1
# SOME DESCRIPTIVE TITLE.
2
# Copyright (C) YEAR Red Hat
3
# This file is distributed under the same license as the PACKAGE package.
7
"Project-Id-Version: FreeIPA\n"
8
"Report-Msgid-Bugs-To: https://bugzilla.redhat.com/enter_bug.cgi?product=freeIPA\n"
9
"POT-Creation-Date: 2011-06-06 13:27-0400\n"
10
"PO-Revision-Date: 2011-08-18 00:48+0000\n"
11
"Last-Translator: FULL NAME <EMAIL@ADDRESS>\n"
12
"Language-Team: Greek <trans-el@lists.fedoraproject.org>\n"
14
"Content-Type: text/plain; charset=UTF-8\n"
15
"Content-Transfer-Encoding: 8bit\n"
17
"Plural-Forms: nplurals=2; plural=(n != 1)\n"
19
#: ipalib/plugins/__init__.py:20
22
"Sub-package containing all core plugins.\n"
25
#: ipalib/plugins/aci.py:20
28
"Directory Server Access Control Instructions (ACIs)\n"
30
"ACIs are used to allow or deny access to information. This module is\n"
31
"currently designed to allow, not deny, access.\n"
33
"The aci commands are designed to grant permissions that allow updating\n"
34
"existing entries or adding or deleting new ones. The goal of the ACIs\n"
35
"that ship with IPA is to provide a set of low-level permissions that\n"
36
"grant access to special groups called taskgroups. These low-level\n"
37
"permissions can be combined into roles that grant broader access. These\n"
38
"roles are another type of group, roles.\n"
40
"For example, if you have taskgroups that allow adding and modifying users you\n"
41
"could create a role, useradmin. You would assign users to the useradmin\n"
42
"role to allow them to do the operations defined by the taskgroups.\n"
44
"You can create ACIs that delegate permission so users in group A can write\n"
45
"attributes on group B.\n"
47
"The type option is a map that applies to all entries in the users, groups or\n"
48
"host location. It is primarily designed to be used when granting add\n"
49
"permissions (to write new entries).\n"
51
"An ACI consists of three parts:\n"
56
"The target is a set of rules that define which LDAP objects are being\n"
57
"targeted. This can include a list of attributes, an area of that LDAP\n"
58
"tree or an LDAP filter.\n"
60
"The targets include:\n"
61
"- attrs: list of attributes affected\n"
62
"- type: an object type (user, group, host, service, etc)\n"
63
"- memberof: members of a group\n"
64
"- targetgroup: grant access to modify a specific group. This is primarily\n"
65
" designed to enable users to add or remove members of a specific group.\n"
66
"- filter: A legal LDAP filter used to narrow the scope of the target.\n"
67
"- subtree: Used to apply a rule across an entire set of objects. For example,\n"
68
" to allow adding users you need to grant \"add\" permission to the subtree\n"
69
" ldap://uid=*,cn=users,cn=accounts,dc=example,dc=com. The subtree option\n"
70
" is a fail-safe for objects that may not be covered by the type option.\n"
72
"The permissions define what the the ACI is allowed to do, and are one or\n"
74
"1. write - write one or more attributes\n"
75
"2. read - read one or more attributes\n"
76
"3. add - add a new entry to the tree\n"
77
"4. delete - delete an existing entry\n"
78
"5. all - all permissions are granted\n"
80
"Note the distinction between attributes and entries. The permissions are\n"
81
"independent, so being able to add a user does not mean that the user will\n"
84
"The bind rule defines who this ACI grants permissions to. The LDAP server\n"
85
"allows this to be any valid LDAP entry but we encourage the use of\n"
86
"taskgroups so that the rights can be easily shared through roles.\n"
88
"For a more thorough description of access controls see\n"
89
"http://www.redhat.com/docs/manuals/dir-server/ag/8.0/Managing_Access_Control.html\n"
93
"NOTE: ACIs are now added via the permission plugin. These examples are to\n"
94
"demonstrate how the various options work but this is done via the permission\n"
95
"command-line now (see last example).\n"
97
" Add an ACI so that the group \"secretaries\" can update the address on any user:\n"
98
" ipa group-add --desc=\"Office secretaries\" secretaries\n"
99
" ipa aci-add --attrs=streetAddress --memberof=ipausers --group=secretaries --permissions=write --prefix=none \"Secretaries write addresses\"\n"
101
" Show the new ACI:\n"
102
" ipa aci-show --prefix=none \"Secretaries write addresses\"\n"
104
" Add an ACI that allows members of the \"addusers\" permission to add new users:\n"
105
" ipa aci-add --type=user --permission=addusers --permissions=add --prefix=none \"Add new users\"\n"
107
" Add an ACI that allows members of the editors manage members of the admins group:\n"
108
" ipa aci-add --permissions=write --attrs=member --targetgroup=admins --group=editors --prefix=none \"Editors manage admins\"\n"
110
" Add an ACI that allows members of the admin group to manage the street and zip code of those in the editors group:\n"
111
" ipa aci-add --permissions=write --memberof=editors --group=admins --attrs=street,postalcode --prefix=none \"admins edit the address of editors\"\n"
113
" Add an ACI that allows the admins group manage the street and zipcode of those who work for the boss:\n"
114
" ipa aci-add --permissions=write --group=admins --attrs=street,postalcode --filter=\"(manager=uid=boss,cn=users,cn=accounts,dc=example,dc=com)\" --prefix=none \"Edit the address of those who work for the boss\"\n"
116
" Add an entirely new kind of record to IPA that isn't covered by any of the --type options, creating a permission:\n"
117
" ipa permission-add --permissions=add --subtree=\"cn=*,cn=orange,cn=accounts,dc=example,dc=com\" --desc=\"Add Orange Entries\" add_orange\n"
120
"The show command shows the raw 389-ds ACI.\n"
122
"IMPORTANT: When modifying the target attributes of an existing ACI you\n"
123
"must include all existing attributes as well. When doing an aci-mod the\n"
124
"targetattr REPLACES the current attributes, it does not add to them.\n"
128
#: ipalib/plugins/aci.py:153
129
msgid "A list of ACI values"
132
#: ipalib/plugins/aci.py:172
135
" Given a name and a prefix construct an ACI name.\n"
139
#: ipalib/plugins/aci.py:181
142
" Parse the raw ACI name and return a tuple containing the ACI prefix\n"
143
" and the actual ACI name.\n"
147
#: ipalib/plugins/aci.py:193
150
" Pull the group name out of a memberOf filter\n"
154
#: ipalib/plugins/aci.py:204
157
" Given a name and a set of keywords construct an ACI.\n"
161
#: ipalib/plugins/aci.py:215
162
msgid "type, filter, subtree and targetgroup are mutually exclusive"
165
#: ipalib/plugins/aci.py:218
166
msgid "ACI prefix is required"
169
#: ipalib/plugins/aci.py:221
171
"at least one of: type, filter, subtree, targetgroup, attrs or memberof are "
175
#: ipalib/plugins/aci.py:224
176
msgid "filter and memberof are mutually exclusive"
179
#: ipalib/plugins/aci.py:230
180
msgid "group, permission and self are mutually exclusive"
183
#: ipalib/plugins/aci.py:232
184
msgid "One of group, permission or self is required"
187
#: ipalib/plugins/aci.py:251
188
msgid "Group '%s' does not exist"
191
#: ipalib/plugins/aci.py:273
195
#: ipalib/plugins/aci.py:294
196
msgid "Syntax Error: %(error)s"
199
#: ipalib/plugins/aci.py:299
201
"Convert an ACI into its equivalent keywords.\n"
203
" This is used for the modify operation so we can merge the\n"
204
" incoming kw and existing ACI and pass the result to\n"
209
#: ipalib/plugins/aci.py:379
210
msgid "ACI with name \"%s\" not found"
213
#: ipalib/plugins/aci.py:400
217
#: ipalib/plugins/aci.py:401
219
"Prefix used to distinguish ACI types (permission, delegation, selfservice, "
223
#: ipalib/plugins/aci.py:407
230
#: ipalib/plugins/aci.py:412
234
#: ipalib/plugins/aci.py:417
238
#: ipalib/plugins/aci.py:422
242
#: ipalib/plugins/aci.py:423
243
msgid "Permission ACI grants access to"
246
#: ipalib/plugins/aci.py:427 ipalib/plugins/delegation.py:130
250
#: ipalib/plugins/aci.py:428 ipalib/plugins/delegation.py:131
251
msgid "User group ACI grants access to"
254
#: ipalib/plugins/aci.py:432 ipalib/plugins/baseldap.py:60
255
#: ipalib/plugins/delegation.py:113 ipalib/plugins/permission.py:107
256
#: ipalib/plugins/permission.py:118 ipalib/plugins/selfservice.py:86
260
#: ipalib/plugins/aci.py:433
262
"comma-separated list of permissions to grant(read, write, add, delete, all)"
265
#: ipalib/plugins/aci.py:439 ipalib/plugins/delegation.py:119
266
#: ipalib/plugins/permission.py:124 ipalib/plugins/selfservice.py:92
270
#: ipalib/plugins/aci.py:440 ipalib/plugins/delegation.py:120
271
#: ipalib/plugins/permission.py:125 ipalib/plugins/selfservice.py:93
272
msgid "Comma-separated list of attributes"
275
#: ipalib/plugins/aci.py:444 ipalib/plugins/internal.py:164
276
#: ipalib/plugins/permission.py:131
280
#: ipalib/plugins/aci.py:445
281
msgid "type of IPA object (user, group, host, hostgroup, service, netgroup)"
284
#: ipalib/plugins/aci.py:450
288
#: ipalib/plugins/aci.py:451
289
msgid "Member of a group"
292
#: ipalib/plugins/aci.py:455 ipalib/plugins/internal.py:234
293
#: ipalib/plugins/permission.py:144
297
#: ipalib/plugins/aci.py:456 ipalib/plugins/permission.py:145
298
msgid "Legal LDAP filter (e.g. ou=Engineering)"
301
#: ipalib/plugins/aci.py:460 ipalib/plugins/permission.py:150
305
#: ipalib/plugins/aci.py:461
306
msgid "Subtree to apply ACI to"
309
#: ipalib/plugins/aci.py:465 ipalib/plugins/permission.py:156
313
#: ipalib/plugins/aci.py:466
314
msgid "Group to apply ACI to"
317
#: ipalib/plugins/aci.py:470
318
msgid "Target your own entry (self)"
321
#: ipalib/plugins/aci.py:471
322
msgid "Apply ACI to your own entry (self)"
325
#: ipalib/plugins/aci.py:478
332
#: ipalib/plugins/aci.py:482
333
msgid "Created ACI \"%(value)s\""
336
#: ipalib/plugins/aci.py:487
337
msgid "Test the ACI syntax but don't write anything"
340
#: ipalib/plugins/aci.py:493
343
" Execute the aci-create operation.\n"
345
" Returns the entry as it will be created in LDAP.\n"
347
" :param aciname: The name of the ACI being added.\n"
348
" :param kw: Keyword arguments for the other LDAP attributes.\n"
352
#: ipalib/plugins/aci.py:533
359
#: ipalib/plugins/aci.py:538
360
msgid "Deleted ACI \"%(value)s\""
363
#: ipalib/plugins/aci.py:543
366
" Execute the aci-delete operation.\n"
368
" :param aciname: The name of the ACI being added.\n"
369
" :param kw: unused\n"
373
#: ipalib/plugins/aci.py:576
380
#: ipalib/plugins/aci.py:582 ipalib/plugins/aci.py:830
381
#: ipalib/plugins/aci.py:871 ipalib/plugins/delegation.py:255
382
#: ipalib/plugins/selfservice.py:212
386
#: ipalib/plugins/aci.py:588
387
msgid "Modified ACI \"%(value)s\""
390
#: ipalib/plugins/aci.py:633
393
" Search for ACIs.\n"
395
" Returns a list of ACIs\n"
399
" To find all ACIs that apply directly to members of the group ipausers:\n"
400
" ipa aci-find --memberof=ipausers\n"
402
" To find all ACIs that grant add access:\n"
403
" ipa aci-find --permissions=add\n"
405
" Note that the find command only looks for the given text in the set of\n"
406
" ACIs, it does not evaluate the ACIs to see if something would apply.\n"
407
" For example, searching on memberof=ipausers will find all ACIs that\n"
408
" have ipausers as a memberof. There may be other ACIs that apply to\n"
409
" members of that group indirectly.\n"
413
#: ipalib/plugins/aci.py:653
414
msgid "%(count)d ACI matched"
415
msgid_plural "%(count)d ACIs matched"
419
#: ipalib/plugins/aci.py:823
422
" Display a single ACI given an ACI name.\n"
426
#: ipalib/plugins/aci.py:837
429
" Execute the aci-show operation.\n"
431
" Returns the entry\n"
433
" :param uid: The login name of the user to retrieve.\n"
434
" :param kw: unused\n"
438
#: ipalib/plugins/aci.py:865
445
#: ipalib/plugins/aci.py:878
449
#: ipalib/plugins/aci.py:882
450
msgid "Renamed ACI to \"%(value)s\""
453
#: ipalib/plugins/automount.py:20
458
"Stores automount(8) configuration for autofs(8) in IPA.\n"
460
"The base of an automount configuration is the configuration file auto.master.\n"
461
"This is also the base location in IPA. Multiple auto.master configurations\n"
462
"can be stored in separate locations. A location is implementation-specific\n"
463
"with the default being a location named 'default'. For example, you can have\n"
464
"locations by geographic region, by floor, by type, etc.\n"
466
"Automount has three basic object types: locations, maps and keys.\n"
468
"A location defines a set of maps anchored in auto.master. This allows you\n"
469
"to store multiple automount configurations. A location in itself isn't\n"
470
"very interesting, it is just a point to start a new automount map.\n"
472
"A map is roughly equivalent to a discrete automount file and provides\n"
473
"storage for keys.\n"
475
"A key is a mount point associated with a map.\n"
477
"When a new location is created, two maps are automatically created for\n"
478
"it: auto.master and auto.direct. auto.master is the root map for all\n"
479
"automount maps for the location. auto.direct is the default map for\n"
480
"direct mounts and is mounted on /-.\n"
486
" Create a named location, \"Baltimore\":\n"
487
" ipa automountlocation-add baltimore\n"
489
" Display the new location:\n"
490
" ipa automountlocation-show baltimore\n"
492
" Find available locations:\n"
493
" ipa automountlocation-find\n"
495
" Remove a named automount location:\n"
496
" ipa automountlocation-del baltimore\n"
498
" Show what the automount maps would look like if they were in the filesystem:\n"
499
" ipa automountlocation-tofiles baltimore\n"
501
" Import an existing configuration into a location:\n"
502
" ipa automountlocation-import baltimore /etc/auto.master\n"
504
" The import will fail if any duplicate entries are found. For\n"
505
" continuous operation where errors are ignored, use the --continue\n"
510
" Create a new map, \"auto.share\":\n"
511
" ipa automountmap-add baltimore auto.share\n"
513
" Display the new map:\n"
514
" ipa automountmap-show baltimore auto.share\n"
516
" Find maps in the location baltimore:\n"
517
" ipa automountmap-find baltimore\n"
519
" Remove the auto.share map:\n"
520
" ipa automountmap-del baltimore auto.share\n"
524
" Create a new key for the auto.share map in location baltimore. This ties\n"
525
" the map we previously created to auto.master:\n"
526
" ipa automountkey-add baltimore auto.master --key=/share --info=auto.share\n"
528
" Create a new key for our auto.share map, an NFS mount for man pages:\n"
529
" ipa automountkey-add baltimore auto.share --key=man --info=\"-ro,soft,rsize=8192,wsize=8192 ipa.example.com:/shared/man\"\n"
531
" Find all keys for the auto.share map:\n"
532
" ipa automountkey-find baltimore auto.share\n"
534
" Find all direct automount keys:\n"
535
" ipa automountkey-find baltimore --key=/-\n"
537
" Remove the man key from the auto.share map:\n"
538
" ipa automountkey-del baltimore auto.share --key=man\n"
541
#: ipalib/plugins/automount.py:182
544
" Location container for automount maps.\n"
548
#: ipalib/plugins/automount.py:190
549
msgid "Automount Locations"
552
#: ipalib/plugins/automount.py:196 ipalib/plugins/host.py:247
556
#: ipalib/plugins/automount.py:197
557
msgid "Automount location name."
560
#: ipalib/plugins/automount.py:206
563
" Create a new automount location.\n"
567
#: ipalib/plugins/automount.py:221
570
" Delete an automount location.\n"
574
#: ipalib/plugins/automount.py:229
577
" Display an automount location.\n"
581
#: ipalib/plugins/automount.py:237
584
" Search for an automount location.\n"
588
#: ipalib/plugins/automount.py:245
591
" Generate automount files for a specific location.\n"
595
#: ipalib/plugins/automount.py:308
598
" Import automount files for a specific location.\n"
602
#: ipalib/plugins/automount.py:314
606
#: ipalib/plugins/automount.py:315
607
msgid "Automount master file."
610
#: ipalib/plugins/automount.py:322
612
"Continuous operation mode. Errors are reported but the process continues."
615
#: ipalib/plugins/automount.py:334
616
msgid "File %(file)s not found"
619
#: ipalib/plugins/automount.py:341
622
" The basic idea is to read the master file and create all the maps\n"
623
" we need, then read each map file and add all the keys for the map.\n"
627
#: ipalib/plugins/automount.py:492
630
" Automount map object.\n"
634
#: ipalib/plugins/automount.py:505
638
#: ipalib/plugins/automount.py:506
639
msgid "Automount map name."
642
#: ipalib/plugins/automount.py:511 ipalib/plugins/group.py:114
643
#: ipalib/plugins/hbacrule.py:171 ipalib/plugins/hbacsvc.py:73
644
#: ipalib/plugins/hbacsvcgroup.py:75 ipalib/plugins/host.py:237
645
#: ipalib/plugins/hostgroup.py:85 ipalib/plugins/netgroup.py:109
646
#: ipalib/plugins/privilege.py:76 ipalib/plugins/role.py:92
647
#: ipalib/plugins/sudocmd.py:74 ipalib/plugins/sudocmdgroup.py:76
648
#: ipalib/plugins/sudorule.py:78
652
#: ipalib/plugins/automount.py:515
653
msgid "Automount Maps"
656
#: ipalib/plugins/automount.py:521
659
" Create a new automount map.\n"
663
#: ipalib/plugins/automount.py:529
666
" Delete an automount map.\n"
670
#: ipalib/plugins/automount.py:548
673
" Modify an automount map.\n"
677
#: ipalib/plugins/automount.py:556
680
" Search for an automount map.\n"
684
#: ipalib/plugins/automount.py:564
687
" Display an automount map.\n"
691
#: ipalib/plugins/automount.py:572
694
" Automount key object.\n"
698
#: ipalib/plugins/automount.py:589 ipalib/plugins/automount.py:778
699
#: ipalib/plugins/automount.py:850
703
#: ipalib/plugins/automount.py:590 ipalib/plugins/automount.py:779
704
#: ipalib/plugins/automount.py:851
705
msgid "Automount key name."
708
#: ipalib/plugins/automount.py:594 ipalib/plugins/automount.py:783
709
#: ipalib/plugins/automount.py:855
710
msgid "Mount information"
713
#: ipalib/plugins/automount.py:597
717
#: ipalib/plugins/automount.py:606
718
msgid "Automount Keys"
721
#: ipalib/plugins/automount.py:607
723
"The key,info pair must be unique. A key named %(key)s with info %(info)s "
727
#: ipalib/plugins/automount.py:608
728
msgid "key named %(key)s already exists"
731
#: ipalib/plugins/automount.py:609
732
msgid "The automount key %(key)s with info %(info)s does not exist"
735
#: ipalib/plugins/automount.py:659
737
"More than one entry with key %(key)s found, use --info to select specific "
741
#: ipalib/plugins/automount.py:717
744
" Create a new automount key.\n"
748
#: ipalib/plugins/automount.py:742
751
" Create a new indirect mount point.\n"
755
#: ipalib/plugins/automount.py:748
759
#: ipalib/plugins/automount.py:752
763
#: ipalib/plugins/automount.py:753
764
msgid "Name of parent automount map (default: auto.master)."
767
#: ipalib/plugins/automount.py:772
770
" Delete an automount key.\n"
774
#: ipalib/plugins/automount.py:803
777
" Modify an automount key.\n"
781
#: ipalib/plugins/automount.py:809
782
msgid "New mount information"
785
#: ipalib/plugins/automount.py:836
788
" Search for an automount key.\n"
792
#: ipalib/plugins/automount.py:844
795
" Display an automount key.\n"
799
#: ipalib/plugins/baseldap.py:19
802
"Base classes for LDAP plugins.\n"
805
#: ipalib/plugins/baseldap.py:39
806
msgid "Failed members"
809
#: ipalib/plugins/baseldap.py:42
813
#: ipalib/plugins/baseldap.py:45
814
msgid "Member groups"
817
#: ipalib/plugins/baseldap.py:48
818
msgid "Member of groups"
821
#: ipalib/plugins/baseldap.py:51
825
#: ipalib/plugins/baseldap.py:54
826
msgid "Member host-groups"
829
#: ipalib/plugins/baseldap.py:57
830
msgid "Member of host-groups"
833
#: ipalib/plugins/baseldap.py:66
837
#: ipalib/plugins/baseldap.py:69 ipalib/plugins/sudocmdgroup.py:65
838
#: ipalib/plugins/sudocmdgroup.py:84 ipalib/plugins/sudorule.py:139
839
#: ipalib/plugins/sudorule.py:143
840
msgid "Sudo Command Groups"
843
#: ipalib/plugins/baseldap.py:75
844
msgid "Granting privilege to roles"
847
#: ipalib/plugins/baseldap.py:78
848
msgid "Member netgroups"
851
#: ipalib/plugins/baseldap.py:81
852
msgid "Member of netgroups"
855
#: ipalib/plugins/baseldap.py:84
856
msgid "Member services"
859
#: ipalib/plugins/baseldap.py:87
860
msgid "Member service groups"
863
#: ipalib/plugins/baseldap.py:93
864
msgid "Member HBAC service groups"
867
#: ipalib/plugins/baseldap.py:102
868
msgid "Indirect Member users"
871
#: ipalib/plugins/baseldap.py:105
872
msgid "Indirect Member groups"
875
#: ipalib/plugins/baseldap.py:108
876
msgid "Indirect Member hosts"
879
#: ipalib/plugins/baseldap.py:111
880
msgid "Indirect Member host-groups"
883
#: ipalib/plugins/baseldap.py:114
884
msgid "Indirect Member of roles"
887
#: ipalib/plugins/baseldap.py:117
888
msgid "Indirect Member permissions"
891
#: ipalib/plugins/baseldap.py:120
892
msgid "Indirect Member HBAC service"
895
#: ipalib/plugins/baseldap.py:123
896
msgid "Indirect Member HBAC service group"
899
#: ipalib/plugins/baseldap.py:126
900
msgid "Indirect Member netgroups"
903
#: ipalib/plugins/baseldap.py:141
904
msgid "External host"
907
#: ipalib/plugins/baseldap.py:144
908
msgid "Failed hosts/hostgroups"
911
#: ipalib/plugins/baseldap.py:147
912
msgid "Failed users/groups"
915
#: ipalib/plugins/baseldap.py:150
916
msgid "Failed managedby"
919
#: ipalib/plugins/baseldap.py:153
920
msgid "Failed to remove"
923
#: ipalib/plugins/baseldap.py:171
926
" Given a list of values in the form name=value, return a list of name.\n"
930
#: ipalib/plugins/baseldap.py:197
933
" When adding or removing reverse members we are faking an update to\n"
934
" object A by updating the member attribute in object B. The memberof\n"
935
" plugin makes this work by adding or removing the memberof attribute\n"
936
" to/from object A, it just takes a little bit of time.\n"
938
" This will loop for 6+ seconds, retrieving object A so we can see\n"
939
" if all the memberof attributes have been updated.\n"
943
#: ipalib/plugins/baseldap.py:241
946
" Object representing a LDAP entry.\n"
950
#: ipalib/plugins/baseldap.py:281
954
#: ipalib/plugins/baseldap.py:283
955
msgid "container entry (%(container)s) not found"
958
#: ipalib/plugins/baseldap.py:284
959
msgid "%(parent)s: %(oname)s not found"
962
#: ipalib/plugins/baseldap.py:285
963
msgid "%(pkey)s: %(oname)s not found"
966
#: ipalib/plugins/baseldap.py:286
967
msgid "%(oname)s with name \"%(pkey)s\" already exists"
970
#: ipalib/plugins/baseldap.py:415
972
"Add an attribute/value pair. Format is attr=value. The attribute must be "
973
"part of the schema."
