amAuthWindowsDesktopSSO.properties revision 049e5d320f334f5cf7114a2995561d0950316542
c80e152862cc3e3207dc837fde7116bd4c0e4b9dTinderbox User# DO NOT ALTER OR REMOVE COPYRIGHT NOTICES OR THIS HEADER.
8d1b3ceb4d491ce32572f1702f37ed585eede993Evan Hunt# Copyright (c) 2007 Sun Microsystems Inc. All Rights Reserved
d77cb075aae5595e460e3299bfc1e8ea5d42b560Evan Hunt# The contents of this file are subject to the terms
d77cb075aae5595e460e3299bfc1e8ea5d42b560Evan Hunt# of the Common Development and Distribution License
30ca20f720ad0887772a79e7abb25b4fa0e4b5b0Mark Andrews# (the License). You may not use this file except in
30ca20f720ad0887772a79e7abb25b4fa0e4b5b0Mark Andrews# compliance with the License.
30ca20f720ad0887772a79e7abb25b4fa0e4b5b0Mark Andrews# You can obtain a copy of the License at
30ca20f720ad0887772a79e7abb25b4fa0e4b5b0Mark Andrews# https://opensso.dev.java.net/public/CDDLv1.0.html or
7ec97ae74e42ec21b354fd2d1366313b41d947d6Evan Hunt# See the License for the specific language governing
701a93f5a592e4652343e049aa495d409c3ee133Mark Andrews# permission and limitations under the License.
002f1373374a0b72fc0329baa682917929bef168Tony Finch# When distributing Covered Code, include this CDDL
002f1373374a0b72fc0329baa682917929bef168Tony Finch# Header Notice in each file and include the License file
8f1ed05dc0aae7ae6c3da6ec6d405df61257a61eMark Andrews# If applicable, add the following below the CDDL Header,
8f1ed05dc0aae7ae6c3da6ec6d405df61257a61eMark Andrews# with the fields enclosed by brackets [] replaced by
8f1ed05dc0aae7ae6c3da6ec6d405df61257a61eMark Andrews# your own identifying information:
8f1ed05dc0aae7ae6c3da6ec6d405df61257a61eMark Andrews# "Portions Copyrighted [year] [name of copyright owner]"
73cf0ba4e82c6baef638ecc4e31321223f841d28Mark Andrews# $Id: amAuthWindowsDesktopSSO.properties,v 1.2 2008/06/25 05:40:35 qcheng Exp $
d8351dfc9b725b0d727be7acab6247d7d501d9a0Mark Andrews# Portions Copyrighted 2011-2014 ForgeRock AS
f1740da065d4555039fe8bb53beb4153e3f94de3Mark Andrewsiplanet-am-auth-windowsdesktopsso-service-description=Windows Desktop SSO
f1740da065d4555039fe8bb53beb4153e3f94de3Mark Andrewsa101=Service Principal
f1740da065d4555039fe8bb53beb4153e3f94de3Mark Andrewsa101.help=The name of the Kerberos principal used during authentication
31c7ab4fb3f7710af87dc9c3d64c5daf9a3dea35Mark Andrewsa101.help.txt=This principal must match the name used in the keytab file created from the Active Directory server.<br/>\
31c7ab4fb3f7710af87dc9c3d64c5daf9a3dea35Mark AndrewsThe format of the field is as follows:\<br/><br/><code>HTTP/openam.forgerock.com@AD_DOMAIN.COM</code>
31c7ab4fb3f7710af87dc9c3d64c5daf9a3dea35Mark Andrewsa102=Keytab File Name
31c7ab4fb3f7710af87dc9c3d64c5daf9a3dea35Mark Andrewsa102.help=The path of the AD keytab file
31c7ab4fb3f7710af87dc9c3d64c5daf9a3dea35Mark Andrewsa102.help.txt=This is the absolute pathname of the AD keytab file. The keytab file is generated by the Active Directory server.
ad309e8dfa0601d6053aaa12770a98a6940f89deEvan Hunta103=Kerberos Realm
635e4351b04fd61ca6d853bdac6268c090b55129Mark Andrewsa103.help=The name of the Kerberos (Active Directory) realm used for authentication
635e4351b04fd61ca6d853bdac6268c090b55129Mark Andrewsa104=Kerberos Server Name
fc04365d2f83f197c8a54545dd9cd4ce6a209940Mark Andrewsa104.help=The hostname/IP address of the Kerberos (Active Directory) server.
fc04365d2f83f197c8a54545dd9cd4ce6a209940Mark Andrewsa105=Return Principal with Domain Name
7cbac360bf98c0a52b2d6866ad887616c32d4d3aMark Andrewsa105.help=Returns the fully qualified name of the authenticated user rather than just the username.
