Lines Matching +full:fault +full:- +full:log +full:- +full:enable

1 .\" Copyright (c) 1999 - 2005 Kungliga Tekniska Högskolan
53 .Bd -literal -offset indent
81 consists of one or more non-whitespace characters.
83 STRINGs that are specified later in this man-page uses the following
85 .Bl -tag -width "xxx" -offset indent
93 valid encryption types are: des-cbc-crc, des-cbc-md4, des-cbc-md5,
94 des3-cbc-sha1, arcfour-hmac-md5, aes128-cts-hmac-sha1-96, and
95 aes256-cts-hmac-sha1-96 .
101 .Bl -tag -width "xxx" -offset indent
107 .Bl -enum -compact
119 .Bl -tag -width "xxx" -offset indent
124 .It Li no-addresses = Va boolean
140 .Bl -tag -width "xxx" -offset indent
161 .Bl -tag -width "xxx" -offset indent
162 .It Va destination-realm Li = Va next-hop-realm
222 enable this option unconditionally.
226 .It Li http_proxy = Va proxy-spec
227 A HTTP-proxy to use when talking to the KDC via HTTP.
228 .It Li dns_proxy = Va proxy-spec
229 Enable using DNS via HTTP.
239 Write log-entries using UTC instead of your local time zone.
251 .It Li fcc-mit-ticketflags = Va boolean
258 .It Li check-rd-req-server
261 this is very useful when the GSS-API server input the
271 component, in the latter case the domain-string should start with a
284 .Bl -tag -width "xxx" -offset indent
286 .Bl -tag -width "xxx" -offset indent
337 .Bl -tag -width "xxx" -offset indent
338 .It Va client-realm Li = {
339 .Bl -tag -width "xxx" -offset indent
340 .It Va server-realm Li = Va hop-realm ...
342 .Va hop-realm
345 .Va server-realm .
347 allowed in a multi-hop traversal from
348 .Va client-realm
350 .Va server-realm .
356 .Bl -tag -width "xxx" -offset indent
368 .Bl -tag -width "xxx" -offset indent
370 .Bl -tag -width "xxx" -offset indent
388 Use this file as the log of changes performed to the database.
390 .Nm ipropd-master
394 .It Li max-request = Va SIZE
396 .It Li require-preauth = Va BOOL
397 If set pre-authentication is required.
398 Since krb4 requests are not pre-authenticated they will be rejected.
403 .It Li enable-kerberos4 = Va BOOL
405 .It Li v4-realm = Va REALM
407 .It Li enable-524 = Va BOOL
410 .Va enable-kerberos4 .
411 .It Li enable-http = Va BOOL
412 Should the kdc answer kdc-requests over http.
413 .It Li enable-kaserver = Va BOOL
415 .It Li tgt-use-strongest-session-key = Va BOOL
417 client's AS-REQ or TGS-REQ enctype list for the ticket session key that
420 the client's AS-REQ enctype list that is also supported by the KDC and
422 .It Li svc-use-strongest-session-key = Va BOOL
423 Like tgt-use-strongest-session-key, but applies to the session key
426 .It Li preauth-use-strongest-session-key = Va BOOL
428 AS-REQ for PA-ETYPE-INFO2 (i.e., for password-based pre-authentication).
429 Else pick the first supported enctype from the client's AS-REQ. Defaults
431 .It Li use-strongest-server-key = Va BOOL
436 .It Li check-ticket-addresses = Va BOOL
439 .It Li allow-null-ticket-addresses = Va BOOL
440 Allow address-less tickets.
442 .It Li allow-anonymous = Va BOOL
445 Encode as-rep as tgs-rep tobe compatible with mistakes older DCE secd did.
453 .Bl -tag -width "xxx" -offset indent
460 .It Li hdb-ldap-structural-object Va structural object
465 .It Li hdb-ldap-create-base Va creation dn
468 .It Li enable-digest = Va BOOL
472 .Li ntlm-v2 .
475 .Bl -tag -width "xxx" -offset indent
476 .It Li require-preauth = Va BOOL
477 If pre-authentication is required to talk to the kadmin server.
488 [(des|des3|etype):](pw-salt|afs3-salt)[:string]
495 .Bl -tag -width "xxx" -offset indent
498 .Va pw-salt
501 .Va des:pw-salt:
506 .Va default_keys = Va des3:pw-salt Va v4
513 .Bl -tag -width "xxx" -offset indent
514 .It Li check_library = Va library-name
516 .It Li check_function = Va function-name
522 among other minimum-length, character-class, external-check.
529 .Bl -tag -width "/etc/krb5.conf"
534 .Bd -literal -offset indent
552 kdc = FILE:/var/heimdal/kdc.log
554 default = SYSLOG:INFO:USER