976
#: ipalib/plugins/baseldap.py:420
978
"Set an attribute to a name/value pair. Format is attr=value.\n"
979
"For multi-valued attributes, the command replaces the values already present."
982
#: ipalib/plugins/baseldap.py:444
985
" If the set of objectclasses is limited enforce that only those\n"
986
" are updated in entry_attrs (plus dn)\n"
988
" allow_only tells us what mode to check in:\n"
990
" If True then we enforce that the attributes must be in the list of\n"
993
" If False then those attributes are not allowed.\n"
997
#: ipalib/plugins/baseldap.py:474
1000
" Callback registration interface\n"
1004
#: ipalib/plugins/baseldap.py:561
1007
" Create a new entry in LDAP.\n"
1011
#: ipalib/plugins/baseldap.py:703
1014
" Base class for commands that need to retrieve an existing entry.\n"
1018
#: ipalib/plugins/baseldap.py:727
1021
" Base class for commands that need to retrieve one or more existing entries.\n"
1025
#: ipalib/plugins/baseldap.py:733
1026
msgid "Continuous mode: Don't stop on errors."
1029
#: ipalib/plugins/baseldap.py:750
1032
" Retrieve an LDAP entry.\n"
1036
#: ipalib/plugins/baseldap.py:758 ipalib/plugins/baseldap.py:827
1037
#: ipalib/plugins/internal.py:232
1041
#: ipalib/plugins/baseldap.py:759 ipalib/plugins/baseldap.py:828
1043
"Display the access rights of this entry (requires --all). See ipa man page "
1047
#: ipalib/plugins/baseldap.py:821
1050
" Update an LDAP entry.\n"
1054
#: ipalib/plugins/baseldap.py:837
1058
#: ipalib/plugins/baseldap.py:838
1059
msgid "Rename the %(ldap_obj_name)s object"
1062
#: ipalib/plugins/baseldap.py:957
1063
msgid "the entry was deleted while being modified"
1066
#: ipalib/plugins/baseldap.py:988
1069
" Delete an LDAP entry and all of its direct subentries.\n"
1073
#: ipalib/plugins/baseldap.py:1078
1076
" Base class for member manipulation.\n"
1080
#: ipalib/plugins/baseldap.py:1120
1083
" Add other LDAP entries to members.\n"
1087
#: ipalib/plugins/baseldap.py:1131 ipalib/plugins/baseldap.py:1592
1088
#: ipalib/plugins/privilege.py:165 ipalib/plugins/privilege.py:191
1089
#: ipalib/plugins/role.py:179 ipalib/plugins/role.py:203
1090
msgid "Members that could not be added"
1093
#: ipalib/plugins/baseldap.py:1135 ipalib/plugins/baseldap.py:1596
1094
msgid "Number of members added"
1097
#: ipalib/plugins/baseldap.py:1226
1100
" Remove LDAP entries from members.\n"
1104
#: ipalib/plugins/baseldap.py:1236 ipalib/plugins/baseldap.py:1705
1105
msgid "Members that could not be removed"
1108
#: ipalib/plugins/baseldap.py:1240 ipalib/plugins/baseldap.py:1709
1109
msgid "Number of members removed"
1112
#: ipalib/plugins/baseldap.py:1335
1115
" Retrieve all LDAP entries matching the given criteria.\n"
1119
#: ipalib/plugins/baseldap.py:1344
1123
#: ipalib/plugins/baseldap.py:1345
1124
msgid "Time limit of search in seconds"
1127
#: ipalib/plugins/baseldap.py:1351
1131
#: ipalib/plugins/baseldap.py:1352
1132
msgid "Maximum number of entries returned"
1135
#: ipalib/plugins/baseldap.py:1552
1138
" Base class for reverse member manipulation.\n"
1142
#: ipalib/plugins/baseldap.py:1574
1145
" Add other LDAP entries to members in reverse.\n"
1147
" The call looks like \"add A to B\" but in fact executes\n"
1148
" add B to A to handle reverse membership.\n"
1152
#: ipalib/plugins/baseldap.py:1654
1156
#: ipalib/plugins/baseldap.py:1687
1159
" Remove other LDAP entries from members in reverse.\n"
1161
" The call looks like \"remove A from B\" but in fact executes\n"
1162
" remove B from A to handle reverse membership.\n"
1166
#: ipalib/plugins/baseldap.py:1767
1170
#: ipalib/plugins/batch.py:21
1173
"Plugin to make multiple ipa calls via one remote procedure call\n"
1175
"To run this code in the lite-server\n"
1177
"curl -H \"Content-Type:application/json\" -H \"Accept:application/json\" -H \"Accept-Language:en\" --negotiate -u : --cacert /etc/ipa/ca.crt -d @batch_request.json -X POST http://localhost:8888/ipa/json\n"
1179
"where the contents of the file batch_request.json follow the below example\n"
1181
"{\"method\":\"batch\",\"params\":[[\n"
1182
" {\"method\":\"group_find\",\"params\":[[],{}]},\n"
1183
" {\"method\":\"user_find\",\"params\":[[],{\"whoami\":\"true\",\"all\":\"true\"}]},\n"
1184
" {\"method\":\"user_show\",\"params\":[[\"admin\"],{\"all\":true}]}\n"
1185
" ],{}],\"id\":1}\n"
1187
"The format of the response is nested the same way. At the top you will see\n"
1188
" \"error\": null,\n"
1195
"And then a nested response for each IPA command method sent in the request\n"
1199
#: ipalib/plugins/batch.py:61
1200
msgid "Nested Methods to execute"
1203
#: ipalib/plugins/batch.py:68 ipalib/frontend.py:861
1204
msgid "Client version. Used to determine if server will accept request."
1207
#: ipalib/plugins/cert.py:22
1210
"IPA certificate operations\n"
1212
"Implements a set of commands for managing server SSL certificates.\n"
1214
"Certificate requests exist in the form of a Certificate Signing Request (CSR)\n"
1217
"If using the selfsign back end then the subject in the CSR needs to match\n"
1218
"the subject configured in the server. The dogtag CA uses just the CN\n"
1219
"value of the CSR and forces the rest of the subject.\n"
1221
"A certificate is stored with a service principal and a service principal\n"
1224
"In order to request a certificate:\n"
1226
"* The host must exist\n"
1227
"* The service must exist (or you use the --add option to automatically add it)\n"
1231
" Request a new certificate and add the principal:\n"
1232
" ipa cert-request --add --principal=HTTP/lion.example.com example.csr\n"
1234
" Retrieve an existing certificate:\n"
1235
" ipa cert-show 1032\n"
1237
" Revoke a certificate (see RFC 5280 for reason details):\n"
1238
" ipa cert-revoke --revocation-reason=6 1032\n"
1240
" Remove a certificate from revocation hold status:\n"
1241
" ipa cert-remove-hold 1032\n"
1243
" Check the status of a signing request:\n"
1244
" ipa cert-status 10\n"
1246
"IPA currently immediately issues (or declines) all certificate requests so\n"
1247
"the status of a request is not normally useful. This is for future use\n"
1248
"or the case where a CA does not immediately issue a certificate.\n"
1250
"The following revocation reasons are supported:\n"
1252
" * 0 - unspecified\n"
1253
" * 1 - keyCompromise\n"
1254
" * 2 - cACompromise\n"
1255
" * 3 - affiliationChanged\n"
1256
" * 4 - superseded\n"
1257
" * 5 - cessationOfOperation\n"
1258
" * 6 - certificateHold\n"
1259
" * 8 - removeFromCRL\n"
1260
" * 9 - privilegeWithdrawn\n"
1261
" * 10 - aACompromise\n"
1263
"Note that reason code 7 is not used. See RFC 5280 for more details:\n"
1265
"http://www.ietf.org/rfc/rfc5280.txt\n"
1269
#: ipalib/plugins/cert.py:104
1272
" Return the value of CN in the subject of the request or None\n"
1276
#: ipalib/plugins/cert.py:112
1277
msgid "Failure decoding Certificate Signing Request:"
1280
#: ipalib/plugins/cert.py:115
1283
" Return the first value of the subject alt name, if any\n"
1287
#: ipalib/plugins/cert.py:125 ipalib/plugins/cert.py:137
1288
msgid "Failure decoding Certificate Signing Request"
1291
#: ipalib/plugins/cert.py:128
1294
" Ensure the CSR is base64-encoded and can be decoded by our PKCS#10\n"
1299
#: ipalib/plugins/cert.py:139
1300
msgid "Failure decoding Certificate Signing Request: %s"
1303
#: ipalib/plugins/cert.py:142
1306
" Strip any leading and trailing cruft around the BEGIN/END block\n"
1310
#: ipalib/plugins/cert.py:162
1313
" Convert a SN given in decimal or hexadecimal.\n"
1314
" Returns the number or None if conversion fails.\n"
1318
#: ipalib/plugins/cert.py:188
1321
" Given a principal with or without a realm return the\n"
1326
#: ipalib/plugins/cert.py:202
1329
" Submit a certificate signing request.\n"
1333
#: ipalib/plugins/cert.py:216 ipalib/plugins/service.py:225
1337
#: ipalib/plugins/cert.py:217
1338
msgid "Service principal for this certificate (e.g. HTTP/test.example.com)"
1341
#: ipalib/plugins/cert.py:224
1342
msgid "automatically add the principal if it doesn't exist"
1345
#: ipalib/plugins/cert.py:232 ipalib/plugins/cert.py:439
1346
#: ipalib/plugins/entitle.py:173 ipalib/plugins/host.py:276
1347
#: ipalib/plugins/service.py:232
1351
#: ipalib/plugins/cert.py:236 ipalib/plugins/cert.py:442
1352
#: ipalib/plugins/host.py:159 ipalib/plugins/service.py:93
1356
#: ipalib/plugins/cert.py:240 ipalib/plugins/cert.py:445
1357
#: ipalib/plugins/host.py:165 ipalib/plugins/service.py:99
1361
#: ipalib/plugins/cert.py:244 ipalib/plugins/cert.py:448
1362
#: ipalib/plugins/host.py:168 ipalib/plugins/service.py:102
1366
#: ipalib/plugins/cert.py:248 ipalib/plugins/cert.py:451
1367
#: ipalib/plugins/host.py:171 ipalib/plugins/service.py:105
1371
#: ipalib/plugins/cert.py:252 ipalib/plugins/cert.py:454
1372
#: ipalib/plugins/host.py:174 ipalib/plugins/service.py:108
1373
msgid "Fingerprint (MD5)"
1376
#: ipalib/plugins/cert.py:256 ipalib/plugins/cert.py:457
1377
#: ipalib/plugins/host.py:177 ipalib/plugins/service.py:111
1378
msgid "Fingerprint (SHA1)"
1381
#: ipalib/plugins/cert.py:260 ipalib/plugins/cert.py:425
1382
msgid "Serial number"
1385
#: ipalib/plugins/cert.py:268 ipalib/plugins/entitle.py:230
1386
#: ipalib/plugins/entitle.py:588 ipalib/plugins/misc.py:57
1387
msgid "Dictionary mapping variable name to value"
1390
#: ipalib/plugins/cert.py:396
1393
" Check the status of a certificate signing request.\n"
1397
#: ipalib/plugins/cert.py:402
1401
#: ipalib/plugins/cert.py:408
1402
msgid "Request status"
1405
#: ipalib/plugins/cert.py:426
1406
msgid "Serial number in decimal or if prefixed with 0x in hexadecimal"
1409
#: ipalib/plugins/cert.py:431
1412
" Retrieve an existing certificate.\n"
1416
#: ipalib/plugins/cert.py:460 ipalib/plugins/host.py:180
1417
#: ipalib/plugins/service.py:114
1418
msgid "Revocation reason"
1421
#: ipalib/plugins/cert.py:466
1422
msgid "Output filename"
1425
#: ipalib/plugins/cert.py:467
1426
msgid "File to store the certificate in."
1429
#: ipalib/plugins/cert.py:518
1432
" Revoke a certificate.\n"
1436
#: ipalib/plugins/cert.py:526
1440
#: ipalib/plugins/cert.py:534
1444
#: ipalib/plugins/cert.py:535
1445
msgid "Reason for revoking the certificate (0-10)"
1448
#: ipalib/plugins/cert.py:562
1451
" Take a revoked certificate off hold.\n"
1455
#: ipalib/plugins/cert.py:570
1459
#: ipalib/plugins/cert.py:573
1463
#: ipalib/plugins/config.py:20
1466
"Manage the IPA configuration\n"
1468
"Manage the default values that IPA uses and some of its tuning parameters.\n"
1470
" To show the current configuration:\n"
1471
" ipa config-show\n"
1473
" To modify the configuration:\n"
1474
" ipa config-mod --maxusername=99\n"
1476
"The available options are:\n"
1478
"User management options:\n"
1480
" --maxusername=INT Max. username length when creating/modifying a user\n"
1481
" --homedirectory=STR Default location of home directories (default /home)\n"
1482
" --defaultshell=STR Default shell for new users (default /bin/sh)\n"
1483
" --defaultgroup=STR Default group for new users (default ipausers). The\n"
1484
" group must exist, or adding new users will fail.\n"
1485
" --emaildomain=STR Default e-mail domain for new users\n"
1487
"Search tuning options. These impact how much data is searched through and\n"
1488
"how many records may be returned on a given search.\n"
1490
" --searchtimelimit=INT Max. amount of time (sec.) for a search (> 0, or -1 for\n"
1492
" --searchrecordslimit=INT Max. number of records to search (-1 is unlimited)\n"
1494
"Server Configuration.\n"
1496
" --enable-migration=BOOL Enable migration mode\n"
1497
" --pwdexpnotify=INT Password Expiration Notification (days)\n"
1499
"The password notification value is stored here so it will be replicated.\n"
1500
"It is not currently used to notify users in advance of an expiring\n"
1503
"Some attributes are read-only, provided only for information purposes. These\n"
1506
"Certificate Subject base: the configured certificate subject base,\n"
1507
" e.g. O=EXAMPLE.COM. This is configurable only at install time.\n"
1508
"Password plug-in features: currently defines additional hashes that the\n"
1509
" password will generate (there may be other conditions).\n"
1512
#: ipalib/plugins/config.py:76
1513
msgid "searchtimelimit must be -1 or > 1."
1516
#: ipalib/plugins/config.py:80
1519
" IPA configuration object\n"
1523
#: ipalib/plugins/config.py:91 ipalib/plugins/internal.py:151
1524
msgid "Configuration"
1527
#: ipalib/plugins/config.py:96
1528
msgid "Max. username length"
1531
#: ipalib/plugins/config.py:101
1532
msgid "Home directory base"
1535
#: ipalib/plugins/config.py:102
1536
msgid "Default location of home directories."
1539
#: ipalib/plugins/config.py:106
1540
msgid "Default shell"
1543
#: ipalib/plugins/config.py:107
1544
msgid "Default shell for new users."
1547
#: ipalib/plugins/config.py:111
1548
msgid "Default users group"
1551
#: ipalib/plugins/config.py:112
1552
msgid "Default group for new users."
1555
#: ipalib/plugins/config.py:116
1556
msgid "Default e-mail domain for new users"
1559
#: ipalib/plugins/config.py:117
1560
msgid "Default e-mail domain new users."
1563
#: ipalib/plugins/config.py:121
1564
msgid "Search time limit"
1567
#: ipalib/plugins/config.py:122
1568
msgid "Max. amount of time (sec.) for a search (> 0, or -1 for unlimited)."
1571
#: ipalib/plugins/config.py:127
1572
msgid "Search size limit"
1575
#: ipalib/plugins/config.py:128
1576
msgid "Max. number of records to search (-1 is unlimited)."
1579
#: ipalib/plugins/config.py:133
1580
msgid "User search fields"
1583
#: ipalib/plugins/config.py:134
1584
msgid "A comma-separated list of fields to search when searching for users."
1587
#: ipalib/plugins/config.py:139
1588
msgid "A comma-separated list of fields to search when searching for groups."
1591
#: ipalib/plugins/config.py:143
1592
msgid "Migration mode"
1595
#: ipalib/plugins/config.py:144
1596
msgid "Enable migration mode."
1599
#: ipalib/plugins/config.py:148
1600
msgid "Certificate Subject base"
1603
#: ipalib/plugins/config.py:149
1604
msgid "Base for certificate subjects (OU=Test,O=Example)."
1607
#: ipalib/plugins/config.py:154
1608
msgid "Default group objectclasses"
1611
#: ipalib/plugins/config.py:155
1612
msgid "Default group objectclassses (comma-separated list)."
1615
#: ipalib/plugins/config.py:159
1616
msgid "Default user objectclasses"
1619
#: ipalib/plugins/config.py:160
1620
msgid "Default user objectclassses (comma-separated list)."
1623
#: ipalib/plugins/config.py:164
1624
msgid "Password Expiration Notification"
1627
#: ipalib/plugins/config.py:165
1628
msgid "Number of days's notice of impending password expiration."
1631
#: ipalib/plugins/config.py:170
1632
msgid "Password plugin features"
1635
#: ipalib/plugins/config.py:171
1636
msgid "Extra hashes to generate in password plug-in."
1639
#: ipalib/plugins/config.py:183
1642
" Modify configuration options.\n"
1646
#: ipalib/plugins/config.py:220
1649
" Show the current configuration.\n"
1653
#: ipalib/plugins/delegation.py:19
1656
"Group to Group Delegation\n"
1658
"A permission enables fine-grained delegation of permissions. Access Control\n"
1659
"Rules, or instructions (ACIs), grant permission to permissions to perform\n"
1660
"given tasks such as adding a user, modifying a group, etc.\n"
1662
"Group to Group Delegations grants the members of one group to update a set\n"
1663
"of attributes of members of another group.\n"
1667
" Add a delegation rule to allow editors to edit admin's addresses:\n"
1668
" ipa delegation-add --attrs=street --membergroup=admins --group=editors 'editors edit admins street'\n"
1670
" When managing the list of attributes you need to include all attributes\n"
1671
" in the list, including existing ones. Add postalCode to the list:\n"
1672
" ipa delegation-mod --attrs=street,postalCode --membergroup=admins --group=editors 'editors edit admins street'\n"
1674
" Display our updated rule:\n"
1675
" ipa delegation-show 'editors edit admins street'\n"
1678
" ipa delegation-del 'editors edit admins street'\n"
1681
#: ipalib/plugins/delegation.py:56
1684
" memberOf is in filter but we want to pull out the group for easier\n"
1689
#: ipalib/plugins/delegation.py:63 ipalib/plugins/delegation.py:90
1690
msgid "Delegation '%(permission)s' not found"
1693
#: ipalib/plugins/delegation.py:70
1694
msgid "Error retrieving member group %(group)s: %(error)s"
1697
#: ipalib/plugins/delegation.py:79
1700
" Determine if the ACI is a Delegation ACI and raise an exception if it\n"
1703
" Return the result if it is a delegation ACI, adding a new attribute\n"
1708
#: ipalib/plugins/delegation.py:95
1711
" Delegation object.\n"
1715
#: ipalib/plugins/delegation.py:102
1719
#: ipalib/plugins/delegation.py:107 ipalib/plugins/delegation.py:108
1720
msgid "Delegation name"
1723
#: ipalib/plugins/delegation.py:114 ipalib/plugins/selfservice.py:87
1725
"Comma-separated list of permissions to grant (read, write). Default is "
1729
#: ipalib/plugins/delegation.py:125
1730
msgid "Member user group"
1733
#: ipalib/plugins/delegation.py:126
1734
msgid "User group to apply delegation to"
1737
#: ipalib/plugins/delegation.py:152
1740
" Add a new delegation.\n"
1744
#: ipalib/plugins/delegation.py:156
1745
msgid "Added delegation \"%(value)s\""
1748
#: ipalib/plugins/delegation.py:176
1751
" Delete a delegation.\n"
1755
#: ipalib/plugins/delegation.py:181
1756
msgid "Deleted delegation \"%(value)s\""
1759
#: ipalib/plugins/delegation.py:197
1762
" Modify a delegation.\n"
1766
#: ipalib/plugins/delegation.py:201
1767
msgid "Modified delegation \"%(value)s\""
1770
#: ipalib/plugins/delegation.py:219
1773
" Search for delegations.\n"
1777
#: ipalib/plugins/delegation.py:223
1778
msgid "%(count)d delegation matched"
1779
msgid_plural "%(count)d delegations matched"
1783
#: ipalib/plugins/delegation.py:250
1786
" Display information about a delegation.\n"
1790
#: ipalib/plugins/dns.py:20
1793
"Domain Name System (DNS)\n"
1795
"Manage DNS zone and resource records.\n"
1800
" ipa dnszone-add example.com --name-server nameserver.example.com\n"
1801
" --admin-email admin@example.com\n"
1803
" Add second nameserver for example.com:\n"
1804
" ipa dnsrecord-add example.com @ --ns-rec nameserver2.example.com\n"
1806
" Add a mail server for example.com:\n"
1807
" ipa dnsrecord-add example.com @ --mx-rec=\"10 mail2\"\n"
1809
" Delete previously added nameserver from example.com:\n"
1810
" ipa dnsrecord-del example.com @ --ns-rec nameserver2.example.com\n"
1812
" Add new A record for www.example.com: (random IP)\n"
1813
" ipa dnsrecord-add example.com www --a-rec 80.142.15.2\n"
1815
" Add new PTR record for www.example.com\n"
1816
" ipa dnsrecord-add 15.142.80.in-addr.arpa 2 --ptr-rec www.example.com.\n"
1818
" Add new SRV records for LDAP servers. Three quarters of the requests\n"
1819
" should go to fast.example.com, one quarter to slow.example.com. If neither\n"
1820
" is available, switch to backup.example.com.\n"
1821
" ipa dnsrecord-add example.com _ldap._tcp --srv-rec=\"0 3 389 fast.example.com\"\n"
1822
" ipa dnsrecord-add example.com _ldap._tcp --srv-rec=\"0 1 389 slow.example.com\"\n"
1823
" ipa dnsrecord-add example.com _ldap._tcp --srv-rec=\"1 1 389 backup.example.com\"\n"
1825
" When dnsrecord-add command is executed with no option to add a specific record\n"
1826
" an interactive mode is started. The mode interactively prompts for the most\n"
1827
" typical record types for the respective zone:\n"
1828
" ipa dnsrecord-add example.com www\n"
1829
" [A record]: 1.2.3.4,11.22.33.44 (2 interactively entered random IPs)\n"
1830
" [AAAA record]: (no AAAA address entered)\n"
1831
" Record name: www\n"
1832
" A record: 1.2.3.4, 11.22.33.44\n"
1834
" The interactive mode can also be used for deleting the DNS records:\n"
1835
" ipa dnsrecord-del example.com www\n"
1836
" No option to delete specific record provided.\n"
1837
" Delete all? Yes/No (default No): (do not delete all records)\n"
1838
" Current DNS record contents:\n"
1840
" A record: 1.2.3.4, 11.22.33.44\n"
1842
" Delete A record '1.2.3.4'? Yes/No (default No): \n"
1843
" Delete A record '11.22.33.44'? Yes/No (default No): y\n"
1844
" Record name: www\n"
1845
" A record: 1.2.3.4 (A record 11.22.33.44 has been deleted)\n"
1847
" Show zone example.com:\n"
1848
" ipa dnszone-show example.com\n"
1850
" Find zone with \"example\" in its domain name:\n"
1851
" ipa dnszone-find example\n"
1853
" Find records for resources with \"www\" in their name in zone example.com:\n"
1854
" ipa dnsrecord-find example.com www\n"
1856
" Find A records with value 10.10.0.1 in zone example.com\n"
1857
" ipa dnsrecord-find example.com --a-rec 10.10.0.1\n"
1859
" Show records for resource www in zone example.com\n"
1860
" ipa dnsrecord-show example.com www\n"
1862
" Delete zone example.com with all resource records:\n"
1863
" ipa dnszone-del example.com\n"
1865
" Resolve a host name to see if it exists (will add default IPA domain\n"
1866
" if one is not included):\n"
1867
" ipa dns-resolve www.example.com\n"
1868
" ipa dns-resolve www\n"
1871
#: ipalib/plugins/dns.py:140
1872
msgid "Generate serial number for zones."
