。
如果留空或指定非数值,则会自动判定日志级别。

Entra ID
--------
Expand Down