7cbac360bf98c0a52b2d6866ad887616c32d4d3aMark Andrewsa108=Search for the user in the realm
7cbac360bf98c0a52b2d6866ad887616c32d4d3aMark Andrewsa108.help=Validate that the user has a matched user profile configured in the data store.
1cf118a656f5fd210787908b845362077fc507f8Evan Hunta108.help.txt=If this option is enabled, the module validates whether the account corresponds to a user profile in the \
1cf118a656f5fd210787908b845362077fc507f8Evan HuntData Store for the realm. The attributes to perform the search are configured under \
1cf118a656f5fd210787908b845362077fc507f8Evan Hunt<i>Access Control > Realm Name > Authentication > All Core settings > Alias Search Attribute Name</i>.
1cf118a656f5fd210787908b845362077fc507f8Evan Hunta106=Authentication Level
1cf118a656f5fd210787908b845362077fc507f8Evan Hunta106.help=The authentication level associated with this module.
1cf118a656f5fd210787908b845362077fc507f8Evan Hunta106.help.txt=Each authentication module has an authentication level that can be used to indicate the level of security \
1cf118a656f5fd210787908b845362077fc507f8Evan Huntassociated with the module; 0 is the lowest (and the default).
1cf118a656f5fd210787908b845362077fc507f8Evan Hunta107=Trusted Kerberos realms
6fb3db01acad7f5c1f4e23789fb0f2ce56cc07deMukund Sivaramana107.help=List of trusted Kerberos realms for User Kerberos tickets.
6fb3db01acad7f5c1f4e23789fb0f2ce56cc07deMukund Sivaramana107.help.txt=If realms are configured, then Kerberos tickets are only accepted if the realm part of the UserPrincipalName \
6fb3db01acad7f5c1f4e23789fb0f2ce56cc07deMukund Sivaramanof the Users Kerberos ticket matches a realm from the list.
fd82c70695888c134287b8018296028c252d100eMukund Sivaramantoken=Invalid Kerberos token.
fd82c70695888c134287b8018296028c252d100eMukund Sivaramanauth=Failed to authentication.
fd82c70695888c134287b8018296028c252d100eMukund SivaramanserviceAuth=Service authentication failed.
4a53e3c2b83c476a93148eaee0272649beb221caMark Andrewscontext=Failed to establish context.
4a53e3c2b83c476a93148eaee0272649beb221caMark Andrewsnullprincipal=Service principal name is null.
4a53e3c2b83c476a93148eaee0272649beb221caMark Andrewsnullkeytab=Service keytab file is null.
2cf0fe3b8092f64f8f68ae3693fe2e73e90ad1a4Mark Andrewsnullrealm=KDC realm is null.
2cf0fe3b8092f64f8f68ae3693fe2e73e90ad1a4Mark Andrewsnullkdc=KDC server name is null.
2cf0fe3b8092f64f8f68ae3693fe2e73e90ad1a4Mark Andrewsnullauthlevel=Module auth level is null.
2cf0fe3b8092f64f8f68ae3693fe2e73e90ad1a4Mark Andrewsnokeytab=Keytab file {0} does not exist.
4221d9cd1d02311fbf9b5f08a038f5af78b10b4aEvan Huntauthlevel=Module auth level {0} is not correct.
4221d9cd1d02311fbf9b5f08a038f5af78b10b4aEvan HuntidRepoSearch=IdRepo exception while trying to find the user {0} in the realm {1}
4221d9cd1d02311fbf9b5f08a038f5af78b10b4aEvan HuntssoSearch=SSO exception while trying to find the user {0} in the realm {1}
4221d9cd1d02311fbf9b5f08a038f5af78b10b4aEvan Huntnotfound=Unable to find the user {0} in the realm {1}
4221d9cd1d02311fbf9b5f08a038f5af78b10b4aEvan Hunti18nTrue=Enabled
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis Duponti18nFalse=Disabled
f9c410d93711fbf312a0162f1e2d3f2a5ede69afFrancis DupontuntrustedToken=Kerberos tokens from realm {0} are not trusted.