1875
#: ipalib/plugins/dns.py:189
1876
msgid "see RFC 2915 "
1879
#: ipalib/plugins/dns.py:249
1880
msgid "Nameserver '%(host)s' does not have a corresponding A/AAAA record"
1883
#: ipalib/plugins/dns.py:272
1886
" DNS Zone, container for resource records.\n"
1890
#: ipalib/plugins/dns.py:284
1894
#: ipalib/plugins/dns.py:289
1898
#: ipalib/plugins/dns.py:290
1899
msgid "Zone name (FQDN)"
1902
#: ipalib/plugins/dns.py:296
1903
msgid "Authoritative nameserver"
1906
#: ipalib/plugins/dns.py:297
1907
msgid "Authoritative nameserver."
1910
#: ipalib/plugins/dns.py:301 ipalib/plugins/dns.py:302
1911
msgid "Administrator e-mail address"
1914
#: ipalib/plugins/dns.py:308
1918
#: ipalib/plugins/dns.py:309
1919
msgid "SOA record serial number"
1922
#: ipalib/plugins/dns.py:316
1926
#: ipalib/plugins/dns.py:317
1927
msgid "SOA record refresh time"
1930
#: ipalib/plugins/dns.py:324
1934
#: ipalib/plugins/dns.py:325
1935
msgid "SOA record retry time"
1938
#: ipalib/plugins/dns.py:332
1942
#: ipalib/plugins/dns.py:333
1943
msgid "SOA record expire time"
1946
#: ipalib/plugins/dns.py:340
1950
#: ipalib/plugins/dns.py:341
1951
msgid "How long should negative responses be cached"
1954
#: ipalib/plugins/dns.py:349
1955
msgid "SOA time to live"
1958
#: ipalib/plugins/dns.py:350
1959
msgid "SOA record time to live"
1962
#: ipalib/plugins/dns.py:354
1966
#: ipalib/plugins/dns.py:355
1967
msgid "SOA record class"
1970
#: ipalib/plugins/dns.py:360 ipalib/plugins/dns.py:361
1971
msgid "BIND update policy"
1974
#: ipalib/plugins/dns.py:365
1978
#: ipalib/plugins/dns.py:366
1979
msgid "Is zone active?"
1982
#: ipalib/plugins/dns.py:372
1983
msgid "Dynamic update"
1986
#: ipalib/plugins/dns.py:373
1987
msgid "Allow dynamic updates."
1990
#: ipalib/plugins/dns.py:382
1993
" Create new DNS zone (SOA record).\n"
1997
#: ipalib/plugins/dns.py:387 ipalib/plugins/dns.py:697
1998
#: ipalib/plugins/host.py:315 ipalib/plugins/service.py:250
2002
#: ipalib/plugins/dns.py:388
2003
msgid "Force DNS zone creation even if nameserver not in DNS."
2006
#: ipalib/plugins/dns.py:391
2007
msgid "Add the nameserver to DNS with this IP address"
2010
#: ipalib/plugins/dns.py:397
2011
msgid "DNS is not configured"
2014
#: ipalib/plugins/dns.py:431
2017
" Delete DNS zone (SOA record).\n"
2021
#: ipalib/plugins/dns.py:439
2024
" Modify DNS zone (SOA record).\n"
2028
#: ipalib/plugins/dns.py:452
2031
" Search for DNS zones (SOA records).\n"
2035
#: ipalib/plugins/dns.py:460
2038
" Display information about a DNS zone (SOA record).\n"
2042
#: ipalib/plugins/dns.py:468
2045
" Disable DNS Zone.\n"
2049
#: ipalib/plugins/dns.py:472
2050
msgid "Disabled DNS zone \"%(value)s\""
2053
#: ipalib/plugins/dns.py:490
2056
" Enable DNS Zone.\n"
2060
#: ipalib/plugins/dns.py:494
2061
msgid "Enabled DNS zone \"%(value)s\""
2064
#: ipalib/plugins/dns.py:512
2071
#: ipalib/plugins/dns.py:522
2072
msgid "DNS resource record"
2075
#: ipalib/plugins/dns.py:527 ipalib/plugins/dns.py:528
2079
#: ipalib/plugins/dns.py:533 ipalib/plugins/dns.py:534
2080
msgid "Time to live"
2083
#: ipalib/plugins/dns.py:538
2087
#: ipalib/plugins/dns.py:539
2091
#: ipalib/plugins/dns.py:566
2094
" Base class for DNS record commands with record options.\n"
2098
#: ipalib/plugins/dns.py:610
2101
" Base class for adding/removing records from DNS resource entries.\n"
2105
#: ipalib/plugins/dns.py:674
2108
" Add records to DNS resource.\n"
2112
#: ipalib/plugins/dns.py:690
2115
" Add new DNS resource record.\n"
2119
#: ipalib/plugins/dns.py:699
2120
msgid "force NS record creation even if its hostname is not in DNS"
2123
#: ipalib/plugins/dns.py:735
2125
"Reverse zone for PTR record should be a sub-zone of one the following fully "
2126
"qualified domains: %s"
2129
#: ipalib/plugins/dns.py:740
2130
msgid "Reverse zone %s requires exactly %d IP address components, %d given"
2133
#: ipalib/plugins/dns.py:746
2134
msgid "PTR record '%s' is not fully qualified (check traling '.')"
2137
#: ipalib/plugins/dns.py:789
2140
" Delete DNS record entry.\n"
2144
#: ipalib/plugins/dns.py:792
2145
msgid "Deleted record \"%(value)s\""
2148
#: ipalib/plugins/dns.py:799
2151
" Delete DNS resource record.\n"
2155
#: ipalib/plugins/dns.py:802
2157
"Neither --del-all nor options to delete a specific record provided.\n"
2158
"Command help may be consulted for all supported record types."
2161
#: ipalib/plugins/dns.py:807
2162
msgid "Delete all associated records"
2165
#: ipalib/plugins/dns.py:834
2166
msgid "No option to delete specific record provided."
2169
#: ipalib/plugins/dns.py:835
2173
#: ipalib/plugins/dns.py:845
2174
msgid "Current DNS record contents:\n"
2177
#: ipalib/plugins/dns.py:875
2178
msgid "%s record with value %s not found"
2181
#: ipalib/plugins/dns.py:889
2184
" Display DNS resource.\n"
2188
#: ipalib/plugins/dns.py:905
2191
" Search for DNS resources.\n"
2195
#: ipalib/plugins/dns.py:932
2198
" Resolve a host name in DNS\n"
2202
#: ipalib/plugins/dns.py:936
2203
msgid "Found '%(value)s'"
2206
#: ipalib/plugins/dns.py:940
2210
#: ipalib/plugins/dns.py:962
2211
msgid "Host '%(host)s' not found"
2214
#: ipalib/plugins/dns.py:970
2217
" Checks if any of the servers has the DNS service enabled.\n"
2221
#: ipalib/plugins/entitle.py:19
2226
"Manage entitlements for client machines\n"
2228
"Entitlements can be managed either by registering with an entitlement\n"
2229
"server with a username and password or by manually importing entitlement\n"
2230
"certificates. An entitlement certificate contains embedded information\n"
2231
"such as the product being entitled, the quantity and the validity dates.\n"
2233
"An entitlement server manages the number of client entitlements available.\n"
2234
"To mark these entitlements as used by the IPA server you provide a quantity\n"
2235
"and they are marked as consumed on the entitlement server.\n"
2237
" Register with an entitlement server:\n"
2238
" ipa entitle-register consumer\n"
2240
" Import an entitlement certificate:\n"
2241
" ipa entitle-import /home/user/ipaclient.pem\n"
2243
" Display current entitlements:\n"
2244
" ipa entitle-status\n"
2246
" Retrieve details on entitlement certificates:\n"
2247
" ipa entitle-get\n"
2249
" Consume some entitlements from the entitlement server:\n"
2250
" ipa entitle-consume 50\n"
2252
"The registration ID is a Unique Identifier (UUID). This ID will be\n"
2253
"IMPORTED if you have used entitle-import.\n"
2255
"Changes to /etc/rhsm/rhsm.conf require a restart of the httpd service.\n"
2258
#: ipalib/plugins/entitle.py:106
2261
" Get our entitlement pool. Assume there is only one pool.\n"
2265
#: ipalib/plugins/entitle.py:129
2268
" Retrieve our UUID, certificate and key from LDAP.\n"
2270
" Except on error the caller is responsible for removing temporary files\n"
2274
#: ipalib/plugins/entitle.py:178
2277
" Entitlement object\n"
2281
#: ipalib/plugins/entitle.py:189
2282
msgid "Entitlements"
2285
#: ipalib/plugins/entitle.py:206
2288
" Display current entitlements\n"
2292
#: ipalib/plugins/entitle.py:214 ipalib/plugins/entitle.py:602
2296
#: ipalib/plugins/entitle.py:217 ipalib/plugins/entitle.py:306
2297
#: ipalib/plugins/entitle.py:388 ipalib/plugins/entitle.py:575
2298
#: ipalib/plugins/entitle.py:690
2302
#: ipalib/plugins/entitle.py:220 ipalib/plugins/entitle.py:286
2303
#: ipalib/plugins/entitle.py:296 ipalib/plugins/entitle.py:391
2304
#: ipalib/plugins/entitle.py:578 ipalib/plugins/entitle.py:680
2308
#: ipalib/plugins/entitle.py:223 ipalib/plugins/entitle.py:309
2309
#: ipalib/plugins/entitle.py:581 ipalib/plugins/entitle.py:693
2313
#: ipalib/plugins/entitle.py:276
2316
" Consume an entitlement\n"
2320
#: ipalib/plugins/entitle.py:282
2321
msgid "Consumed %(value)s entitlement(s)."
2324
#: ipalib/plugins/entitle.py:314
2327
" Override this so we can set value to the number of entitlements\n"
2332
#: ipalib/plugins/entitle.py:362 ipalib/plugins/entitle.py:724
2335
" Returning the certificates isn't very interesting. Return the\n"
2336
" status of entitlements instead.\n"
2340
#: ipalib/plugins/entitle.py:380
2343
" Retrieve the entitlement certs\n"
2347
#: ipalib/plugins/entitle.py:394
2351
#: ipalib/plugins/entitle.py:397
2355
#: ipalib/plugins/entitle.py:400 ipalib/plugins/host.py:162
2356
#: ipalib/plugins/internal.py:132 ipalib/plugins/service.py:96
2357
msgid "Serial Number"
2360
#: ipalib/plugins/entitle.py:435 ipalib/plugins/entitle.py:626
2361
#: ipalib/plugins/entitle.py:628
2362
msgid "Not an entitlement certificate"
2365
#: ipalib/plugins/entitle.py:460
2368
" Search for entitlement accounts.\n"
2372
#: ipalib/plugins/entitle.py:473
2375
" Register to the entitlement system\n"
2379
#: ipalib/plugins/entitle.py:479
2380
msgid "Registered to entitlement server."
2383
#: ipalib/plugins/entitle.py:483
2387
#: ipalib/plugins/entitle.py:490 ipalib/plugins/entitle.py:603
2388
msgid "Enrollment UUID"
2391
#: ipalib/plugins/entitle.py:494 ipalib/plugins/migration.py:271
2392
#: ipalib/plugins/passwd.py:59 ipalib/plugins/user.py:172
2396
#: ipalib/plugins/entitle.py:495
2397
msgid "Registration password"
2400
#: ipalib/plugins/entitle.py:569
2403
" Import an entitlement certificate.\n"
2407
#: ipalib/plugins/entitle.py:646
2410
" If we are adding the first entry there are no updates so EmptyModlist\n"
2411
" will get thrown. Ignore it.\n"
2415
#: ipalib/plugins/entitle.py:667
2418
" Re-sync the local entitlement cache with the entitlement server\n"
2422
#: ipalib/plugins/entitle.py:673
2423
msgid "Entitlement(s) synchronized."
2426
#: ipalib/plugins/group.py:20
2431
"Manage groups of users. By default, new groups are POSIX groups. You\n"
2432
"can add the --nonposix option to the group-add command to mark a new group\n"
2433
"as non-POSIX, and you can use the same argument to the group-mod command\n"
2434
"to convert a non-POSIX group to a POSIX group. POSIX groups cannot be\n"
2435
"converted to non-POSIX groups.\n"
2437
"Every group must have a description.\n"
2439
"POSIX groups must have a Group ID (GID) number. Changing a GID is\n"
2440
"supported but can have an impact on your file permissions. It is not necessary\n"
2441
"to supply a GID when creating a group. IPA will generate one automatically\n"
2442
"if it is not provided.\n"
2446
" Add a new group:\n"
2447
" ipa group-add --desc='local administrators' localadmins\n"
2449
" Add a new non-POSIX group:\n"
2450
" ipa group-add --nonposix --desc='remote administrators' remoteadmins\n"
2452
" Convert a non-POSIX group to posix:\n"
2453
" ipa group-mod --posix remoteadmins\n"
2455
" Add a new POSIX group with a specific Group ID number:\n"
2456
" ipa group-add --gid=500 --desc='unix admins' unixadmins\n"
2458
" Add a new POSIX group and let IPA assign a Group ID number:\n"
2459
" ipa group-add --desc='printer admins' printeradmins\n"
2461
" Remove a group:\n"
2462
" ipa group-del unixadmins\n"
2464
" To add the \"remoteadmins\" group to the \"localadmins\" group:\n"
2465
" ipa group-add-member --groups=remoteadmins localadmins\n"
2467
" Add a list of users to the \"localadmins\" group:\n"
2468
" ipa group-add-member --users=test1,test2 localadmins\n"
2470
" Remove a user from the \"localadmins\" group:\n"
2471
" ipa group-remove-member --users=test2 localadmins\n"
2473
" Display information about a named group.\n"
2474
" ipa group-show localadmins\n"
2477
#: ipalib/plugins/group.py:76
2484
#: ipalib/plugins/group.py:100
2488
#: ipalib/plugins/group.py:108
2492
#: ipalib/plugins/group.py:115 ipalib/plugins/sudocmdgroup.py:77
2493
msgid "Group description"
2496
#: ipalib/plugins/group.py:119 ipalib/plugins/user.py:187
2500
#: ipalib/plugins/group.py:120
2501
msgid "GID (use this option to set it manually)"
2504
#: ipalib/plugins/group.py:128
2507
" Create a new group.\n"
2511
#: ipalib/plugins/group.py:132
2512
msgid "Added group \"%(value)s\""
2515
#: ipalib/plugins/group.py:137
2516
msgid "Create as a non-POSIX group"
2519
#: ipalib/plugins/group.py:154
2526
#: ipalib/plugins/group.py:158
2527
msgid "Deleted group \"%(value)s\""
2530
#: ipalib/plugins/group.py:186
2533
" Modify a group.\n"
2537
#: ipalib/plugins/group.py:189
2538
msgid "Modified group \"%(value)s\""
2541
#: ipalib/plugins/group.py:194
2542
msgid "change to a POSIX group"
2545
#: ipalib/plugins/group.py:215
2548
" Search for groups.\n"
2552
#: ipalib/plugins/group.py:220
2553
msgid "%(count)d group matched"
2554
msgid_plural "%(count)d groups matched"
2558
#: ipalib/plugins/group.py:227 ipalib/plugins/netgroup.py:192
2559
msgid "search for private groups"
2562
#: ipalib/plugins/group.py:257
2565
" Display information about a named group.\n"
2569
#: ipalib/plugins/group.py:265
2572
" Add members to a group.\n"
2576
#: ipalib/plugins/group.py:273
2579
" Remove members from a group.\n"
2583
#: ipalib/plugins/group.py:281
2586
" Detach a managed group from a user\n"
2590
#: ipalib/plugins/group.py:285
2591
msgid "Detached group \"%(value)s\" from user \"%(value)s\""
2594
#: ipalib/plugins/group.py:288
2597
" This requires updating both the user and the group. We first need to\n"
2598
" verify that both the user and group can be updated, then we go\n"
2599
" about our work. We don't want a situation where only the user or\n"
2600
" group can be modified and we're left in a bad state.\n"
2604
#: ipalib/plugins/group.py:306
2605
msgid "not allowed to modify user entries"
2608
#: ipalib/plugins/group.py:312
2609
msgid "not allowed to modify group entries"
2612
#: ipalib/plugins/group.py:331
2613
msgid "Not a managed group"
2616
#: ipalib/plugins/hbacrule.py:19
2619
"Host-based access control\n"
2621
"Control who can access what services on what hosts and from where. You\n"
2622
"can use HBAC to control which users or groups on a source host can\n"
2623
"access a service, or group of services, on a target host.\n"
2625
"You can also specify a category of users, target hosts, and source\n"
2626
"hosts. This is currently limited to \"all\", but might be expanded in the\n"
2629
"Target hosts and source hosts in HBAC rules must be hosts managed by IPA.\n"
2631
"The available services and groups of services are controlled by the\n"
2632
"hbacsvc and hbacsvcgroup plug-ins respectively.\n"
2636
" Create a rule, \"test1\", that grants all users access to the host \"server\" from\n"
2638
" ipa hbacrule-add --type=allow --usercat=all --srchostcat=all test1\n"
2639
" ipa hbacrule-add-host --hosts=server.example.com test1\n"
2641
" Display the properties of a named HBAC rule:\n"
2642
" ipa hbacrule-show test1\n"
2644
" Create a rule for a specific service. This lets the user john access\n"
2645
" the sshd service on any machine from any machine:\n"
2646
" ipa hbacrule-add --type=allow --hostcat=all --srchostcat=all john_sshd\n"
2647
" ipa hbacrule-add-user --users=john john_sshd\n"
2648
" ipa hbacrule-add-service --hbacsvcs=sshd john_sshd\n"
2650
" Create a rule for a new service group. This lets the user john access\n"
2651
" the FTP service on any machine from any machine:\n"
2652
" ipa hbacsvcgroup-add ftpers\n"
2653
" ipa hbacsvc-add sftp\n"
2654
" ipa hbacsvcgroup-add-member --hbacsvcs=ftp,sftp ftpers\n"
2655
" ipa hbacrule-add --type=allow --hostcat=all --srchostcat=all john_ftp\n"
2656
" ipa hbacrule-add-user --users=john john_ftp\n"
2657
" ipa hbacrule-add-service --hbacsvcgroups=ftpers john_ftp\n"
2659
" Disable a named HBAC rule:\n"
2660
" ipa hbacrule-disable test1\n"
2662
" Remove a named HBAC rule:\n"
2663
" ipa hbacrule-del allow_server\n"
2666
#: ipalib/plugins/hbacrule.py:91
2669
" See if options[attribute] is lower-case 'all' in a safe way.\n"
2673
#: ipalib/plugins/hbacrule.py:103
2680
#: ipalib/plugins/hbacrule.py:126
2684
#: ipalib/plugins/hbacrule.py:131 ipalib/plugins/sudorule.py:73
2688
#: ipalib/plugins/hbacrule.py:136
2689
msgid "Rule type (allow or deny)"
2692
#: ipalib/plugins/hbacrule.py:137
2696
#: ipalib/plugins/hbacrule.py:143 ipalib/plugins/netgroup.py:124
2697
#: ipalib/plugins/sudorule.py:86
2698
msgid "User category"
2701
#: ipalib/plugins/hbacrule.py:144 ipalib/plugins/netgroup.py:125
2702
#: ipalib/plugins/sudorule.py:87
2703
msgid "User category the rule applies to"
2706
#: ipalib/plugins/hbacrule.py:149 ipalib/plugins/netgroup.py:130
2707
#: ipalib/plugins/sudorule.py:92
2708
msgid "Host category"
2711
#: ipalib/plugins/hbacrule.py:150 ipalib/plugins/netgroup.py:131
2712
#: ipalib/plugins/sudorule.py:93
2713
msgid "Host category the rule applies to"
2716
#: ipalib/plugins/hbacrule.py:155
2717
msgid "Source host category"
2720
#: ipalib/plugins/hbacrule.py:156
2721
msgid "Source host category the rule applies to"
2724
#: ipalib/plugins/hbacrule.py:161
2725
msgid "Service category"
2728
#: ipalib/plugins/hbacrule.py:162
2729
msgid "Service category the rule applies to"
2732
#: ipalib/plugins/hbacrule.py:174 ipalib/plugins/sudorule.py:81
2736
#: ipalib/plugins/hbacrule.py:178 ipalib/plugins/sudorule.py:115
2737
#: ipalib/plugins/user.py:108
2741
#: ipalib/plugins/hbacrule.py:182 ipalib/plugins/internal.py:272
2742
#: ipalib/plugins/sudorule.py:119
2746
#: ipalib/plugins/hbacrule.py:186 ipalib/plugins/host.py:226
2747
#: ipalib/plugins/sudorule.py:123
2751
#: ipalib/plugins/hbacrule.py:190 ipalib/plugins/hostgroup.py:73
2752
#: ipalib/plugins/sudorule.py:127
2756
#: ipalib/plugins/hbacrule.py:194
2757
msgid "Source hosts"
2760
#: ipalib/plugins/hbacrule.py:198
2761
msgid "Source host groups"
2764
#: ipalib/plugins/hbacrule.py:202 ipalib/plugins/internal.py:196
2765
#: ipalib/plugins/service.py:220
2769
#: ipalib/plugins/hbacrule.py:206
2770
msgid "Service Groups"
2773
