]> git.ipfire.org Git - thirdparty/cups.git/blame - man/client.conf.man.in
The scheduler now advertises PWG Raster attributes for IPP Everywhere clients
[thirdparty/cups.git] / man / client.conf.man.in
CommitLineData
b423cd4c 1.\"
7131e285 2.\" client.conf man page for CUPS.
b423cd4c 3.\"
ee6226a5 4.\" Copyright 2007-2015 by Apple Inc.
7131e285 5.\" Copyright 2006 by Easy Software Products.
b423cd4c 6.\"
7131e285
MS
7.\" These coded instructions, statements, and computer programs are the
8.\" property of Apple Inc. and are protected by Federal copyright
9.\" law. Distribution and use rights are outlined in the file "LICENSE.txt"
10.\" which should have been included with this file. If this file is
11.\" file is missing or damaged, see the license at "http://www.cups.org/".
b423cd4c 12.\"
ee6226a5 13.TH client.conf 5 "CUPS" "19 May 2015" "Apple Inc."
b423cd4c 14.SH NAME
7131e285 15client.conf \- client configuration file for cups (deprecated)
b423cd4c 16.SH DESCRIPTION
7131e285
MS
17The \fBclient.conf\fR file configures the CUPS client and is normally located in the \fI/etc/cups\fR and/or \fI~/.cups\fR directories.
18Each line in the file can be a configuration directive, a blank line, or a comment. Comment lines start with the # character.
19.LP
ee6226a5 20\fBNote:\fR Starting with OS X 10.7, this file is only used by command-line and X11 applications plus the IPP backend.
7131e285
MS
21The \fBServerName\fR directive is not supported on OS X at all.
22.SS DIRECTIVES
23The following directives are understood by the client. Consult the online help for detailed descriptions:
b423cd4c 24.TP 5
f51f3773 25\fBAllowAnyRoot Yes\fR
f9988e18 26.TP 5
f51f3773 27\fBAllowAnyRoot No\fR
f9988e18 28Specifies whether to allow TLS with certificates that have not been signed by a trusted Certificate Authority.
f51f3773 29The default is "Yes".
f9988e18 30.TP 5
f51f3773 31\fBAllowExpiredCerts Yes\fR
f9988e18 32.TP 5
f51f3773 33\fBAllowExpiredCerts No\fR
f9988e18 34Specifies whether to allow TLS with expired certificates.
f51f3773 35The default is "Yes".
f9988e18 36.TP 5
7131e285 37\fBEncryption IfRequested\fR
b423cd4c 38.TP 5
7131e285 39\fBEncryption Never\fR
b423cd4c 40.TP 5
7131e285
MS
41\fBEncryption Required\fR
42Specifies the level of encryption that should be used.
b423cd4c 43.TP 5
7131e285
MS
44\fBGSSServiceName \fIname\fR
45Specifies the Kerberos service name that is used for authentication, typically "host", "http", or "ipp".
46CUPS adds the remote hostname ("name@server.example.com") for you. The default name is "http".
07ed0e9a 47.TP 5
7131e285 48\fBServerName \fIhostname-or-ip-address\fR[\fI:port\fR]
b423cd4c 49.TP 5
7131e285
MS
50\fBServerName \fI/domain/socket\fR
51Specifies the address and optionally the port to use when connecting to the server.
52\fBNote: This directive it not supported on OS X 10.7 or later.\fR
3e7fe0ca 53.TP 5
7131e285
MS
54\fBServerName \fIhostname-or-ip-address\fR[\fI:port\fR]\fB/version=1.1\fR
55Specifies the address and optionally the port to use when connecting to a server running CUPS 1.3.12 and earlier.
3699c637 56.TP 5
ee6226a5 57\fBSSLOptions \fR[\fIAllowDH\fR] [\fIAllowRC4\fR] [\fIAllowSSL3\fR] [\fIDenyTLS1.0\fR]
63aefcd5
MS
58.TP 5
59\fBSSLOptions None\fR
60Sets encryption options (only in /etc/cups/client.conf).
61By default, CUPS only supports encryption using TLS v1.0 or higher using known secure cipher suites.
ee6226a5 62The \fIAllowDH\fR option enables cipher suites using plain Diffie-Hellman key negotiation.
63aefcd5
MS
63The \fIAllowRC4\fR option enables the 128-bit RC4 cipher suites, which are required for some older clients that do not implement newer ones.
64The \fIAllowSSL3\fR option enables SSL v3.0, which is required for some older clients that do not support TLS v1.0.
ee6226a5 65The \fIDenyTLS1.0\fR option disables TLS v1.0 support - this sets the minimum protocol version to TLS v1.1.
63aefcd5 66.TP 5
7131e285 67\fBUser \fIname\fR
3e7fe0ca 68Specifies the default user name to use for requests.
f51f3773
MS
69.TP 5
70\fBValidateCerts Yes\fR
71.TP 5
72\fBValidateCerts No\fR
73Specifies whether to only allow TLS with certificates whose common name matches the hostname.
74The default is "No".
7131e285
MS
75.SH NOTES
76The \fBclient.conf\fR file is deprecated and will no longer be supported in a future version of CUPS.
b423cd4c 77.SH SEE ALSO
7131e285
MS
78.BR cups (1),
79CUPS Online Help (http://localhost:631/help)
b423cd4c 80.SH COPYRIGHT
ee6226a5 81Copyright \[co] 2007-2015 by Apple Inc.