#: ipalib/plugins/hbacrule.py:215
2776
" Create a new HBAC rule.\n"
2780
#: ipalib/plugins/hbacrule.py:219
2781
msgid "Added HBAC rule \"%(value)s\""
2784
#: ipalib/plugins/hbacrule.py:230
2787
" Delete an HBAC rule.\n"
2791
#: ipalib/plugins/hbacrule.py:234
2792
msgid "Deleted HBAC rule \"%(value)s\""
2795
#: ipalib/plugins/hbacrule.py:240
2798
" Modify an HBAC rule.\n"
2802
#: ipalib/plugins/hbacrule.py:244
2803
msgid "Modified HBAC rule \"%(value)s\""
2806
#: ipalib/plugins/hbacrule.py:266
2809
" Search for HBAC rules.\n"
2813
#: ipalib/plugins/hbacrule.py:270
2814
msgid "%(count)d HBAC rule matched"
2815
msgid_plural "%(count)d HBAC rules matched"
2819
#: ipalib/plugins/hbacrule.py:278
2822
" Display the properties of an HBAC rule.\n"
2826
#: ipalib/plugins/hbacrule.py:286
2829
" Enable an HBAC rule.\n"
2833
#: ipalib/plugins/hbacrule.py:290
2834
msgid "Enabled HBAC rule \"%(value)s\""
2837
#: ipalib/plugins/hbacrule.py:315
2840
" Disable an HBAC rule.\n"
2844
#: ipalib/plugins/hbacrule.py:319
2845
msgid "Disabled HBAC rule \"%(value)s\""
2848
#: ipalib/plugins/hbacrule.py:344
2851
" Add an access time to an HBAC rule.\n"
2855
#: ipalib/plugins/hbacrule.py:351 ipalib/plugins/hbacrule.py:391
2859
#: ipalib/plugins/hbacrule.py:385
2862
" Remove access time to HBAC rule.\n"
2866
#: ipalib/plugins/hbacrule.py:425
2869
" Add users and groups to an HBAC rule.\n"
2873
#: ipalib/plugins/hbacrule.py:442
2876
" Remove users and groups from an HBAC rule.\n"
2880
#: ipalib/plugins/hbacrule.py:452
2883
" Add target hosts and hostgroups to an HBAC rule\n"
2887
#: ipalib/plugins/hbacrule.py:469
2890
" Remove target hosts and hostgroups from an HBAC rule.\n"
2894
#: ipalib/plugins/hbacrule.py:479
2897
" Add source hosts and hostgroups from a HBAC rule.\n"
2901
#: ipalib/plugins/hbacrule.py:496
2904
" Remove source hosts and hostgroups from an HBAC rule.\n"
2908
#: ipalib/plugins/hbacrule.py:506
2911
" Add services to an HBAC rule.\n"
2915
#: ipalib/plugins/hbacrule.py:523
2918
" Remove service and service groups from an HBAC rule.\n"
2922
#: ipalib/plugins/hbacsvc.py:19
2927
"The PAM services that HBAC can control access to. The name used here\n"
2928
"must match the service name that PAM is evaluating.\n"
2932
" Add a new HBAC service:\n"
2933
" ipa hbacsvc-add tftp\n"
2935
" Modify an existing HBAC service:\n"
2936
" ipa hbacsvc-mod --desc=\"TFTP service\" tftp\n"
2938
" Search for HBAC services. This example will return two results, the FTP\n"
2939
" service and the newly-added tftp service:\n"
2940
" ipa hbacsvc-find ftp\n"
2942
" Delete an HBAC service:\n"
2943
" ipa hbacsvc-del tftp\n"
2947
#: ipalib/plugins/hbacsvc.py:51
2950
" HBAC Service object.\n"
2954
#: ipalib/plugins/hbacsvc.py:61
2955
msgid "HBAC Services"
2958
#: ipalib/plugins/hbacsvc.py:66
2959
msgid "Service name"
2962
#: ipalib/plugins/hbacsvc.py:67
2963
msgid "HBAC service"
2966
#: ipalib/plugins/hbacsvc.py:74
2967
msgid "HBAC service description"
2970
#: ipalib/plugins/hbacsvc.py:82
2973
" Add a new HBAC service.\n"
2977
#: ipalib/plugins/hbacsvc.py:85
2978
msgid "Added HBAC service \"%(value)s\""
2981
#: ipalib/plugins/hbacsvc.py:91
2984
" Delete an existing HBAC service.\n"
2988
#: ipalib/plugins/hbacsvc.py:94
2989
msgid "Deleted HBAC service \"%(value)s\""
2992
#: ipalib/plugins/hbacsvc.py:100
2995
" Modify an HBAC service.\n"
2999
#: ipalib/plugins/hbacsvc.py:104
3000
msgid "Modified HBAC service \"%(value)s\""
3003
#: ipalib/plugins/hbacsvc.py:110
3006
" Search for HBAC services.\n"
3010
#: ipalib/plugins/hbacsvc.py:114
3011
msgid "%(count)d HBAC service matched"
3012
msgid_plural "%(count)d HBAC services matched"
3016
#: ipalib/plugins/hbacsvc.py:122
3019
" Display information about an HBAC service.\n"
3023
#: ipalib/plugins/hbacsvcgroup.py:19
3026
"HBAC Service Groups\n"
3028
"HBAC service groups can contain any number of individual services,\n"
3029
"or \"members\". Every group must have a description.\n"
3033
" Add a new HBAC service group:\n"
3034
" ipa hbacsvcgroup-add --desc=\"login services\" login\n"
3036
" Add members to an HBAC service group:\n"
3037
" ipa hbacsvcgroup-add-member --hbacsvcs=sshd,login login\n"
3039
" Display information about a named group:\n"
3040
" ipa hbacsvcgroup-show login\n"
3042
" Add a new group to the \"login\" group:\n"
3043
" ipa hbacsvcgroup-add --desc=\"switch users\" login\n"
3044
" ipa hbacsvcgroup-add-member --hbacsvcs=su,su-l login\n"
3046
" Delete an HBAC service group:\n"
3047
" ipa hbacsvcgroup-del login\n"
3050
#: ipalib/plugins/hbacsvcgroup.py:51
3053
" HBAC service group object.\n"
3057
#: ipalib/plugins/hbacsvcgroup.py:64
3058
msgid "HBAC service Groups"
3061
#: ipalib/plugins/hbacsvcgroup.py:69
3062
msgid "Service group name"
3065
#: ipalib/plugins/hbacsvcgroup.py:76
3066
msgid "HBAC service group description"
3069
#: ipalib/plugins/hbacsvcgroup.py:84
3072
" Add a new HBAC service group.\n"
3076
#: ipalib/plugins/hbacsvcgroup.py:87
3077
msgid "Added HBAC service group \"%(value)s\""
3080
#: ipalib/plugins/hbacsvcgroup.py:93
3083
" Delete an HBAC service group.\n"
3087
#: ipalib/plugins/hbacsvcgroup.py:96
3088
msgid "Deleted HBAC service group \"%(value)s\""
3091
#: ipalib/plugins/hbacsvcgroup.py:102
3094
" Modify an HBAC service group.\n"
3098
#: ipalib/plugins/hbacsvcgroup.py:105
3099
msgid "Modified HBAC service group \"%(value)s\""
3102
#: ipalib/plugins/hbacsvcgroup.py:111
3105
" Search for an HBAC service group.\n"
3109
#: ipalib/plugins/hbacsvcgroup.py:114
3110
msgid "%(count)d HBAC service group matched"
3111
msgid_plural "%(count)d HBAC service groups matched"
3115
#: ipalib/plugins/hbacsvcgroup.py:122
3118
" Display information about an HBAC service group.\n"
3122
#: ipalib/plugins/hbacsvcgroup.py:130
3125
" Add members to an HBAC service group.\n"
3129
#: ipalib/plugins/hbacsvcgroup.py:138
3132
" Remove members from an HBAC service group.\n"
3136
#: ipalib/plugins/host.py:20
3141
"A host represents a machine. It can be used in a number of contexts:\n"
3142
"- service entries are associated with a host\n"
3143
"- a host stores the host/ service principal\n"
3144
"- a host can be used in Host-based Access Control (HBAC) rules\n"
3145
"- every enrolled client generates a host entry\n"
3149
"There are three enrollment scenarios when enrolling a new client:\n"
3151
"1. You are enrolling as a full administrator. The host entry may exist\n"
3152
" or not. A full administrator is a member of the hostadmin role\n"
3153
" or the admins group.\n"
3154
"2. You are enrolling as a limited administrator. The host must already\n"
3155
" exist. A limited administrator is a member a role with the\n"
3156
" Host Enrollment privilege.\n"
3157
"3. The host has been created with a one-time password.\n"
3159
"A host can only be enrolled once. If a client has enrolled and needs to\n"
3160
"be re-enrolled, the host entry must be removed and re-created. Note that\n"
3161
"re-creating the host entry will result in all services for the host being\n"
3162
"removed, and all SSL certificates associated with those services being\n"
3165
"A host can optionally store information such as where it is located,\n"
3166
"the OS that it runs, etc.\n"
3170
" Add a new host:\n"
3171
" ipa host-add --location=\"3rd floor lab\" --locality=Dallas test.example.com\n"
3174
" ipa host-del test.example.com\n"
3176
" Add a new host with a one-time password:\n"
3177
" ipa host-add --os='Fedora 12' --password=Secret123 test.example.com\n"
3179
" Add a new host with a random one-time password:\n"
3180
" ipa host-add --os='Fedora 12' --random test.example.com\n"
3182
" Modify information about a host:\n"
3183
" ipa host-mod --os='Fedora 12' test.example.com\n"
3185
" Disable the host Kerberos key, SSL certificate and all of its services:\n"
3186
" ipa host-disable test.example.com\n"
3188
" Add a host that can manage this host's keytab and certificate:\n"
3189
" ipa host-add-managedby --hosts=test2 test\n"
3192
#: ipalib/plugins/host.py:97
3195
" Require at least one dot in the hostname (to support localhost.localdomain)\n"
3199
#: ipalib/plugins/host.py:101
3200
msgid "Fully-qualified hostname required"
3203
#: ipalib/plugins/host.py:129
3204
msgid "DNS reverse zone for IP address %(addr)s not found"
3207
#: ipalib/plugins/host.py:153 ipalib/plugins/service.py:87
3211
#: ipalib/plugins/host.py:185
3214
" Verify that we have either an IPv4 or IPv6 address.\n"
3218
#: ipalib/plugins/host.py:189
3219
msgid "invalid IP address"
3222
#: ipalib/plugins/host.py:194
3229
#: ipalib/plugins/host.py:231
3233
#: ipalib/plugins/host.py:238
3234
msgid "A description of this host"
3237
#: ipalib/plugins/host.py:242
3241
#: ipalib/plugins/host.py:243
3242
msgid "Host locality (e.g. \"Baltimore, MD\")"
3245
#: ipalib/plugins/host.py:248
3246
msgid "Host location (e.g. \"Lab 2\")"
3249
#: ipalib/plugins/host.py:252
3253
#: ipalib/plugins/host.py:253
3254
msgid "Host hardware platform (e.g. \"Lenovo T61\")"
3257
#: ipalib/plugins/host.py:257
3258
msgid "Operating system"
3261
#: ipalib/plugins/host.py:258
3262
msgid "Host operating system and version (e.g. \"Fedora 9\")"
3265
#: ipalib/plugins/host.py:262
3266
msgid "User password"
3269
#: ipalib/plugins/host.py:263
3270
msgid "Password used in bulk enrollment"
3273
#: ipalib/plugins/host.py:266
3274
msgid "Generate a random password to be used in bulk enrollment"
3277
#: ipalib/plugins/host.py:271
3278
msgid "Random password"
3281
#: ipalib/plugins/host.py:277 ipalib/plugins/service.py:233
3282
msgid "Base-64 encoded server certificate"
3285
#: ipalib/plugins/host.py:280 ipalib/plugins/host.py:548
3286
msgid "Principal name"
3289
#: ipalib/plugins/host.py:306
3292
" Add a new host.\n"
3296
#: ipalib/plugins/host.py:311
3297
msgid "Added host \"%(value)s\""
3300
#: ipalib/plugins/host.py:316
3301
msgid "force host name even if not in DNS"
3304
#: ipalib/plugins/host.py:319
3305
msgid "skip reverse DNS detection"
3308
#: ipalib/plugins/host.py:322
3309
msgid "Add the host to DNS with this IP address"
3312
#: ipalib/plugins/host.py:338 ipalib/plugins/host.py:477
3313
msgid "DNS zone %(zone)s not found"
3316
#: ipalib/plugins/host.py:413
3317
msgid "The host was added but the DNS update failed with: %(exc)s"
3320
#: ipalib/plugins/host.py:422
3327
#: ipalib/plugins/host.py:426
3328
msgid "Deleted host \"%(value)s\""
3331
#: ipalib/plugins/host.py:431
3332
msgid "Remove entries from DNS"
3335
#: ipalib/plugins/host.py:537
3338
" Modify information about a host.\n"
3342
#: ipalib/plugins/host.py:542
3343
msgid "Modified host \"%(value)s\""
3346
#: ipalib/plugins/host.py:549
3347
msgid "Kerberos principal name for this host"
3350
#: ipalib/plugins/host.py:618
3353
" Search for hosts.\n"
3357
#: ipalib/plugins/host.py:623
3358
msgid "%(count)d host matched"
3359
msgid_plural "%(count)d hosts matched"
3363
#: ipalib/plugins/host.py:643
3366
" Display information about a host.\n"
3370
#: ipalib/plugins/host.py:649 ipalib/plugins/service.py:400
3371
msgid "file to store certificate in"
3374
#: ipalib/plugins/host.py:673 ipalib/plugins/service.py:422
3375
msgid "Certificate stored in file '%(file)s'"
3378
#: ipalib/plugins/host.py:684
3381
" Disable the Kerberos key, SSL certificate and all services of a host.\n"
3385
#: ipalib/plugins/host.py:688
3386
msgid "Disabled host \"%(value)s\""
3389
#: ipalib/plugins/host.py:770
3392
" Add hosts that can manage this host.\n"
3396
#: ipalib/plugins/host.py:781
3399
" Remove hosts that can manage this host.\n"
3403
#: ipalib/plugins/hostgroup.py:20
3406
"Groups of hosts.\n"
3408
"Manage groups of hosts. This is useful for applying access control to a\n"
3409
"number of hosts by using Host-based Access Control.\n"
3413
" Add a new host group:\n"
3414
" ipa hostgroup-add --desc=\"Baltimore hosts\" baltimore\n"
3416
" Add another new host group:\n"
3417
" ipa hostgroup-add --desc=\"Maryland hosts\" maryland\n"
3419
" Add members to the hostgroup:\n"
3420
" ipa hostgroup-add-member --hosts=box1,box2,box3 baltimore\n"
3422
" Add a hostgroup as a member of another hostgroup:\n"
3423
" ipa hostgroup-add-member --hostgroups=baltimore maryland\n"
3425
" Remove a host from the hostgroup:\n"
3426
" ipa hostgroup-remove-member --hosts=box2 baltimore\n"
3428
" Display a host group:\n"
3429
" ipa hostgroup-show baltimore\n"
3431
" Delete a hostgroup:\n"
3432
" ipa hostgroup-del baltimore\n"
3435
#: ipalib/plugins/hostgroup.py:55
3438
" Hostgroup object.\n"
3442
#: ipalib/plugins/hostgroup.py:78
3446
#: ipalib/plugins/hostgroup.py:79
3447
msgid "Name of host-group"
3450
#: ipalib/plugins/hostgroup.py:86
3451
msgid "A description of this host-group"
3454
#: ipalib/plugins/hostgroup.py:94
3457
" Add a new hostgroup.\n"
3461
#: ipalib/plugins/hostgroup.py:98
3462
msgid "Added hostgroup \"%(value)s\""
3465
#: ipalib/plugins/hostgroup.py:104
3468
" Delete a hostgroup.\n"
3472
#: ipalib/plugins/hostgroup.py:108
3473
msgid "Deleted hostgroup \"%(value)s\""
3476
#: ipalib/plugins/hostgroup.py:114
3479
" Modify a hostgroup.\n"
3483
#: ipalib/plugins/hostgroup.py:118
3484
msgid "Modified hostgroup \"%(value)s\""
3487
#: ipalib/plugins/hostgroup.py:124
3490
" Search for hostgroups.\n"
3494
#: ipalib/plugins/hostgroup.py:128
3495
msgid "%(count)d hostgroup matched"
3496
msgid_plural "%(count)d hostgroups matched"
3500
#: ipalib/plugins/hostgroup.py:136
3503
" Display information about a hostgroup.\n"
3507
#: ipalib/plugins/hostgroup.py:144
3510
" Add members to a hostgroup.\n"
3514
#: ipalib/plugins/hostgroup.py:152
3517
" Remove members from a hostgroup.\n"
3521
#: ipalib/plugins/internal.py:22
3524
"Plugins not accessible directly through the CLI, commands used internally\n"
3527
#: ipalib/plugins/internal.py:36
3530
" Export plugin meta-data for the webUI.\n"
3534
#: ipalib/plugins/internal.py:44
3535
msgid "Name of object to export"
3538
#: ipalib/plugins/internal.py:47
3539
msgid "Name of method to export"
3542
#: ipalib/plugins/internal.py:52
3543
msgid "Dict of JSON encoded IPA Objects"
3546
#: ipalib/plugins/internal.py:53
3547
msgid "Dict of JSON encoded IPA Methods"
3550
#: ipalib/plugins/internal.py:96
3551
msgid "Logged In As"
3554
#: ipalib/plugins/internal.py:99
3558
#: ipalib/plugins/internal.py:102
3559
msgid "Add Automount Location"
3562
#: ipalib/plugins/internal.py:103
3563
msgid "Automount Location Settings"
3566
#: ipalib/plugins/internal.py:106
3567
msgid "Add Automount Map"
3570
#: ipalib/plugins/internal.py:109
3571
msgid "Add Automount Key"
3574
#: ipalib/plugins/internal.py:112
3578
#: ipalib/plugins/internal.py:113
3579
msgid "Key Compromise"
3582
#: ipalib/plugins/internal.py:114
3583
msgid "CA Compromise"
3586
#: ipalib/plugins/internal.py:115
3587
msgid "Affiliation Changed"
3590
#: ipalib/plugins/internal.py:116
3594
#: ipalib/plugins/internal.py:117
3595
msgid "Cessation of Operation"
3598
#: ipalib/plugins/internal.py:118
3599
msgid "Certificate Hold"
3602
#: ipalib/plugins/internal.py:119
3603
msgid "Remove from CRL"
3606
#: ipalib/plugins/internal.py:120
3607
msgid "Privilege Withdrawn"
3610
#: ipalib/plugins/internal.py:121
3611
msgid "AA Compromise"
3614
#: ipalib/plugins/internal.py:122
3616
"To confirm your intention to revoke this certificate, select a reason from "
3617
"the pull-down list, and click the \"Revoke\" button."
3620
#: ipalib/plugins/internal.py:124
3624
#: ipalib/plugins/internal.py:125
3625
msgid "Reason for Revocation"
3628
#: ipalib/plugins/internal.py:126
3630
"To confirm your intention to restore this certificate, click the \"Restore\""
3634
#: ipalib/plugins/internal.py:128
3638
#: ipalib/plugins/internal.py:129
3642
#: ipalib/plugins/internal.py:130
3643
msgid "Organization"
3646
#: ipalib/plugins/internal.py:131
3647
msgid "Organizational Unit"
3650
#: ipalib/plugins/internal.py:133
3654
#: ipalib/plugins/internal.py:134
3658
#: ipalib/plugins/internal.py:135
3662
#: ipalib/plugins/internal.py:136
3666
#: ipalib/plugins/internal.py:137
3667
msgid "Fingerprints"
3670
#: ipalib/plugins/internal.py:138
3671
msgid "SHA1 Fingerprint"
3674
#: ipalib/plugins/internal.py:139
3675
msgid "MD5 Fingerprint"
3678
#: ipalib/plugins/internal.py:140
3679
msgid "Enter the Base64-encoded CSR below"
3682
#: ipalib/plugins/internal.py:141
3683
msgid "Valid Certificate Present"
3686
#: ipalib/plugins/internal.py:142
3687
msgid "New Certificate"
3690
#: ipalib/plugins/internal.py:143
3691
msgid "Certificate Revoked"
3694
#: ipalib/plugins/internal.py:144
3695
msgid "No Valid Certificate"
3698
#: ipalib/plugins/internal.py:145
3699
msgid "Certificate for ${entity} ${primary_key}"
3702
#: ipalib/plugins/internal.py:146
3703
msgid "Issue New Certificate for ${entity} ${primary_key}"
3706
#: ipalib/plugins/internal.py:147
3707
msgid "Revoke Certificate for ${entity} ${primary_key}"
3710
#: ipalib/plugins/internal.py:148
3711
msgid "Restore Certificate for ${entity} ${primary_key}"
3714
#: ipalib/plugins/internal.py:152
3718
#: ipalib/plugins/internal.py:155
3719
msgid "Add Delegation"
3722
#: ipalib/plugins/internal.py:158
3723
msgid "Add DNS Zone"
3726
#: ipalib/plugins/internal.py:159
3727
msgid "DNS Zone Settings"
3730
#: ipalib/plugins/internal.py:162
3731
msgid "Add DNS Resource Record"
3734
#: ipalib/plugins/internal.py:163
3738
#: ipalib/plugins/internal.py:165
3742
#: ipalib/plugins/internal.py:166
3743
msgid "Records for DNS Zone"
3746
#: ipalib/plugins/internal.py:169
3750
#: ipalib/plugins/internal.py:170
3751
msgid "Group Settings"
3754
#: ipalib/plugins/internal.py:171 ipalib/plugins/internal.py:206
3755
msgid "Is this a POSIX group?"
3758
#: ipalib/plugins/internal.py:174
3759
msgid "Add HBAC Rule"
3762
#: ipalib/plugins/internal.py:175 ipalib/plugins/internal.py:280
3763
#: ipalib/plugins/internal.py:306
3767
#: ipalib/plugins/internal.py:176 ipalib/plugins/internal.py:282
3771
#: ipalib/plugins/internal.py:177 ipalib/plugins/internal.py:283
3775
#: ipalib/plugins/internal.py:178 ipalib/plugins/internal.py:281
3776
#: ipalib/plugins/internal.py:308
3780
#: ipalib/plugins/internal.py:179 ipalib/plugins/internal.py:296
3784
#: ipalib/plugins/internal.py:180 ipalib/plugins/internal.py:284
3788
#: ipalib/plugins/internal.py:181 ipalib/plugins/internal.py:285
3792
#: ipalib/plugins/internal.py:182 ipalib/plugins/internal.py:286
3793
msgid "Specified Users and Groups"
3796
#: ipalib/plugins/internal.py:183
3800
#: ipalib/plugins/internal.py:184 ipalib/plugins/internal.py:288
3804
#: ipalib/plugins/internal.py:185 ipalib/plugins/internal.py:289
3805
msgid "Specified Hosts and Groups"
3808
#: ipalib/plugins/internal.py:186
3812
#: ipalib/plugins/internal.py:187
3816
#: ipalib/plugins/internal.py:188
3817
msgid "Specified Services and Groups"
3820
#: ipalib/plugins/internal.py:189
3824
#: ipalib/plugins/internal.py:192
3825
msgid "Add HBAC Service"
3828
#: ipalib/plugins/internal.py:195
3829
msgid "Add HBAC Service Group"
3832
#: ipalib/plugins/internal.py:199
3836
#: ipalib/plugins/internal.py:200
3837
msgid "Host Certificate"
3840
#: ipalib/plugins/internal.py:201 ipalib/plugins/internal.py:259
3844
#: ipalib/plugins/internal.py:202
3845
msgid "Host Settings"
3848
#: ipalib/plugins/internal.py:203
3852
#: ipalib/plugins/internal.py:204
3856
#: ipalib/plugins/internal.py:205
3857
msgid "Fully Qualified Host Name"
3860
#: ipalib/plugins/internal.py:207 ipalib/plugins/internal.py:262
3864
#: ipalib/plugins/internal.py:208
3865
msgid "Kerberos Key Present, Host Provisioned"
3868
#: ipalib/plugins/internal.py:209 ipalib/plugins/internal.py:264
3869
msgid "Delete Key, Unprovision"
3872
#: ipalib/plugins/internal.py:210 ipalib/plugins/internal.py:265
3873
msgid "Kerberos Key Not Present"
3876
#: ipalib/plugins/internal.py:211
3877
msgid "Enroll via One-Time-Password"
3880
#: ipalib/plugins/internal.py:212
3884
#: ipalib/plugins/internal.py:213
3885
msgid "One-Time-Password has been set."
3888
#: ipalib/plugins/internal.py:214 ipalib/plugins/internal.py:266
3889
msgid "Unprovisioning ${entity}"
3892
#: ipalib/plugins/internal.py:215
3893
msgid "Are you sure you want to unprovision this host?"
3896
#: ipalib/plugins/internal.py:216 ipalib/plugins/internal.py:268
3900
#: ipalib/plugins/internal.py:219
3901
msgid "Add Host Group"
3904
#: ipalib/plugins/internal.py:220
3905
msgid "Host Group Settings"
3908
#: ipalib/plugins/internal.py:223
3909
msgid "Kerberos ticket policy"
3912
#: ipalib/plugins/internal.py:226
3913
msgid "Add Netgroup"
3916
#: ipalib/plugins/internal.py:227
3917
msgid "Netgroup Settings"
3920
#: ipalib/plugins/internal.py:230
3921
msgid "Add Permission"
3924
#: ipalib/plugins/internal.py:231 ipalib/plugins/internal.py:376
3928
#: ipalib/plugins/internal.py:233
3932
#: ipalib/plugins/internal.py:235
3936
#: ipalib/plugins/internal.py:236
3937
msgid "Target Group"
3940
#: ipalib/plugins/internal.py:237
3941
msgid "Object By Type"
3944
#: ipalib/plugins/internal.py:238
3945
msgid "Permission with invalid target specification"
3948
#: ipalib/plugins/internal.py:241
3949
msgid "Add Privilege"
3952
#: ipalib/plugins/internal.py:242
3953
msgid "Privilege Settings"
3956
#: ipalib/plugins/internal.py:245
3957
msgid "Add Password Policy"
3960
#: ipalib/plugins/internal.py:246 ipalib/plugins/pwpolicy.py:219
3961
msgid "Password Policy"
3964
#: ipalib/plugins/internal.py:249
3968
#: ipalib/plugins/internal.py:250
3969
msgid "Role Settings"
3972
#: ipalib/plugins/internal.py:253
3973
msgid "Add Self Service Definition"
3976
#: ipalib/plugins/internal.py:256
3980
#: ipalib/plugins/internal.py:257
3981
msgid "Service Certificate"
3984
#: ipalib/plugins/internal.py:258
3985
msgid "Service Settings"
3988
#: ipalib/plugins/internal.py:260
3989
msgid "Provisioning"
3992
#: ipalib/plugins/internal.py:261
3996
#: ipalib/plugins/internal.py:263
3997
msgid "Kerberos Key Present, Service Provisioned"
4000
#: ipalib/plugins/internal.py:267
4001
msgid "Are you sure you want to unprovision this service?"
4004
#: ipalib/plugins/internal.py:271
4005
msgid "Add Sudo Command"
4008
#: ipalib/plugins/internal.py:275
4009
msgid "Add Sudo Command Group"
4012
#: ipalib/plugins/internal.py:276 ipalib/plugins/sudocmdgroup.py:80
4016
#: ipalib/plugins/internal.py:279
4017
msgid "Add Sudo Rule"
4020
#: ipalib/plugins/internal.py:287
4021
msgid "Access this host"
4024
#: ipalib/plugins/internal.py:290
4025
msgid "Run Commands"
4028
#: ipalib/plugins/internal.py:291
4032
#: ipalib/plugins/internal.py:292
4033
msgid "Specified Commands and Groups"
4036
#: ipalib/plugins/internal.py:293
4040
#: ipalib/plugins/internal.py:294
4044
#: ipalib/plugins/internal.py:295
4045
msgid "Specified Groups"
4048
#: ipalib/plugins/internal.py:297
4052
#: ipalib/plugins/internal.py:300
4056
#: ipalib/plugins/internal.py:301
4057
msgid "Account Settings"
4060
#: ipalib/plugins/internal.py:302
4061
msgid "Contact Settings"
4064
#: ipalib/plugins/internal.py:303
4065
msgid "Mailing Address"
4068
#: ipalib/plugins/internal.py:304
4069
msgid "Employee Information"
4072
#: ipalib/plugins/internal.py:305
4073
msgid "Misc. Information"
4076
#: ipalib/plugins/internal.py:307
4077
msgid "Click to Deactivate"
4080
#: ipalib/plugins/internal.py:309
4081
msgid "Click to Activate"
4084
#: ipalib/plugins/internal.py:310
4085
msgid "Error changing account status"
4088
#: ipalib/plugins/internal.py:311
4089
msgid "Reset Password"
4092
#: ipalib/plugins/internal.py:312
4093
msgid "New Password"
4096
#: ipalib/plugins/internal.py:313
4097
msgid "Repeat Password"
4100
#: ipalib/plugins/internal.py:314
4101
msgid "Password change complete"
4104
#: ipalib/plugins/internal.py:315
4105
msgid "Passwords must match"
4108
#: ipalib/plugins/internal.py:319
4112
#: ipalib/plugins/internal.py:320
4113
msgid "Add and Add Another"
4116
#: ipalib/plugins/internal.py:321
4117
msgid "Add and Edit"
4120
#: ipalib/plugins/internal.py:322
4121
msgid "Add and Close"
4124
#: ipalib/plugins/internal.py:323
4128
#: ipalib/plugins/internal.py:324
4129
msgid "Back to List"
4132
#: ipalib/plugins/internal.py:325
4136
#: ipalib/plugins/internal.py:326
4140
#: ipalib/plugins/internal.py:327
4144
#: ipalib/plugins/internal.py:328
4148
#: ipalib/plugins/internal.py:329
4152
#: ipalib/plugins/internal.py:330
4156
#: ipalib/plugins/internal.py:331
4160
#: ipalib/plugins/internal.py:332
4164
#: ipalib/plugins/internal.py:333
4168
#: ipalib/plugins/internal.py:334
4172
#: ipalib/plugins/internal.py:335
4176
#: ipalib/plugins/internal.py:336
4180
#: ipalib/plugins/internal.py:337
4184
#: ipalib/plugins/internal.py:338
4188
#: ipalib/plugins/internal.py:341
4192
#: ipalib/plugins/internal.py:342
4193
msgid "This page has unsaved changes. Please save or revert."
4196
#: ipalib/plugins/internal.py:343
4200
#: ipalib/plugins/internal.py:344
4201
msgid "Hide already enrolled."
4204
#: ipalib/plugins/internal.py:345
4205
msgid "Select ${entity} to be removed."
4208
#: ipalib/plugins/internal.py:346
4209
msgid "Remove ${entity}."
4212
#: ipalib/plugins/internal.py:347
4216
#: ipalib/plugins/internal.py:350
4220
#: ipalib/plugins/internal.py:351
4224
#: ipalib/plugins/internal.py:352
4225
msgid "Indirect Member"
4228
#: ipalib/plugins/internal.py:353
4232
#: ipalib/plugins/internal.py:354
4233
msgid "Indirect Member Of"
4236
#: ipalib/plugins/internal.py:355 ipalib/plugins/internal.py:359
4240
#: ipalib/plugins/internal.py:358
4244
#: ipalib/plugins/internal.py:362
4248
#: ipalib/plugins/internal.py:363
4252
#: ipalib/plugins/internal.py:364
4253
msgid "Unselect All"
4256
#: ipalib/plugins/internal.py:365
4257
msgid "Are you sure you want to delete selected entries?"
4260
#: ipalib/plugins/internal.py:366
4262
"Query returned more results than the configured size limit. Displaying the "
4263
"first ${counter} results."
4266
#: ipalib/plugins/internal.py:370
4270
#: ipalib/plugins/internal.py:371
4271
msgid "Identity Settings"
4274
#: ipalib/plugins/internal.py:372
4275
msgid "${entity} ${primary_key} Settings"
4278
#: ipalib/plugins/internal.py:373
4282
#: ipalib/plugins/internal.py:377
4286
#: ipalib/plugins/internal.py:378
4290
#: ipalib/plugins/internal.py:379
4294
#: ipalib/plugins/internal.py:380
4298
#: ipalib/plugins/internal.py:381
4299
msgid "Host Based Access Control"
4302
#: ipalib/plugins/internal.py:382
4303
msgid "Role Based Access Control"
4306
#: ipalib/plugins/internal.py:383
4310
#: ipalib/plugins/internal.py:386
4311
msgid "Add ${other_entity} into ${entity} ${primary_key}"
4314
#: ipalib/plugins/internal.py:387
4315
msgid "${other_entity} enrolled in ${entity} ${primary_key}"
4318
#: ipalib/plugins/internal.py:388
4319
msgid "${entity} ${primary_key} is enrolled in the following ${other_entity}"
4322
#: ipalib/plugins/internal.py:389
4323
msgid "Remove ${other_entity} from ${entity} ${primary_key}"
4326
#: ipalib/plugins/internal.py:392
4327
msgid "Text does not match field pattern"
4330
#: ipalib/plugins/internal.py:395
4332
"Your Kerberos ticket is no longer valid. Please run kinit and then click "
4333
"'Retry'. If this is your first time running the IPA Web UI <a "
4334
"href='/ipa/config/unauthorized.html'>follow these directions</a> to "
4335
"configure your browser."
4338
#: ipalib/plugins/internal.py:399
4339
msgid "Dict of I18N messages"
4342
#: ipalib/plugins/kerberos.py:20
4345
"Backend plugin for Kerberos.\n"
4347
"This wraps the python-kerberos and python-krbV bindings.\n"
4350
#: ipalib/plugins/kerberos.py:35
4353
" Kerberos backend plugin.\n"
4355
" This wraps the `krbV` bindings (and will eventually wrap the `kerberos`\n"
4356
" bindings also). Importantly, this plugin does correct Unicode\n"
4357
" encoding/decoding of values going-to/coming-from the bindings.\n"
4361
#: ipalib/plugins/kerberos.py:44
4364
" Return the ``krbV.CCache`` for the default credential cache.\n"
4368
#: ipalib/plugins/kerberos.py:50
4371
" Return the ``krb5.Principal`` for the default credential cache.\n"
4375
#: ipalib/plugins/kerberos.py:56
4378
" Return the ``krbV.CCache`` for the ``ccname`` credential ccache.\n"
4382
#: ipalib/plugins/kerberos.py:62
4385
" Return the ``krb5.Principal`` for the ``ccname`` credential ccache.\n"
4389
#: ipalib/plugins/kerberos.py:68
4392
" Return the default ccache file name.\n"
4394
" This will return something like '/tmp/krb5cc_500'.\n"
4396
" This cannot return anything meaningful if used in the server as a\n"
4397
" request is processed.\n"
4401
#: ipalib/plugins/kerberos.py:79
4404
" Return the principal name in default credential cache.\n"
4406
" This will return something like 'admin@EXAMPLE.COM'. If no credential\n"
4407
" cache exists for the invoking user, None is returned.\n"
4409
" This cannot return anything meaningful if used in the server as a\n"
4410
" request is processed.\n"
4414
#: ipalib/plugins/kerberos.py:91
4417
" Return the realm from the default credential cache.\n"
4419
" This will return something like 'EXAMPLE.COM'. If no credential cache\n"
4420
" exists for the invoking user, None is returned.\n"
4422
" This cannot return anything meaningful if used in the server as a\n"
4423
" request is processed.\n"
4427
#: ipalib/plugins/kerberos.py:103
4430
" Return the principal from credential cache file at ``ccname``.\n"
4432
" This will return something like 'admin@EXAMPLE.COM'.\n"
4436
#: ipalib/plugins/kerberos.py:111
4439
" Return the realm from credential cache file at ``ccname``.\n"
4441
" This will return something like 'EXAMPLE.COM'.\n"
4445
#: ipalib/plugins/krbtpolicy.py:19
4448
"Kerberos ticket policy\n"
4450
"There is a single Kerberos ticket policy. This policy defines the\n"
4451
"maximum ticket lifetime and the maximum renewal age, the period during\n"
4452
"which the ticket is renewable.\n"
4454
"You can also create a per-user ticket policy by specifying the user login.\n"
4456
"For changes to the global policy to take effect, restarting the KDC service\n"
4457
"is required, which can be achieved using:\n"
4459
"service krb5kdc restart\n"
4461
"Changes to per-user policies take effect immediately for newly requested\n"
4462
"tickets (e.g. when the user next runs kinit).\n"
4466
" Display the current Kerberos ticket policy:\n"
4467
" ipa krbtpolicy-show\n"
4469
" Reset the policy to the default:\n"
4470
" ipa krbtpolicy-reset\n"
4472
" Modify the policy to 8 hours max life, 1-day max renewal:\n"
4473
" ipa krbtpolicy-mod --maxlife=28800 --maxrenew=86400\n"
4475
" Display effective Kerberos ticket policy for user 'admin':\n"
4476
" ipa krbtpolicy-show admin\n"
4478
" Reset per-user policy for user 'admin':\n"
4479
" ipa krbtpolicy-reset admin\n"
4481
" Modify per-user policy for user 'admin':\n"
4482
" ipa krbtpolicy-mod admin --maxlife=3600\n"
4485
#: ipalib/plugins/krbtpolicy.py:71
4488
" Kerberos Ticket Policy object\n"
4492
#: ipalib/plugins/krbtpolicy.py:79
4493
msgid "Kerberos Ticket Policy"
4496
#: ipalib/plugins/krbtpolicy.py:84 ipalib/plugins/passwd.py:53
4500
#: ipalib/plugins/krbtpolicy.py:85
4501
msgid "Manage ticket policy for specific user"
4504
#: ipalib/plugins/krbtpolicy.py:90
4508
#: ipalib/plugins/krbtpolicy.py:91
4509
msgid "Maximum ticket life (seconds)"
4512
#: ipalib/plugins/krbtpolicy.py:96
4516
#: ipalib/plugins/krbtpolicy.py:97
4517
msgid "Maximum renewable age (seconds)"
4520
#: ipalib/plugins/krbtpolicy.py:111
4523
" Modify Kerberos ticket policy.\n"
4527
#: ipalib/plugins/krbtpolicy.py:125
4530
" Display the current Kerberos ticket policy.\n"
4534
#: ipalib/plugins/krbtpolicy.py:149
4537
" Reset Kerberos ticket policy to the default values.\n"
4541
#: ipalib/plugins/migration.py:19
4544
"Migration to IPA\n"
4546
"Migrate users and groups from an LDAP server to IPA.\n"
4548
"This performs an LDAP query against the remote server searching for\n"
4549
"users and groups in a container. In order to migrate passwords you need\n"
4550
"to bind as a user that can read the userPassword attribute on the remote\n"
4551
"server. This is generally restricted to high-level admins such as\n"
4552
"cn=Directory Manager in 389-ds (this is the default bind user).\n"
4554
"The default user container is ou=People.\n"
4556
"The default group container is ou=Groups.\n"
4558
"Users and groups that already exist on the IPA server are skipped.\n"
4560
"Two LDAP schemas define how group members are stored: RFC2307 and\n"
4561
"RFC2307bis. RFC2307bis uses member and uniquemember to specify group\n"
4562
"members, RFC2307 uses memberUid. The default schema is RFC2307bis.\n"
4564
"Migrated users do not have Kerberos credentials, they have only their\n"
4565
"LDAP password. To complete the migration process, users need to go\n"
4566
"to http://ipa.example.com/ipa/migration and authenticate using their\n"
4567
"LDAP password in order to generate their Kerberos credentials.\n"
4569
"Migration is disabled by default. Use the command ipa config-mod to\n"
4572
" ipa config-mod --enable-migration=TRUE\n"
4576
" The simplest migration, accepting all defaults:\n"
4577
" ipa migrate-ds ldap://ds.example.com:389\n"
4579
" Specify the user and group container. This can be used to migrate user and\n"
4580
" group data from an IPA v1 server:\n"
4581
" ipa migrate-ds --user-container='cn=users,cn=accounts' --group-container='cn=groups,cn=accounts' ldap://ds.example.com:389\n"
4584
#: ipalib/plugins/migration.py:78
4586
"Kerberos principal %s already exists. Use 'ipa user-mod' to set it manually."
4589
#: ipalib/plugins/migration.py:79
4591
"Failed to add user to the default group. Use 'ipa group-add-member' to add "
4595
#: ipalib/plugins/migration.py:175
4598
" Convert usernames in member attributes to work in IPA.\n"
4602
#: ipalib/plugins/migration.py:220
4603
msgid "Invalid LDAP URI."
4606
#: ipalib/plugins/migration.py:225
4609
" Migrate users and groups from DS to IPA.\n"
4613
#: ipalib/plugins/migration.py:266
4617
#: ipalib/plugins/migration.py:267
4618
msgid "LDAP URI of DS server to migrate from"
4621
#: ipalib/plugins/migration.py:272
4622
msgid "bind password"
4625
#: ipalib/plugins/migration.py:279
4629
#: ipalib/plugins/migration.py:285
4630
msgid "User container"
4633
#: ipalib/plugins/migration.py:286
4634
msgid "RDN of container for users in DS"
4637
#: ipalib/plugins/migration.py:292
4638
msgid "Group container"
4641
#: ipalib/plugins/migration.py:293
4642
msgid "RDN of container for groups in DS"
4645
#: ipalib/plugins/migration.py:299
4646
msgid "User object class"
4649
#: ipalib/plugins/migration.py:300
4651
"Comma-separated list of objectclasses used to search for user entries in DS"
4654
#: ipalib/plugins/migration.py:306
4655
msgid "Group object class"
4658
#: ipalib/plugins/migration.py:307
4660
"Comma-separated list of objectclasses used to search for group entries in DS"
4663
#: ipalib/plugins/migration.py:313
4667
#: ipalib/plugins/migration.py:314
4669
"The schema used on the LDAP server. Supported values are RFC2307 and "
4670
"RFC2307bis. The default is RFC2307bis"
4673
#: ipalib/plugins/migration.py:320
4675
"Continuous operation mode. Errors are reported but the process continues"
4678
#: ipalib/plugins/migration.py:328
4679
msgid "Lists of objects migrated; categorized by type."
4682
#: ipalib/plugins/migration.py:332
4683
msgid "Lists of objects that could not be migrated; categorized by type."
4686
#: ipalib/plugins/migration.py:336
4687
msgid "False if migration mode was disabled."
4690
#: ipalib/plugins/migration.py:340
4691
msgid "comma-separated list of %s to exclude from migration"
4694
#: ipalib/plugins/migration.py:342
4696
"search results for objects to be migrated\n"
4697
"have been truncated by the server;\n"
4698
"migration process might be incomplete\n"
4701
#: ipalib/plugins/migration.py:347
4702
msgid "Migration mode is disabled. Use 'ipa config-mod' to enable it."
4705
#: ipalib/plugins/migration.py:350
4707
"Passwords have been migrated in pre-hashed format.\n"
4708
"IPA is unable to generate Kerberos keys unless provided\n"
4709
"with clear text passwords. All migrated users need to\n"
4710
"login at https://your.domain/ipa/migration/ before they\n"
4711
"can use their Kerberos accounts."
4714
#: ipalib/plugins/migration.py:358
4717
" Call get_options of the baseclass and add \"exclude\" options\n"
4718
" for each type of object being migrated.\n"
4722
#: ipalib/plugins/migration.py:375
4725
" Convert all \"exclude\" option values to lower-case.\n"
4727
" Also, empty List parameters are converted to None, but the migration\n"
4728
" plugin doesn't like that - convert back to empty lists.\n"
4732
#: ipalib/plugins/migration.py:399
4735
" Migrate objects from DS to LDAP.\n"
4739
#: ipalib/plugins/migration.py:425
4740
msgid "Container for %(container)s not found"
4743
#: ipalib/plugins/misc.py:20
4749
#: ipalib/plugins/misc.py:36
4750
msgid "Show environment variables"
4753
#: ipalib/plugins/misc.py:38
4754
msgid "%(count)d variables"
4757
#: ipalib/plugins/misc.py:47 ipalib/plugins/misc.py:115
4759
"retrieve and print all attributes from the server. Affects command output."
4762
#: ipalib/plugins/misc.py:61
4763
msgid "Total number of variables env (>= count)"
4766
#: ipalib/plugins/misc.py:66
4767
msgid "Number of variables returned (<= total)"
4770
#: ipalib/plugins/misc.py:106
4771
msgid "Show all loaded plugins"
4774
#: ipalib/plugins/misc.py:108
4775
msgid "%(count)d plugin loaded"
4776
msgid_plural "%(count)d plugins loaded"
4780
#: ipalib/plugins/misc.py:126
4781
msgid "Number of plugins loaded"
4784
#: ipalib/plugins/netgroup.py:20
4789
"A netgroup is a group used for permission checking. It can contain both\n"
4790
"user and host values.\n"
4794
" Add a new netgroup:\n"
4795
" ipa netgroup-add --desc=\"NFS admins\" admins\n"
4797
" Add members to the netgroup:\n"
4798
" ipa netgroup-add-member --users=tuser1,tuser2 admins\n"
4800
" Remove a member from the netgroup:\n"
4801
" ipa netgroup-remove-member --users=tuser2 admins\n"
4803
" Display information about a netgroup:\n"
4804
" ipa netgroup-show admins\n"
4806
" Delete a netgroup:\n"
4807
" ipa netgroup-del admins\n"
4810
#: ipalib/plugins/netgroup.py:59
4814
#: ipalib/plugins/netgroup.py:67
4817
" Netgroup object.\n"
4821
#: ipalib/plugins/netgroup.py:98
4825
#: ipalib/plugins/netgroup.py:103
4826
msgid "Netgroup name"
4829
#: ipalib/plugins/netgroup.py:110
4830
msgid "Netgroup description"
4833
#: ipalib/plugins/netgroup.py:114
4834
msgid "NIS domain name"
4837
#: ipalib/plugins/netgroup.py:119
4838
msgid "IPA unique ID"
4841
#: ipalib/plugins/netgroup.py:140
4844
" Add a new netgroup.\n"
4848
#: ipalib/plugins/netgroup.py:144
4849
msgid "Added netgroup \"%(value)s\""
4852
#: ipalib/plugins/netgroup.py:153
4855
" Delete a netgroup.\n"
4859
#: ipalib/plugins/netgroup.py:156
4860
msgid "Deleted netgroup \"%(value)s\""
4863
#: ipalib/plugins/netgroup.py:162
4866
" Modify a netgroup.\n"
4870
#: ipalib/plugins/netgroup.py:166
4871
msgid "Modified netgroup \"%(value)s\""
4874
#: ipalib/plugins/netgroup.py:180
4877
" Search for a netgroup.\n"
4881
#: ipalib/plugins/netgroup.py:185
4882
msgid "%(count)d netgroup matched"
4883
msgid_plural "%(count)d netgroups matched"
4887
#: ipalib/plugins/netgroup.py:213
4890
" Display information about a netgroup.\n"
4894
#: ipalib/plugins/netgroup.py:222
4897
" Add members to a netgroup.\n"
4901
#: ipalib/plugins/netgroup.py:258
4904
" Remove members from a netgroup.\n"
4908
#: ipalib/plugins/passwd.py:19
4911
"Set a user's password\n"
4913
"If someone other than a user changes that user's password (e.g., Helpdesk\n"
4914
"resets it) then the password will need to be changed the first time it\n"
4915
"is used. This is so the end-user is the only one who knows the password.\n"
4917
"The IPA password policy controls how often a password may be changed,\n"
4918
"what strength requirements exist, and the length of the password history.\n"
4922
" To reset your own password:\n"
4925
" To change another user's password:\n"
4926
" ipa passwd tuser1\n"
4929
#: ipalib/plugins/passwd.py:46
4932
" Set a user's password\n"
4936
#: ipalib/plugins/passwd.py:64
4937
msgid "Changed password for \"%(value)s\""
4940
#: ipalib/plugins/passwd.py:67
4943
" Execute the passwd operation.\n"
4945
" The dn should not be passed as a keyword argument as it is constructed\n"
4946
" by this method.\n"
4948
" Returns the entry\n"
4950
" :param principal: The login name or principal of the user\n"
4951
" :param password: the new password\n"
4955
#: ipalib/plugins/permission.py:19
4960
"A permission enables fine-grained delegation of rights. A permission is\n"
4961
"a human-readable form of a 389-ds Access Control Rule, or instruction (ACI).\n"
4962
"A permission grants the right to perform a specific task such as adding a\n"
4963
"user, modifying a group, etc.\n"
4965
"A permission may not contain other permissions.\n"
4967
"* A permission grants access to read, write, add or delete.\n"
4968
"* A privilege combines similar permissions (for example all the permissions\n"
4969
" needed to add a user).\n"
4970
"* A role grants a set of privileges to users, groups, hosts or hostgroups.\n"
4972
"A permission is made up of a number of different parts:\n"
4974
"1. The name of the permission.\n"
4975
"2. The target of the permission.\n"
4976
"3. The rights granted by the permission.\n"
4978
"Rights define what operations are allowed, and may be one or more\n"
4979
"of the following:\n"
4980
"1. write - write one or more attributes\n"
4981
"2. read - read one or more attributes\n"
4982
"3. add - add a new entry to the tree\n"
4983
"4. delete - delete an existing entry\n"
4984
"5. all - all permissions are granted\n"
4986
"Read permission is granted for most attributes by default so the read\n"
4987
"permission is not expected to be used very often.\n"
4989
"Note the distinction between attributes and entries. The permissions are\n"
4990
"independent, so being able to add a user does not mean that the user will\n"
4993
"There are a number of allowed targets:\n"
4994
"1. type: a type of object (user, group, etc).\n"
4995
"2. memberof: a member of a group or hostgroup\n"
4996
"3. filter: an LDAP filter\n"
4997
"4. subtree: an LDAP filter specifying part of the LDAP DIT. This is a\n"
4998
" super-set of the \"type\" target.\n"
4999
"5. targetgroup: grant access to modify a specific group (such as granting\n"
5000
" the rights to manage group membership)\n"
5004
" Add a permission that grants the creation of users:\n"
5005
" ipa permission-add --type=user --permissions=add \"Add Users\"\n"
5007
" Add a permission that grants the ability to manage group membership:\n"
5008
" ipa permission-add --attrs=member --permissions=write --type=group \"Manage Group Members\"\n"
5011
#: ipalib/plugins/permission.py:84
5012
msgid "Permission Type"
5015
#: ipalib/plugins/permission.py:89
5018
" Permission object.\n"
5022
#: ipalib/plugins/permission.py:112
5023
msgid "Permission name"
5026
#: ipalib/plugins/permission.py:119
5028
"Comma-separated list of permissions to grant (read, write, add, delete, all)"
5031
#: ipalib/plugins/permission.py:132
5033
"Type of IPA object (user, group, host, hostgroup, service, netgroup, dns)"
5036
#: ipalib/plugins/permission.py:138
5037
msgid "Member of group"
5040
#: ipalib/plugins/permission.py:139
5041
msgid "Target members of a group"
5044
#: ipalib/plugins/permission.py:151
5045
msgid "Subtree to apply permissions to"
5048
#: ipalib/plugins/permission.py:157
5049
msgid "User group to apply permissions to"
5052
#: ipalib/plugins/permission.py:177
5055
" Add a new permission.\n"
5059
#: ipalib/plugins/permission.py:181
5060
msgid "Added permission \"%(value)s\""
5063
#: ipalib/plugins/permission.py:236
5066
" Delete a permission.\n"
5070
#: ipalib/plugins/permission.py:240
5071
msgid "Deleted permission \"%(value)s\""
5074
#: ipalib/plugins/permission.py:256
5077
" Modify a permission.\n"
5081
#: ipalib/plugins/permission.py:260
5082
msgid "Modified permission \"%(value)s\""
5085
#: ipalib/plugins/permission.py:352
5088
" Search for permissions.\n"
5092
#: ipalib/plugins/permission.py:356
5093
msgid "%(count)d permission matched"
5094
msgid_plural "%(count)d permissions matched"
5098
#: ipalib/plugins/permission.py:405
5101
" Display information about a permission.\n"
5105
#: ipalib/plugins/permission.py:428
5108
" Add members to a permission.\n"
5112
#: ipalib/plugins/permission.py:437
5115
" Remove members from a permission.\n"
5119
#: ipalib/plugins/ping.py:19
5122
"Ping the remote IPA server\n"
5125
#: ipalib/plugins/ping.py:29
5128
" ping a remote server\n"
5132
#: ipalib/plugins/ping.py:37
5135
" A possible enhancement would be to take an argument and echo it\n"
5136
" back but a fixed value works for now.\n"
5140
#: ipalib/plugins/pkinit.py:19
5143
"Kerberos pkinit options\n"
5145
"Enable or disable anonymous pkinit using the principal\n"
5146
"WELLKNOWN/ANONYMOUS@REALM. The server must have been installed with\n"
5151
" Enable anonymous pkinit:\n"
5152
" ipa pkinit-anonymous enable\n"
5154
" Disable anonymous pkinit:\n"
5155
" ipa pkinit-anonymous disable\n"
5157
"For more information on anonymous pkinit see:\n"
5159
"http://k5wiki.kerberos.org/wiki/Projects/Anonymous_pkinit\n"
5162
#: ipalib/plugins/pkinit.py:46
5169
#: ipalib/plugins/pkinit.py:51
5173
#: ipalib/plugins/pkinit.py:56
5176
" Accepts only Enable/Disable.\n"
5180
#: ipalib/plugins/pkinit.py:67
5183
" Enable or Disable Anonymous PKINIT\n"
5187
#: ipalib/plugins/privilege.py:19
5192
"A privilege combines permissions into a logical task. A permission provides\n"
5193
"the rights to do a single task. There are some IPA operations that require\n"
5194
"multiple permissions to succeed. A privilege is where permissions are\n"
5195
"combined in order to perform a specific task.\n"
5197
"For example, adding a user requires the following permissions:\n"
5198
" * Creating a new user entry\n"
5199
" * Resetting a user password\n"
5200
" * Adding the new user to the default IPA users group\n"
5202
"Combining these three low-level tasks into a higher level task in the\n"
5203
"form of a privilege named \"Add User\" makes it easier to manage Roles.\n"
5205
"A privilege may not contain other privileges.\n"
5207
"See role and permission for additional information.\n"
5210
#: ipalib/plugins/privilege.py:45
5213
" Privilege object.\n"
5217
#: ipalib/plugins/privilege.py:65
5221
#: ipalib/plugins/privilege.py:70
5222
msgid "Privilege name"
5225
#: ipalib/plugins/privilege.py:77
5226
msgid "Privilege description"
5229
#: ipalib/plugins/privilege.py:85
5232
" Add a new privilege.\n"
5236
#: ipalib/plugins/privilege.py:89
5237
msgid "Added privilege \"%(value)s\""
5240
#: ipalib/plugins/privilege.py:95
5243
" Delete a privilege.\n"
5247
#: ipalib/plugins/privilege.py:99
5248
msgid "Deleted privilege \"%(value)s\""
5251
#: ipalib/plugins/privilege.py:105
5254
" Modify a privilege.\n"
5258
#: ipalib/plugins/privilege.py:109
5259
msgid "Modified privilege \"%(value)s\""
5262
#: ipalib/plugins/privilege.py:115
5265
" Search for privileges.\n"
5269
#: ipalib/plugins/privilege.py:119
5270
msgid "%(count)d privilege matched"
5271
msgid_plural "%(count)d privileges matched"
5275
#: ipalib/plugins/privilege.py:127
5278
" Display information about a privilege.\n"
5282
#: ipalib/plugins/privilege.py:135
5285
" Add members to a privilege\n"
5289
#: ipalib/plugins/privilege.py:144
5292
" Remove members from a privilege\n"
5296
#: ipalib/plugins/privilege.py:153
5299
" Add permissions to a privilege.\n"
5303
#: ipalib/plugins/privilege.py:169
5304
msgid "Number of permissions added"
5307
#: ipalib/plugins/privilege.py:177
5310
" Remove permissions from a privilege.\n"
5314
#: ipalib/plugins/privilege.py:195
5315
msgid "Number of permissions removed"
5318
#: ipalib/plugins/pwpolicy.py:20
5323
"A password policy sets limitations on IPA passwords, including maximum\n"
5324
"lifetime, minimum lifetime, the number of passwords to save in\n"
5325
"history, the number of character classes required (for stronger passwords)\n"
5326
"and the minimum password length.\n"
5328
"By default there is a single, global policy for all users. You can also\n"
5329
"create a password policy to apply to a group. Each user is only subject\n"
5330
"to one password policy, either the group policy or the global policy. A\n"
5331
"group policy stands alone; it is not a super-set of the global policy plus\n"
5332
"custom settings.\n"
5334
"Each group password policy requires a unique priority setting. If a user\n"
5335
"is in multiple groups that have password policies, this priority determines\n"
5336
"which password policy is applied. A lower value indicates a higher priority\n"
5339
"Group password policies are automatically removed when the groups they\n"
5340
"are associated with are removed.\n"
5344
" Modify the global policy:\n"
5345
" ipa pwpolicy-mod --minlength=10\n"
5347
" Add a new group password policy:\n"
5348
" ipa pwpolicy-add --maxlife=90 --minlife=1 --history=10 --minclasses=3 --minlength=8 --priority=10 localadmins\n"
5350
" Display the global password policy:\n"
5351
" ipa pwpolicy-show\n"
5353
" Display a group password policy:\n"
5354
" ipa pwpolicy-show localadmins\n"
5356
" Display the policy that would be applied to a given user:\n"
5357
" ipa pwpolicy-show --user=tuser1\n"
5359
" Modify a group password policy:\n"
5360
" ipa pwpolicy-mod --minclasses=2 localadmins\n"
5363
#: ipalib/plugins/pwpolicy.py:72
5366
" Class of Service object used for linking policies with groups\n"
5370
#: ipalib/plugins/pwpolicy.py:87
5371
msgid "priority must be a unique value (%(prio)d already used by %(gname)s)"
5374
#: ipalib/plugins/pwpolicy.py:172
5377
" Password Policy object\n"
5381
#: ipalib/plugins/pwpolicy.py:201
5382
msgid "Max failures"
5385
#: ipalib/plugins/pwpolicy.py:202
5386
msgid "Consecutive failures before lockout"
5389
#: ipalib/plugins/pwpolicy.py:207
5390
msgid "Failure reset interval"
5393
#: ipalib/plugins/pwpolicy.py:208
5394
msgid "Period after which failure count will be reset (seconds)"
5397
#: ipalib/plugins/pwpolicy.py:213
5398
msgid "Lockout duration"
5401
#: ipalib/plugins/pwpolicy.py:214
5402
msgid "Period for which lockout is enforced (seconds)"
5405
#: ipalib/plugins/pwpolicy.py:224
5409
#: ipalib/plugins/pwpolicy.py:225
5410
msgid "Manage password policy for specific group"
5413
#: ipalib/plugins/pwpolicy.py:230
5414
msgid "Max lifetime (days)"
5417
#: ipalib/plugins/pwpolicy.py:231
5418
msgid "Maximum password lifetime (in days)"
5421
#: ipalib/plugins/pwpolicy.py:236
5422
msgid "Min lifetime (hours)"
5425
#: ipalib/plugins/pwpolicy.py:237
5426
msgid "Minimum password lifetime (in hours)"
5429
#: ipalib/plugins/pwpolicy.py:242
5430
msgid "History size"
5433
#: ipalib/plugins/pwpolicy.py:243
5434
msgid "Password history size"
5437
#: ipalib/plugins/pwpolicy.py:248
5438
msgid "Character classes"
5441
#: ipalib/plugins/pwpolicy.py:249
5442
msgid "Minimum number of character classes"
5445
#: ipalib/plugins/pwpolicy.py:255
5449
#: ipalib/plugins/pwpolicy.py:256
5450
msgid "Minimum length of password"
5453
#: ipalib/plugins/pwpolicy.py:261
5457
#: ipalib/plugins/pwpolicy.py:262
5458
msgid "Priority of the policy (higher number means lower priority"
5461
#: ipalib/plugins/pwpolicy.py:294
5464
" Ensure that the maximum lifetime is greater than the minimum.\n"
5465
" If there is no minimum lifetime set then don't return an error.\n"
5469
#: ipalib/plugins/pwpolicy.py:314
5470
msgid "Maximum password life must be greater than minimum."
5473
#: ipalib/plugins/pwpolicy.py:333
5476
" Add a new group password policy.\n"
5480
#: ipalib/plugins/pwpolicy.py:361
5483
" Delete a group password policy.\n"
5487
#: ipalib/plugins/pwpolicy.py:380
5490
" Modify a group password policy.\n"
5494
#: ipalib/plugins/pwpolicy.py:391
5495
msgid "priority cannot be set on global policy"
5498
#: ipalib/plugins/pwpolicy.py:423
5501
" Display information about password policy.\n"
5505
#: ipalib/plugins/pwpolicy.py:428
5509
#: ipalib/plugins/pwpolicy.py:429
5510
msgid "Display effective policy for a specific user"
5513
#: ipalib/plugins/pwpolicy.py:452
5516
" Search for group password policies.\n"
5520
#: ipalib/plugins/role.py:20
5525
"A role is used for fine-grained delegation. A permission grants the ability\n"
5526
"to perform given low-level tasks (add a user, modify a group, etc.). A\n"
5527
"privilege combines one or more permissions into a higher-level abstraction\n"
5528
"such as useradmin. A useradmin would be able to add, delete and modify users.\n"
5530
"Privileges are assigned to Roles.\n"
5532
"Users, groups, hosts and hostgroups may be members of a Role.\n"
5534
"Roles can not contain other roles.\n"
5538
" Add a new role:\n"
5539
" ipa role-add --desc=\"Junior-level admin\" junioradmin\n"
5541
" Add some privileges to this role:\n"
5542
" ipa role-add-privilege --privileges=addusers junioradmin\n"
5543
" ipa role-add-privilege --privileges=change_password junioradmin\n"
5544
" ipa role-add-privilege --privileges=add_user_to_default_group juioradmin\n"
5546
" Add a group of users to this role:\n"
5547
" ipa group-add --desc=\"User admins\" useradmins\n"
5548
" ipa role-add-member --groups=useradmins junioradmin\n"
5550
" Display information about a role:\n"
5551
" ipa role-show junioradmin\n"
5553
" The result of this is that any users in the group 'useradmins' can\n"
5554
" add users, reset passwords or add a user to the default IPA user group.\n"
5557
#: ipalib/plugins/role.py:62
5564
#: ipalib/plugins/role.py:81
5568
#: ipalib/plugins/role.py:86
5572
#: ipalib/plugins/role.py:93
5573
msgid "A description of this role-group"
5576
#: ipalib/plugins/role.py:101
5579
" Add a new role.\n"
5583
#: ipalib/plugins/role.py:105
5584
msgid "Added role \"%(value)s\""
5587
#: ipalib/plugins/role.py:111
5594
#: ipalib/plugins/role.py:115
5595
msgid "Deleted role \"%(value)s\""
5598
#: ipalib/plugins/role.py:121
5605
#: ipalib/plugins/role.py:125
5606
msgid "Modified role \"%(value)s\""
5609
#: ipalib/plugins/role.py:131
5612
" Search for roles.\n"
5616
#: ipalib/plugins/role.py:135
5617
msgid "%(count)d role matched"
5618
msgid_plural "%(count)d roles matched"
5622
#: ipalib/plugins/role.py:143
5625
" Display information about a role.\n"
5629
#: ipalib/plugins/role.py:151
5632
" Add members to a role.\n"
5636
#: ipalib/plugins/role.py:159
5639
" Remove members from a role.\n"
5643
#: ipalib/plugins/role.py:167
5646
" Add privileges to a role.\n"
5650
#: ipalib/plugins/role.py:183
5651
msgid "Number of privileges added"
5654
#: ipalib/plugins/role.py:191
5657
" Remove privileges from a role.\n"
5661
#: ipalib/plugins/role.py:207
5662
msgid "Number of privileges removed"
5665
#: ipalib/plugins/selfservice.py:19
5668
"Self-service Permissions\n"
5670
"A permission enables fine-grained delegation of permissions. Access Control\n"
5671
"Rules, or instructions (ACIs), grant permission to permissions to perform\n"
5672
"given tasks such as adding a user, modifying a group, etc.\n"
5674
"A Self-service permission defines what an object can change in its own entry.\n"
5679
" Add a self-service rule to allow users to manage their address:\n"
5680
" ipa selfservice-add --permissions=write --attrs=street,postalCode,l,c,st \"Users manage their own address\"\n"
5682
" When managing the list of attributes you need to include all attributes\n"
5683
" in the list, including existing ones. Add telephoneNumber to the list:\n"
5684
" ipa selfservice-mod --attrs=street,postalCode,l,c,st,telephoneNumber \"Users manage their own address\"\n"
5686
" Display our updated rule:\n"
5687
" ipa selfservice-show \"Users manage their own address\"\n"
5690
" ipa selfservice-del \"Users manage their own address\"\n"
5693
#: ipalib/plugins/selfservice.py:56
5696
" Determine if the ACI is a Self-service ACI and raise an exception if it\n"
5699
" Return the result if it is a self-service ACI.\n"
5703
#: ipalib/plugins/selfservice.py:64
5704
msgid "Self-service permission '%(permission)s' not found"
5707
#: ipalib/plugins/selfservice.py:68
5710
" Selfservice object.\n"
5714
#: ipalib/plugins/selfservice.py:75
5715
msgid "Self Service Permissions"
5718
#: ipalib/plugins/selfservice.py:80 ipalib/plugins/selfservice.py:81
5719
msgid "Self-service name"
5722
#: ipalib/plugins/selfservice.py:114
5725
" Add a new self-service permission.\n"
5729
#: ipalib/plugins/selfservice.py:118
5730
msgid "Added selfservice \"%(value)s\""
5733
#: ipalib/plugins/selfservice.py:137
5736
" Delete a self-service permission.\n"
5740
#: ipalib/plugins/selfservice.py:142
5741
msgid "Deleted selfservice \"%(value)s\""
5744
#: ipalib/plugins/selfservice.py:158
5747
" Modify a self-service permission.\n"
5751
#: ipalib/plugins/selfservice.py:162
5752
msgid "Modified selfservice \"%(value)s\""
5755
#: ipalib/plugins/selfservice.py:181
5758
" Search for a self-service permission.\n"
5762
#: ipalib/plugins/selfservice.py:185
5763
msgid "%(count)d selfservice matched"
5764
msgid_plural "%(count)d selfservices matched"
5768
#: ipalib/plugins/selfservice.py:207
5771
" Display information about a self-service permission.\n"
5775
#: ipalib/plugins/service.py:21
5780
"A IPA service represents a service that runs on a host. The IPA service\n"
5781
"record can store a Kerberos principal, an SSL certificate, or both.\n"
5783
"An IPA service can be managed directly from a machine, provided that\n"
5784
"machine has been given the correct permission. This is true even for\n"
5785
"machines other than the one the service is associated with. For example,\n"
5786
"requesting an SSL certificate using the host service principal credentials\n"
5787
"of the host. To manage a service using host credentials you need to\n"
5788
"kinit as the host:\n"
5790
" # kinit -kt /etc/krb5.keytab host/ipa.example.com@EXAMPLE.COM\n"
5792
"Adding an IPA service allows the associated service to request an SSL\n"
5793
"certificate or keytab, but this is performed as a separate step; they\n"
5794
"are not produced as a result of adding the service.\n"
5796
"Only the public aspect of a certificate is stored in a service record;\n"
5797
"the private key is not stored.\n"
5801
" Add a new IPA service:\n"
5802
" ipa service-add HTTP/web.example.com\n"
5804
" Allow a host to manage an IPA service certificate:\n"
5805
" ipa service-add-host --hosts=web.example.com HTTP/web.example.com\n"
5806
" ipa role-add-member --hosts=web.example.com certadmin\n"
5808
" Delete an IPA service:\n"
5809
" ipa service-del HTTP/web.example.com\n"
5811
" Find all IPA services associated with a host:\n"
5812
" ipa service-find web.example.com\n"
5814
" Find all HTTP services:\n"
5815
" ipa service-find HTTP\n"
5817
" Disable the service Kerberos key and SSL certificate:\n"
5818
" ipa service-disable HTTP/web.example.com\n"
5820
" Request a certificate for an IPA service:\n"
5821
" ipa cert-request --principal=HTTP/web.example.com example.csr\n"
5823
" Generate and retrieve a keytab for an IPA service:\n"
5824
" ipa-getkeytab -s ipa.example.com -p HTTP/web.example.com -k /etc/httpd/httpd.keytab\n"
5828
#: ipalib/plugins/service.py:162
5831
" For now just verify that it is properly base64-encoded.\n"
5835
#: ipalib/plugins/service.py:175
5838
" Set individual attributes from some values from a certificate.\n"
5840
" entry_attrs is a dict of an entry\n"
5842
" returns nothing\n"
5846
#: ipalib/plugins/service.py:199
5849
" Service object.\n"
5853
#: ipalib/plugins/service.py:226
5854
msgid "Service principal"
5857
#: ipalib/plugins/service.py:242
5860
" Add a new IPA new service.\n"
5864
#: ipalib/plugins/service.py:245
5865
msgid "Added service \"%(value)s\""
5868
#: ipalib/plugins/service.py:251
5869
msgid "force principal name even if not in DNS"
5872
#: ipalib/plugins/service.py:284
5875
" Delete an IPA service.\n"
5879
#: ipalib/plugins/service.py:287
5880
msgid "Deleted service \"%(value)s\""
5883
#: ipalib/plugins/service.py:321
5886
" Modify an existing IPA service.\n"
5890
#: ipalib/plugins/service.py:324
5891
msgid "Modified service \"%(value)s\""
5894
#: ipalib/plugins/service.py:356
5897
" Search for IPA services.\n"
5901
#: ipalib/plugins/service.py:359
5902
msgid "%(count)d service matched"
5903
msgid_plural "%(count)d services matched"
5907
#: ipalib/plugins/service.py:394
5910
" Display information about an IPA service.\n"
5914
#: ipalib/plugins/service.py:432
5917
" Add hosts that can manage this service.\n"
5921
#: ipalib/plugins/service.py:442
5924
" Remove hosts that can manage this service.\n"
5928
#: ipalib/plugins/service.py:452
5931
" Disable the Kerberos key and SSL certificate of a service.\n"
5935
#: ipalib/plugins/service.py:456
5936
msgid "Disabled service \"%(value)s\""
5939
#: ipalib/plugins/sudocmd.py:19
5944
"Commands used as building blocks for sudo\n"
5948
" Create a new command\n"
5949
" ipa sudocmd-add --desc='For reading log files' /usr/bin/less\n"
5951
" Remove a command\n"
5952
" ipa sudocmd-del /usr/bin/less\n"
5956
#: ipalib/plugins/sudocmd.py:46
5959
" Sudo Command object.\n"
5963
#: ipalib/plugins/sudocmd.py:64
5964
msgid "Sudo Commands"
5967
#: ipalib/plugins/sudocmd.py:69
5968
msgid "Sudo Command"
5971
#: ipalib/plugins/sudocmd.py:75
5972
msgid "A description of this command"
5975
#: ipalib/plugins/sudocmd.py:98
5978
" Create new sudo command.\n"
5982
#: ipalib/plugins/sudocmd.py:102
5983
msgid "Added sudo command \"%(value)s\""
5986
#: ipalib/plugins/sudocmd.py:107
5989
" Delete sudo command.\n"
5993
#: ipalib/plugins/sudocmd.py:111
5994
msgid "Deleted sudo command \"%(value)s\""
5997
#: ipalib/plugins/sudocmd.py:116
6000
" Modify command.\n"
6004
#: ipalib/plugins/sudocmd.py:120
6005
msgid "Modified sudo command \"%(value)s\""
6008
#: ipalib/plugins/sudocmd.py:125
6011
" Search for commands.\n"
6015
#: ipalib/plugins/sudocmd.py:129
6016
msgid "%(count)d sudo command matched"
6017
msgid_plural "%(count)d sudo command matched"
6021
#: ipalib/plugins/sudocmd.py:136
6024
" Display sudo command.\n"
6028
#: ipalib/plugins/sudocmdgroup.py:19
6031
"Groups of Sudo commands\n"
6033
"Manage groups of Sudo commands.\n"
6037
" Add a new Sudo command group:\n"
6038
" ipa sudocmdgroup-add --desc='administrators commands' admincmds\n"
6040
" Remove a Sudo command group:\n"
6041
" ipa sudocmdgroup-del admincmds\n"
6043
" Manage Sudo command group membership, commands:\n"
6044
" ipa sudocmdgroup-add-member --sudocmds=/usr/bin/less,/usr/bin/vim admincmds\n"
6046
" Manage Sudo command group membership, commands:\n"
6047
" ipa group-remove-member --sudocmds=/usr/bin/less admincmds\n"
6049
" Show a Sudo command group:\n"
6050
" ipa group-show localadmins\n"
6053
#: ipalib/plugins/sudocmdgroup.py:50
6056
" Sudo Group object.\n"
6060
#: ipalib/plugins/sudocmdgroup.py:70
6061
msgid "Sudo Command Group"
6064
#: ipalib/plugins/sudocmdgroup.py:93
6067
" Create new sudo command group.\n"
6071
#: ipalib/plugins/sudocmdgroup.py:97
6072
msgid "Added sudo command group \"%(value)s\""
6075
#: ipalib/plugins/sudocmdgroup.py:103
6078
" Delete sudo command group.\n"
6082
#: ipalib/plugins/sudocmdgroup.py:107
6083
msgid "Deleted sudo command group \"%(value)s\""
6086
#: ipalib/plugins/sudocmdgroup.py:113
6093
#: ipalib/plugins/sudocmdgroup.py:117
6094
msgid "Modified sudo command group \"%(value)s\""
6097
#: ipalib/plugins/sudocmdgroup.py:123
6100
" Search for sudo command groups.\n"
6104
#: ipalib/plugins/sudocmdgroup.py:127
6105
msgid "%(count)d sudo command group matched"
6106
msgid_plural "%(count)d sudo command groups matched"
6110
#: ipalib/plugins/sudocmdgroup.py:136
6113
" Display sudo command group.\n"
6117
#: ipalib/plugins/sudocmdgroup.py:144
6120
" Add members to sudo command group.\n"
6124
#: ipalib/plugins/sudocmdgroup.py:152
6127
" Remove members from sudo command group.\n"
6131
#: ipalib/plugins/sudorule.py:19
6134
"Sudo (su \"do\") allows a system administrator to delegate authority to\n"
6135
"give certain users (or groups of users) the ability to run some (or all)\n"
6136
"commands as root or another user while providing an audit trail of the\n"
6137
"commands and their arguments.\n"
6139
"FreeIPA provides a designated binddn to use with Sudo located at:\n"
6140
"uid=sudo,cn=sysaccounts,cn=etc,dc=example,dc=com\n"
6142
"To enable the binddn run the following command to set the password:\n"
6143
"LDAPTLS_CACERT=/etc/ipa/ca.crt /usr/bin/ldappasswd -S -W -h ipa.example.com -ZZ -D \"cn=Directory Manager\" uid=sudo,cn=sysaccounts,cn=etc,dc=example,dc=com\n"
6145
"For more information, see the FreeIPA Documentation to Sudo.\n"
6148
#: ipalib/plugins/sudorule.py:44
6151
" Sudo Rule management\n"
6155
#: ipalib/plugins/sudorule.py:68
6159
#: ipalib/plugins/sudorule.py:98
6160
msgid "Command category"
6163
#: ipalib/plugins/sudorule.py:99
6164
msgid "Command category the rule applies to"
6167
#: ipalib/plugins/sudorule.py:104
6168
msgid "Run As User category"
6171
#: ipalib/plugins/sudorule.py:105
6172
msgid "Run As User category the rule applies to"
6175
#: ipalib/plugins/sudorule.py:110
6176
msgid "Run As Group category"
6179
#: ipalib/plugins/sudorule.py:111
6180
msgid "Run As Group category the rule applies to"
6183
#: ipalib/plugins/sudorule.py:131
6184
msgid "Sudo Allow Commands"
6187
#: ipalib/plugins/sudorule.py:135
6188
msgid "Sudo Deny Commands"
6191
#: ipalib/plugins/sudorule.py:147
6195
#: ipalib/plugins/sudorule.py:151
6196
msgid "Run As Group"
6199
#: ipalib/plugins/sudorule.py:156
6200
msgid "External User"
6203
#: ipalib/plugins/sudorule.py:157
6204
msgid "External User the rule applies to"
6207
#: ipalib/plugins/sudorule.py:161
6208
msgid "RunAs External User"
6211
#: ipalib/plugins/sudorule.py:162
6212
msgid "External User the commands can run as"
6215
#: ipalib/plugins/sudorule.py:166
6216
msgid "RunAs External Group"
6219
#: ipalib/plugins/sudorule.py:167
6220
msgid "External Group the commands can run as"
6223
#: ipalib/plugins/sudorule.py:175
6226
" Create new Sudo Rule.\n"
6230
#: ipalib/plugins/sudorule.py:183
6231
msgid "Added sudo rule \"%(value)s\""
6234
#: ipalib/plugins/sudorule.py:189
6237
" Delete Sudo Rule.\n"
6241
#: ipalib/plugins/sudorule.py:197
6244
" Modify Sudo Rule.\n"
6248
#: ipalib/plugins/sudorule.py:205
6251
" Search for Sudo Rule.\n"
6255
#: ipalib/plugins/sudorule.py:213
6258
" Display Sudo Rule.\n"
6262
#: ipalib/plugins/sudorule.py:221
6265
" Enable a Sudo rule.\n"
6269
#: ipalib/plugins/sudorule.py:247
6272
" Disable a Sudo rule.\n"
6276
#: ipalib/plugins/sudorule.py:273 ipalib/plugins/sudorule.py:293
6279
" Add commands and sudo command groups affected by Sudo Rule.\n"
6283
#: ipalib/plugins/sudorule.py:283 ipalib/plugins/sudorule.py:303
6286
" Remove commands and sudo command groups affected by Sudo Rule.\n"
6290
#: ipalib/plugins/sudorule.py:313
6293
" Add users and groups affected by Sudo Rule.\n"
6297
#: ipalib/plugins/sudorule.py:349
6300
" Remove users and groups affected by Sudo Rule.\n"
6304
#: ipalib/plugins/sudorule.py:383
6307
" Add hosts and hostgroups affected by Sudo Rule.\n"
6311
#: ipalib/plugins/sudorule.py:419
6314
" Remove hosts and hostgroups affected by Sudo Rule.\n"
6318
#: ipalib/plugins/sudorule.py:453
6321
" Add user for Sudo to execute as.\n"
6325
#: ipalib/plugins/sudorule.py:489
6328
" Remove user for Sudo to execute as.\n"
6332
#: ipalib/plugins/sudorule.py:523
6335
" Add group for Sudo to execute as.\n"
6339
#: ipalib/plugins/sudorule.py:559
6342
" Remove group for Sudo to execute as.\n"
6346
#: ipalib/plugins/sudorule.py:593
6349
" Add an option to the Sudo rule.\n"
6353
#: ipalib/plugins/sudorule.py:600 ipalib/plugins/sudorule.py:641
6357
#: ipalib/plugins/sudorule.py:635
6360
" Remove an option from Sudo rule.\n"
6364
#: ipalib/plugins/user.py:20
6369
"Manage user entries. All users are POSIX users.\n"
6371
"IPA supports a wide range of username formats, but you need to be aware of any\n"
6372
"restrictions that may apply to your particular environment. For example,\n"
6373
"usernames that start with a digit or usernames that exceed a certain length\n"
6374
"may cause problems for some UNIX systems.\n"
6375
"Use 'ipa config-mod' to change the username format allowed by IPA tools.\n"
6377
"Disabling a user account prevents that user from obtaining new Kerberos\n"
6378
"credentials. It does not invalidate any credentials that have already\n"
6381
"Password management is not a part of this module. For more information\n"
6382
"about this topic please see: ipa help passwd\n"
6386
" Add a new user:\n"
6387
" ipa user-add --first=Tim --last=User --password tuser1\n"
6389
" Find all users whose entries include the string \"Tim\":\n"
6390
" ipa user-find Tim\n"
6392
" Find all users with \"Tim\" as the first name:\n"
6393
" ipa user-find --first=Tim\n"
6395
" Disable a user account:\n"
6396
" ipa user-disable tuser1\n"
6398
" Enable a user account:\n"
6399
" ipa user-enable tuser1\n"
6402
" ipa user-del tuser1\n"
6405
#: ipalib/plugins/user.py:79
6412
#: ipalib/plugins/user.py:116
6416
#: ipalib/plugins/user.py:123
6420
#: ipalib/plugins/user.py:127
6424
#: ipalib/plugins/user.py:130
6428
#: ipalib/plugins/user.py:135
6429
msgid "Display name"
6432
#: ipalib/plugins/user.py:140
6436
#: ipalib/plugins/user.py:146
6437
msgid "Home directory"
6440
#: ipalib/plugins/user.py:150
6444
#: ipalib/plugins/user.py:156
6448
#: ipalib/plugins/user.py:161
6449
msgid "Kerberos principal"
6452
#: ipalib/plugins/user.py:168
6453
msgid "Email address"
6456
#: ipalib/plugins/user.py:173
6457
msgid "Prompt to set the user password"
6460
#: ipalib/plugins/user.py:180
6464
#: ipalib/plugins/user.py:181
6465
msgid "User ID Number (system will assign one if not provided)"
6468
#: ipalib/plugins/user.py:188
6469
msgid "Group ID Number"
6472
#: ipalib/plugins/user.py:193
6473
msgid "Street address"
6476
#: ipalib/plugins/user.py:197
6480
#: ipalib/plugins/user.py:201
6481
msgid "State/Province"
6484
#: ipalib/plugins/user.py:204
6488
#: ipalib/plugins/user.py:208
6489
msgid "Telephone Number"
6492
#: ipalib/plugins/user.py:211
6493
msgid "Mobile Telephone Number"
6496
#: ipalib/plugins/user.py:214
6497
msgid "Pager Number"
6500
#: ipalib/plugins/user.py:218
6504
#: ipalib/plugins/user.py:222
6508
#: ipalib/plugins/user.py:225
6512
#: ipalib/plugins/user.py:228
6516
#: ipalib/plugins/user.py:231
6520
#: ipalib/plugins/user.py:234
6521
msgid "Account disabled"
6524
#: ipalib/plugins/user.py:258
6527
" Given a userid verify the user's existence and return the dn.\n"
6531
#: ipalib/plugins/user.py:276
6532
msgid "manager %(manager)s not found"
6535
#: ipalib/plugins/user.py:281
6538
" Convert a manager dn into a userid\n"
6542
#: ipalib/plugins/user.py:295
6545
" Add a new user.\n"
6549
#: ipalib/plugins/user.py:298
6550
msgid "Added user \"%(value)s\""
6553
#: ipalib/plugins/user.py:303
6554
msgid "Don't create user private group"
6557
#: ipalib/plugins/user.py:333
6558
msgid "can be at most %(len)d characters"
6561
#: ipalib/plugins/user.py:400
6568
#: ipalib/plugins/user.py:404
6569
msgid "Deleted user \"%(value)s\""
6572
#: ipalib/plugins/user.py:413
6579
#: ipalib/plugins/user.py:417
6580
msgid "Modified user \"%(value)s\""
6583
#: ipalib/plugins/user.py:437
6586
" Search for users.\n"
6590
#: ipalib/plugins/user.py:444
6594
#: ipalib/plugins/user.py:445
6595
msgid "Display user record for current Kerberos principal"
6598
#: ipalib/plugins/user.py:463
6599
msgid "%(count)d user matched"
6600
msgid_plural "%(count)d users matched"
6604
#: ipalib/plugins/user.py:471
6607
" Display information about a user.\n"
6611
#: ipalib/plugins/user.py:484
6614
" Disable a user account.\n"
6618
#: ipalib/plugins/user.py:489
6619
msgid "Disabled user account \"%(value)s\""
6622
#: ipalib/plugins/user.py:507
6625
" Enable a user account.\n"
6629
#: ipalib/plugins/user.py:512
6630
msgid "Enabled user account \"%(value)s\""
6633
#: ipalib/plugins/user.py:529
6636
" Unlock a user account\n"
6638
" An account may become locked if the password is entered incorrectly too\n"
6639
" many times within a specific time period as controlled by password\n"
6640
" policy. A locked account is a temporary condition and may be unlocked by\n"
6641
" an administrator.\n"
6645
#: ipalib/plugins/user.py:538
6646
msgid "Unlocked account \"%(value)s\""
6649
#: ipalib/plugins/virtual.py:20
6652
"Base classes for non-LDAP backend plugins.\n"
6655
#: ipalib/plugins/virtual.py:28
6658
" A command that doesn't use the LDAP backend but wants to use the\n"
6659
" LDAP access control system to make authorization decisions.\n"
6661
" The class variable operation is the commonName attribute of the\n"
6662
" entry to be tested against.\n"
6664
" In advance, you need to create an entry of the form:\n"
6665
" cn=<operation>, api.env.container_virtual, api.env.basedn\n"
6668
" cn=request certificate, cn=virtual operations,cn=etc, dc=example, dc=com\n"
6672
#: ipalib/plugins/virtual.py:44
6675
" Perform an LDAP query to determine authorization.\n"
6677
" This should be executed before any actual work is done.\n"
6681
#: ipalib/plugins/xmlclient.py:21
6684
"XML-RPC client plugin.\n"
6687
#: ipalib/cli.py:581
6689
msgid "Enter %(label)s again to verify: "
6692
#: ipalib/cli.py:585 ipa-client/ipa-getkeytab.c:751
6694
msgid "Passwords do not match!"
6697
#: ipalib/cli.py:590
6701
#: ipalib/cli.py:819
6702
msgid "Command name"
6705
#: ipalib/cli.py:1117
6706
msgid "No file to read"
6709
#: ipalib/errors.py:300
6711
msgid "%(cver)s client incompatible with %(sver)s server at %(server)r"
6714
#: ipalib/errors.py:318
6716
msgid "unknown error %(code)d from %(server)s: %(error)s"
6719
#: ipalib/errors.py:334
6720
msgid "an internal error has occurred"
6723
#: ipalib/errors.py:356
6725
msgid "an internal error has occurred on server at %(server)r"
6728
#: ipalib/errors.py:372
6730
msgid "unknown command %(name)r"
6733
#: ipalib/errors.py:389 ipalib/errors.py:414
6735
msgid "error on server %(server)r: %(error)s"
6738
#: ipalib/errors.py:405
6740
msgid "cannot connect to %(uri)r: %(error)s"
6743
#: ipalib/errors.py:423
6745
msgid "Invalid JSON-RPC request: %(error)s"
6748
#: ipalib/errors.py:439
6750
msgid "error marshalling data for XML-RPC transport: %(error)s"
6753
#: ipalib/errors.py:465
6755
msgid "Kerberos error: %(major)s/%(minor)s"
6758
#: ipalib/errors.py:482
6759
msgid "did not receive Kerberos credentials"
6762
#: ipalib/errors.py:498
6764
msgid "Service %(service)r not found in Kerberos database"
6767
#: ipalib/errors.py:514
6768
msgid "No credentials cache found"
6771
#: ipalib/errors.py:530
6772
msgid "Ticket expired"
6775
#: ipalib/errors.py:546
6776
msgid "Credentials cache permissions incorrect"
6779
#: ipalib/errors.py:562
6780
msgid "Bad format in credentials cache"
6783
#: ipalib/errors.py:578
6784
msgid "Cannot resolve KDC for requested realm"
6787
#: ipalib/errors.py:597
6789
msgid "Insufficient access: %(info)s"
6792
#: ipalib/errors.py:641
6794
msgid "command %(name)r takes no arguments"
6797
#: ipalib/errors.py:661
6799
msgid "command %(name)r takes at most %(count)d argument"
6800
msgid_plural "command %(name)r takes at most %(count)d arguments"
6804
#: ipalib/errors.py:691
6806
msgid "overlapping arguments and options: %(names)r"
6809
#: ipalib/errors.py:707
6811
msgid "%(name)r is required"
6814
#: ipalib/errors.py:723 ipalib/errors.py:739
6816
msgid "invalid %(name)r: %(error)s"
6819
#: ipalib/errors.py:755
6821
msgid "api has no such namespace: %(name)r"
6824
#: ipalib/errors.py:764
6825
msgid "Passwords do not match"
6828
#: ipalib/errors.py:773
6829
msgid "Command not implemented"
6832
#: ipalib/errors.py:782
6833
msgid "Client is not configured. Run ipa-client-install."
6836
#: ipalib/errors.py:810 ipalib/errors.py:1050 ipalib/errors.py:1144
6837
#: ipalib/errors.py:1424 ipalib/errors.py:1441
6842
#: ipalib/errors.py:826
6843
msgid "This entry already exists"
6846
#: ipalib/errors.py:842
6847
msgid "You must enroll a host in order to create a host service"
6850
#: ipalib/errors.py:858
6853
"Service principal is not of the form: service/fully-qualified host name: "
6857
#: ipalib/errors.py:874
6859
"The realm for the principal does not match the realm for this IPA server"
6862
#: ipalib/errors.py:890
6863
msgid "This command requires root access"
6866
#: ipalib/errors.py:906
6867
msgid "This is already a posix group"
6870
#: ipalib/errors.py:922
6872
msgid "Principal is not of the form user@REALM: %(principal)r"
6875
#: ipalib/errors.py:938
6876
msgid "This entry is already enabled"
6879
#: ipalib/errors.py:954
6880
msgid "This entry is already disabled"
6883
#: ipalib/errors.py:970
6884
msgid "This entry cannot be enabled or disabled"
6887
#: ipalib/errors.py:986
6888
msgid "This entry is not a member"
6891
#: ipalib/errors.py:1002
6892
msgid "A group may not be a member of itself"
6895
#: ipalib/errors.py:1018
6896
msgid "This entry is already a member"
6899
#: ipalib/errors.py:1034
6901
msgid "Base64 decoding failed: %(reason)s"
6904
#: ipalib/errors.py:1066
6905
msgid "A group may not be added as a member of itself"
6908
#: ipalib/errors.py:1082
6909
msgid "The default users group cannot be removed"
6912
#: ipalib/errors.py:1098
6913
msgid "Host does not have corresponding DNS A record"
6916
#: ipalib/errors.py:1113
6917
msgid "Deleting a managed group is not allowed. It must be detached first."
6920
#: ipalib/errors.py:1128
6921
msgid "A managed group cannot have a password policy."
6924
#: ipalib/errors.py:1160
6926
msgid "'%(entry)s' doesn't have a certificate."
6929
#: ipalib/errors.py:1176
6931
msgid "Unable to create private group. A group '%(group)s' already exists."
6934
#: ipalib/errors.py:1192
6937
"A problem was encountered when verifying that all members were %(verb)s: "
6941
#: ipalib/errors.py:1216
6943
msgid "no command nor help topic %(topic)r"
6946
#: ipalib/errors.py:1240
6947
msgid "change collided with another change"
6950
#: ipalib/errors.py:1256
6951
msgid "no modifications to be performed"
6954
#: ipalib/errors.py:1272
6956
msgid "%(desc)s: %(info)s"
6959
#: ipalib/errors.py:1288
6960
msgid "limits exceeded for this query"
6963
#: ipalib/errors.py:1303
6968
#: ipalib/errors.py:1318
6969
msgid "modifying primary key is not allowed"
6972
#: ipalib/errors.py:1334
6974
msgid "%(attr)s: Only one value allowed."
6977
#: ipalib/errors.py:1350
6979
msgid "%(attr)s: Invalid syntax."
6982
#: ipalib/errors.py:1366
6984
msgid "Bad search filter %(info)s"
6987
#: ipalib/errors.py:1391
6989
msgid "Certificate operation cannot be completed: %(error)s"
6992
#: ipalib/errors.py:1407
6994
msgid "Certificate format error: %(error)s"
6997
#: ipalib/errors.py:1458
6998
msgid "Already registered"
7001
#: ipalib/errors.py:1474
7002
msgid "Not registered yet"
7005
#: ipalib/frontend.py:398
7006
msgid "Results are truncated, try a more specific search"
7009
#: ipalib/frontend.py:850
7011
"Retrieve and print all attributes from the server. Affects command output."
7014
#: ipalib/frontend.py:856
7015
msgid "Print entries as stored on the server. Only affects output format."
7018
#: ipalib/frontend.py:985
7019
msgid "Forward to server instead of running locally"
7022
#: ipalib/output.py:92
7023
msgid "A dictionary representing an LDAP entry"
7026
#: ipalib/output.py:100
7027
msgid "A list of LDAP entries"
7030
#: ipalib/output.py:111
7031
msgid "All commands should at least have a result"
7034
#: ipalib/parameters.py:296
7035
msgid "incorrect type"
7038
#: ipalib/parameters.py:299
7039
msgid "Only one value is allowed"
7042
#: ipalib/parameters.py:901
7043
msgid "must be True or False"
7046
#: ipalib/parameters.py:1002
7047
msgid "must be an integer"
7050
#: ipalib/parameters.py:1054
7052
msgid "must be at least %(minvalue)d"
7055
#: ipalib/parameters.py:1064
7057
msgid "can be at most %(maxvalue)d"
7060
#: ipalib/parameters.py:1074
7061
msgid "must be a decimal number"
7064
#: ipalib/parameters.py:1097
7066
msgid "must be at least %(minvalue)f"
7069
#: ipalib/parameters.py:1107
7071
msgid "can be at most %(maxvalue)f"
7074
#: ipalib/parameters.py:1174
7076
msgid "must match pattern \"%(pattern)s\""
7079
#: ipalib/parameters.py:1192
7080
msgid "must be binary data"
7083
#: ipalib/parameters.py:1208
7085
msgid "must be at least %(minlength)d bytes"
7088
#: ipalib/parameters.py:1218
7090
msgid "can be at most %(maxlength)d bytes"
7093
#: ipalib/parameters.py:1228
7095
msgid "must be exactly %(length)d bytes"
7098
#: ipalib/parameters.py:1246
7099
msgid "must be Unicode text"
7102
#: ipalib/parameters.py:1277
7104
msgid "must be at least %(minlength)d characters"
7107
#: ipalib/parameters.py:1287
7109
msgid "can be at most %(maxlength)d characters"
7112
#: ipalib/parameters.py:1297
7114
msgid "must be exactly %(length)d characters"
7117
#: ipalib/parameters.py:1315
7119
msgid "The character '%(char)r' is not allowed."
7122
#: ipalib/parameters.py:1355
7124
msgid "must be one of %(values)r"
7127
#: ipalib/util.py:200
7129
msgid "Permission denied: %(file)s"
7132
#: ipalib/x509.py:174
7134
msgid "Issuer \"%(issuer)s\" does not match the expected issuer"
7137
#: ipaserver/plugins/dogtag.py:1313 ipaserver/plugins/dogtag.py:1398
7138
#: ipaserver/plugins/dogtag.py:1463 ipaserver/plugins/dogtag.py:1541
7139
#: ipaserver/plugins/dogtag.py:1600
7141
msgid "Unable to communicate with CMS (%s)"
7144
#: ipaserver/plugins/join.py:54
7145
msgid "The hostname to register as"
7148
#: ipaserver/plugins/join.py:62
7149
msgid "The IPA realm"
7152
#: ipaserver/plugins/join.py:68
7153
msgid "Hardware platform of the host (e.g. Lenovo T61)"
7156
#: ipaserver/plugins/join.py:72
7157
msgid "Operating System and version of the host (e.g. Fedora 9)"
7160
#: ipaserver/plugins/selfsign.py:99
7163
"Request subject \"%(request_subject)s\" does not match the form "
7164
"\"%(subject_base)s\""
7167
#: ipaserver/plugins/selfsign.py:104
7169
msgid "unable to decode csr: %s"
7172
#: ipaserver/plugins/selfsign.py:125 ipaserver/plugins/selfsign.py:140
7173
msgid "file operation"
7176
#: ipaserver/plugins/selfsign.py:154
7177
msgid "cannot obtain next serial number"
7180
#: ipaserver/plugins/selfsign.py:189
7181
msgid "certutil failure"
7184
#: ipa-client/config.c:55
7186
msgid "cannot open configuration file %s\n"
7189
#: ipa-client/config.c:62
7191
msgid "cannot stat() configuration file %s\n"
7194
#: ipa-client/config.c:68
7196
msgid "out of memory\n"
7199
#: ipa-client/config.c:79
7201
msgid "read error\n"
7204
#: ipa-client/ipa-getkeytab.c:85 ipa-client/ipa-getkeytab.c:821
7205
#: ipa-client/ipa-rmkeytab.c:190
7207
msgid "Kerberos context initialization failed\n"
7210
#: ipa-client/ipa-getkeytab.c:147 ipa-client/ipa-getkeytab.c:834
7212
msgid "No system preferred enctypes ?!\n"
7215
#: ipa-client/ipa-getkeytab.c:155
7217
msgid "Out of memory!?\n"
7220
#: ipa-client/ipa-getkeytab.c:173 ipa-client/ipa-getkeytab.c:188
7222
msgid "Out of memory\n"
7225
#: ipa-client/ipa-getkeytab.c:203
7227
msgid "Warning unrecognized encryption type: [%s]\n"
7230
#: ipa-client/ipa-getkeytab.c:218
7232
msgid "Warning unrecognized salt type: [%s]\n"
7235
#: ipa-client/ipa-getkeytab.c:245
7237
msgid "Enctype comparison failed!\n"
7240
#: ipa-client/ipa-getkeytab.c:307
7242
msgid "Failed to create random key!\n"
7245
#: ipa-client/ipa-getkeytab.c:320 ipa-client/ipa-getkeytab.c:337
7246
#: ipa-client/ipa-getkeytab.c:345 ipa-client/ipa-getkeytab.c:382
7248
msgid "Failed to create key!\n"
7251
#: ipa-client/ipa-getkeytab.c:327 ipa-client/ipa-getkeytab.c:360
7252
#: ipa-client/ipa-join.c:417 ipa-client/ipa-join.c:426
7253
#: ipa-client/ipa-join.c:563 ipa-client/ipa-join.c:751
7254
#: ipa-client/ipa-join.c:819
7256
msgid "Out of memory!\n"
7259
#: ipa-client/ipa-getkeytab.c:371
7261
msgid "Bad or unsupported salt type (%d)!\n"
7264
#: ipa-client/ipa-getkeytab.c:492
7266
msgid "No keys accepted by KDC\n"
7269
#: ipa-client/ipa-getkeytab.c:507
7271
msgid "Out of memory \n"
7274
#: ipa-client/ipa-getkeytab.c:545
7276
msgid "Out of Memory!\n"
7279
#: ipa-client/ipa-getkeytab.c:552
7281
msgid "Failed to create control!\n"
7284
#: ipa-client/ipa-getkeytab.c:576
7286
msgid "Unable to initialize ldap library!\n"
7289
#: ipa-client/ipa-getkeytab.c:583
7291
msgid "Unable to set ldap options!\n"
7294
#: ipa-client/ipa-getkeytab.c:596
7296
msgid "Simple bind failed\n"
7299
#: ipa-client/ipa-getkeytab.c:606
7301
msgid "SASL Bind failed!\n"
7304
#: ipa-client/ipa-getkeytab.c:622 ipa-client/ipa-getkeytab.c:635
7305
#: ipa-client/ipa-getkeytab.c:642 ipa-client/ipa-getkeytab.c:649
7307
msgid "Operation failed! %s\n"
7310
#: ipa-client/ipa-getkeytab.c:655 ipa-client/ipa-getkeytab.c:665
7312
msgid "Missing reply control!\n"
7315
#: ipa-client/ipa-getkeytab.c:672
7317
msgid "ber_init() failed, Invalid control ?!\n"
7320
#: ipa-client/ipa-getkeytab.c:691 ipa-client/ipa-getkeytab.c:698
7322
msgid "ber_scanf() failed, Invalid control ?!\n"
7325
#: ipa-client/ipa-getkeytab.c:736
7326
msgid "New Principal Password"
7329
#: ipa-client/ipa-getkeytab.c:742
7330
msgid "Verify Principal Password"
7333
#: ipa-client/ipa-getkeytab.c:776
7334
msgid "Print as little as possible"
7337
#: ipa-client/ipa-getkeytab.c:776
7338
msgid "Output only on errors"
7341
#: ipa-client/ipa-getkeytab.c:778
7342
msgid "Contact this specific KDC Server"
7345
#: ipa-client/ipa-getkeytab.c:779
7349
#: ipa-client/ipa-getkeytab.c:781 ipa-client/ipa-rmkeytab.c:171
7351
"The principal to get a keytab for (ex: ftp/ftp.example.com@EXAMPLE.COM)"
7354
#: ipa-client/ipa-getkeytab.c:782 ipa-client/ipa-rmkeytab.c:172
7355
msgid "Kerberos Service Principal Name"
7358
#: ipa-client/ipa-getkeytab.c:784 ipa-client/ipa-rmkeytab.c:174
7359
msgid "File were to store the keytab information"
7362
#: ipa-client/ipa-getkeytab.c:785 ipa-client/ipa-rmkeytab.c:174
7363
msgid "Keytab File Name"
7366
#: ipa-client/ipa-getkeytab.c:787
7367
msgid "Encryption types to request"
7370
#: ipa-client/ipa-getkeytab.c:788
7371
msgid "Comma separated encryption types list"
7374
#: ipa-client/ipa-getkeytab.c:790
7375
msgid "Show the list of permitted encryption types and exit"
7378
#: ipa-client/ipa-getkeytab.c:791
7379
msgid "Permitted Encryption Types"
7382
#: ipa-client/ipa-getkeytab.c:793
7383
msgid "Asks for a non-random password to use for the principal"
7386
#: ipa-client/ipa-getkeytab.c:795
7390
#: ipa-client/ipa-getkeytab.c:795
7391
msgid "DN to bind as if not using kerberos"
7394
#: ipa-client/ipa-getkeytab.c:797
7395
msgid "LDAP password"
7398
#: ipa-client/ipa-getkeytab.c:797
7399
msgid "password to use if not using kerberos"
7402
#: ipa-client/ipa-getkeytab.c:837
7404
msgid "Supported encryption types:\n"
7407
#: ipa-client/ipa-getkeytab.c:841
7409
msgid "Warning: failed to convert type (#%d)\n"
7412
#: ipa-client/ipa-getkeytab.c:860
7414
msgid "Bind password required when using a bind DN.\n"
7417
#: ipa-client/ipa-getkeytab.c:873
7420
"Warning: salt types are not honored with randomized passwords (see opt. "
7424
#: ipa-client/ipa-getkeytab.c:885
7426
msgid "Invalid Service Principal Name\n"
7429
#: ipa-client/ipa-getkeytab.c:893
7431
msgid "Kerberos Credential Cache not found. Do you have a Kerberos Ticket?\n"
7434
#: ipa-client/ipa-getkeytab.c:901
7437
"Kerberos User Principal not found. Do you have a valid Credential Cache?\n"
7440
#: ipa-client/ipa-getkeytab.c:909
7442
msgid "Failed to open Keytab\n"
7445
#: ipa-client/ipa-getkeytab.c:916
7447
msgid "Failed to create key material\n"
7450
#: ipa-client/ipa-getkeytab.c:935
7452
msgid "Failed to add key to the keytab\n"
7455
#: ipa-client/ipa-getkeytab.c:944
7457
msgid "Failed to close the keytab\n"
7460
#: ipa-client/ipa-getkeytab.c:950
7462
msgid "Keytab successfully retrieved and stored in: %s\n"
7465
#: ipa-client/ipa-join.c:65
7467
msgid "No permission to join this host to the IPA domain.\n"
7470
#: ipa-client/ipa-join.c:94 ipa-client/ipa-join.c:106
7472
msgid "No write permissions on keytab file '%s'\n"
7475
#: ipa-client/ipa-join.c:111
7477
msgid "access() on %s failed: errno = %d\n"
7480
#: ipa-client/ipa-join.c:143 ipa-client/ipa-join.c:197
7482
msgid "Out of memory!"
7485
#: ipa-client/ipa-join.c:204
7487
msgid "Unable to initialize connection to ldap server: %s"
7490
#: ipa-client/ipa-join.c:210
7492
msgid "Unable to enable SSL in LDAP\n"
7495
#: ipa-client/ipa-join.c:216
7497
msgid "Unable to set LDAP version\n"
7500
#: ipa-client/ipa-join.c:236
7502
msgid "Bind failed: %s\n"
7505
#: ipa-client/ipa-join.c:269
7507
msgid "Search for %s on rootdse failed with error %d"
7510
#: ipa-client/ipa-join.c:279 ipa-client/ipa-join.c:331
7512
msgid "No values for %s"
7515
#: ipa-client/ipa-join.c:322
7517
msgid "Search for ipaCertificateSubjectBase failed with error %d"
7520
#: ipa-client/ipa-join.c:390
7522
msgid "Unable to determine root DN of %s\n"
7525
#: ipa-client/ipa-join.c:399
7527
msgid "Unable to determine certificate subject of %s\n"
7530
#: ipa-client/ipa-join.c:407
7532
msgid "Unable to make an LDAP connection to %s\n"
7535
#: ipa-client/ipa-join.c:432
7537
msgid "Searching with %s in %s\n"
7540
#: ipa-client/ipa-join.c:438
7542
msgid "ldap_search_ext_s: %s\n"
7545
#: ipa-client/ipa-join.c:446
7547
msgid "Unable to find host '%s'\n"
7550
#: ipa-client/ipa-join.c:453
7552
msgid "Unable to get binddn for host '%s'\n"
7555
#: ipa-client/ipa-join.c:466
7557
msgid "Host already has principal, trying bind anyway\n"
7560
#: ipa-client/ipa-join.c:480 ipa-client/ipa-join.c:633
7562
msgid "Host is already joined.\n"
7565
#: ipa-client/ipa-join.c:484
7567
msgid "Incorrect password.\n"
7570
#: ipa-client/ipa-join.c:495
7572
msgid "principal not found in host entry\n"
7575
#: ipa-client/ipa-join.c:618
7577
msgid "principal not found in XML-RPC response\n"
7580
#: ipa-client/ipa-join.c:699 ipa-client/ipa-join.c:900
7582
msgid "Unable to determine IPA server from %s\n"
7585
#: ipa-client/ipa-join.c:715 ipa-client/ipa-join.c:915
7587
msgid "The hostname must be fully-qualified: %s\n"
7590
#: ipa-client/ipa-join.c:724 ipa-client/ipa-join.c:925
7592
msgid "Unable to join host: Kerberos context initialization failed\n"
7595
#: ipa-client/ipa-join.c:732
7597
msgid "Error resolving keytab: %s.\n"
7600
#: ipa-client/ipa-join.c:741
7602
msgid "Error getting default Kerberos realm: %s.\n"
7605
#: ipa-client/ipa-join.c:759
7607
msgid "Error parsing \"%s\": %s.\n"
7610
#: ipa-client/ipa-join.c:777
7612
msgid "Error obtaining initial credentials: %s.\n"
7615
#: ipa-client/ipa-join.c:788
7617
msgid "Unable to generate Kerberos Credential Cache\n"
7620
#: ipa-client/ipa-join.c:796
7622
msgid "Error storing creds in credential cache: %s.\n"
7625
#: ipa-client/ipa-join.c:846
7627
msgid "Unenrollment successful.\n"
7630
#: ipa-client/ipa-join.c:849
7632
msgid "Unenrollment failed.\n"
7635
#: ipa-client/ipa-join.c:854
7637
msgid "result not found in XML-RPC response\n"
7640
#: ipa-client/ipa-join.c:932
7642
msgid "Unable to join host: Kerberos Credential Cache not found\n"
7645
#: ipa-client/ipa-join.c:940
7648
"Unable to join host: Kerberos User Principal not found and host password not"
7652
#: ipa-client/ipa-join.c:954
7654
msgid "fork() failed\n"
7657
#: ipa-client/ipa-join.c:983
7659
msgid "ipa-getkeytab not found\n"
7662
#: ipa-client/ipa-join.c:986
7664
msgid "ipa-getkeytab has bad permissions?\n"
7667
#: ipa-client/ipa-join.c:989
7669
msgid "executing ipa-getkeytab failed, errno %d\n"
7672
#: ipa-client/ipa-join.c:1001
7674
msgid "child exited with %d\n"
7677
#: ipa-client/ipa-join.c:1007
7679
msgid "Certificate subject base is: %s\n"
7682
#: ipa-client/ipa-join.c:1042
7683
msgid "Print the raw XML-RPC output in GSSAPI mode"
7686
#: ipa-client/ipa-join.c:1044
7687
msgid "Quiet mode. Only errors are displayed."
7690
#: ipa-client/ipa-join.c:1046
7691
msgid "Unenroll this host from IPA server"
7694
#: ipa-client/ipa-join.c:1048
7695
msgid "Hostname of this server"
7698
#: ipa-client/ipa-join.c:1048 ipa-client/ipa-join.c:1050
7702
#: ipa-client/ipa-join.c:1050
7703
msgid "IPA Server to use"
7706
#: ipa-client/ipa-join.c:1052
7707
msgid "Specifies where to store keytab information."
7710
#: ipa-client/ipa-join.c:1052
7714
#: ipa-client/ipa-join.c:1054
7715
msgid "LDAP password (if not using Kerberos)"
7718
#: ipa-client/ipa-join.c:1054
7722
#: ipa-client/ipa-rmkeytab.c:43
7724
msgid "Unable to parse principal name\n"
7727
#: ipa-client/ipa-rmkeytab.c:45
7729
msgid "krb5_parse_name %d: %s\n"
7732
#: ipa-client/ipa-rmkeytab.c:55
7734
msgid "Removing principal %s\n"
7737
#: ipa-client/ipa-rmkeytab.c:68
7739
msgid "Failed to open keytab\n"
7742
#: ipa-client/ipa-rmkeytab.c:72
7744
msgid "principal not found\n"
7747
#: ipa-client/ipa-rmkeytab.c:74
7749
msgid "krb5_kt_get_entry %d: %s\n"
7752
#: ipa-client/ipa-rmkeytab.c:82
7754
msgid "Unable to remove entry\n"
7757
#: ipa-client/ipa-rmkeytab.c:84
7762
#: ipa-client/ipa-rmkeytab.c:85
7764
msgid "krb5_kt_remove_entry %d: %s\n"
7767
#: ipa-client/ipa-rmkeytab.c:119
7769
msgid "Unable to parse principal\n"
7772
#: ipa-client/ipa-rmkeytab.c:121
7774
msgid "krb5_unparse_name %d: %s\n"
7777
#: ipa-client/ipa-rmkeytab.c:143
7779
msgid "realm not found\n"
7782
#: ipa-client/ipa-rmkeytab.c:169
7783
msgid "Print debugging information"
7786
#: ipa-client/ipa-rmkeytab.c:169
7787
msgid "Debugging output"
7790
#: ipa-client/ipa-rmkeytab.c:176
7791
msgid "Remove all principals in this realm"
7794
#: ipa-client/ipa-rmkeytab.c:176
7798
#: ipa-client/ipa-rmkeytab.c:230 ipa-client/ipa-rmkeytab.c:237
7800
msgid "Failed to open keytab '%s': %s\n"
7803
#: ipa-client/ipa-rmkeytab.c:253
7805
msgid "Closing keytab failed\n"
7808
#: ipa-client/ipa-rmkeytab.c:255
7810
msgid "krb5_kt_close %d: %s\n"