]> git.ipfire.org Git - thirdparty/samba.git/commitdiff
netcmd: auth: manpage documentation for conditional ace fields
authorRob van der Linde <rob@catalyst.net.nz>
Wed, 20 Sep 2023 23:41:02 +0000 (11:41 +1200)
committerAndrew Bartlett <abartlet@samba.org>
Fri, 29 Sep 2023 02:18:34 +0000 (02:18 +0000)
Signed-off-by: Rob van der Linde <rob@catalyst.net.nz>
Reviewed-by: Douglas Bagnall <douglas.bagnall@catalyst.net.nz>
Reviewed-by: Andrew Bartlett <abartlet@samba.org>
docs-xml/manpages/samba-tool.8.xml

index 55e714dbed40f489488eef3cb43e66d503d4569a..83d91bd0af166a14d1718a4a5e52f756dfb1b570 100644 (file)
                                </para>
                        </listitem>
                </varlistentry>
+               <varlistentry>
+                       <term>--user-allowed-to-authenticate-from</term>
+                       <listitem>
+                               <para>
+                                       Conditions user is allowed to authenticate from.
+                               </para>
+                               <para>
+                                       Must be a valid SDDL string.
+                               </para>
+                               <para>
+                                       Example: O:SYG:SYD:(XA;OICI;CR;;;WD;(Member_of {SID(AU)}))
+                               </para>
+                       </listitem>
+               </varlistentry>
+               <varlistentry>
+                       <term>--user-allowed-to-authenticate-to</term>
+                       <listitem>
+                               <para>
+                                       Conditions user is allowed to authenticate to.
+                               </para>
+                               <para>
+                                       Must be a valid SDDL string.
+                               </para>
+                               <para>
+                                       Example: O:SYG:SYD:(XA;OICI;CR;;;WD;(Member_of {SID(AO)}))
+                               </para>
+                       </listitem>
+               </varlistentry>
                <varlistentry>
                        <term>--service-tgt-lifetime</term>
                        <listitem>
                                </para>
                        </listitem>
                </varlistentry>
+               <varlistentry>
+                       <term>--service-allowed-to-authenticate-from</term>
+                       <listitem>
+                               <para>
+                                       Conditions service is allowed to authenticate from.
+                               </para>
+                               <para>
+                                       Must be a valid SDDL string.
+                               </para>
+                               <para>
+                                       Example: O:SYG:SYD:(XA;OICI;CR;;;WD;(Member_of {SID(AU)}))
+                               </para>
+                       </listitem>
+               </varlistentry>
+               <varlistentry>
+                       <term>--service-allowed-to-authenticate-to</term>
+                       <listitem>
+                               <para>
+                                       Conditions service is allowed to authenticate to.
+                               </para>
+                               <para>
+                                       Must be a valid SDDL string.
+                               </para>
+                               <para>
+                                       Example: O:SYG:SYD:(XA;OICI;CR;;;WD;(Member_of {SID(AO)}))
+                               </para>
+                       </listitem>
+               </varlistentry>
                <varlistentry>
                        <term>--computer-tgt-lifetime</term>
                        <listitem>
                                </para>
                        </listitem>
                </varlistentry>
+               <varlistentry>
+                       <term>-computer-allowed-to-authenticate-to</term>
+                       <listitem>
+                               <para>
+                                       Conditions computer is allowed to authenticate to.
+                               </para>
+                               <para>
+                                       Must be a valid SDDL string.
+                               </para>
+                               <para>
+                                       Example: O:SYG:SYD:(XA;OICI;CR;;;WD;(Member_of {SID(AU)}))
+                               </para>
+                       </listitem>
+               </varlistentry>
        </variablelist>
 </refsect3>
 
                                </para>
                        </listitem>
                </varlistentry>
+               <varlistentry>
+                       <term>--user-allowed-to-authenticate-from</term>
+                       <listitem>
+                               <para>
+                                       Conditions user is allowed to authenticate from.
+                               </para>
+                               <para>
+                                       Must be a valid SDDL string.
+                               </para>
+                               <para>
+                                       Example: O:SYG:SYD:(XA;OICI;CR;;;WD;(Member_of {SID(AU)}))
+                               </para>
+                       </listitem>
+               </varlistentry>
+               <varlistentry>
+                       <term>--user-allowed-to-authenticate-to</term>
+                       <listitem>
+                               <para>
+                                       Conditions user is allowed to authenticate to.
+                               </para>
+                               <para>
+                                       Must be a valid SDDL string.
+                               </para>
+                               <para>
+                                       Example: O:SYG:SYD:(XA;OICI;CR;;;WD;(Member_of {SID(AO)}))
+                               </para>
+                       </listitem>
+               </varlistentry>
                <varlistentry>
                        <term>--service-tgt-lifetime</term>
                        <listitem>
                                </para>
                        </listitem>
                </varlistentry>
+               <varlistentry>
+                       <term>--service-allowed-to-authenticate-from</term>
+                       <listitem>
+                               <para>
+                                       Conditions service is allowed to authenticate from.
+                               </para>
+                               <para>
+                                       Must be a valid SDDL string.
+                               </para>
+                               <para>
+                                       Example: O:SYG:SYD:(XA;OICI;CR;;;WD;(Member_of {SID(AU)}))
+                               </para>
+                       </listitem>
+               </varlistentry>
+               <varlistentry>
+                       <term>--service-allowed-to-authenticate-to</term>
+                       <listitem>
+                               <para>
+                                       Conditions service is allowed to authenticate to.
+                               </para>
+                               <para>
+                                       Must be a valid SDDL string.
+                               </para>
+                               <para>
+                                       Example: O:SYG:SYD:(XA;OICI;CR;;;WD;(Member_of {SID(AO)}))
+                               </para>
+                       </listitem>
+               </varlistentry>
                <varlistentry>
                        <term>--computer-tgt-lifetime</term>
                        <listitem>
                                </para>
                        </listitem>
                </varlistentry>
+               <varlistentry>
+                       <term>-computer-allowed-to-authenticate-to</term>
+                       <listitem>
+                               <para>
+                                       Conditions computer is allowed to authenticate to.
+                               </para>
+                               <para>
+                                       Must be a valid SDDL string.
+                               </para>
+                               <para>
+                                       Example: O:SYG:SYD:(XA;OICI;CR;;;WD;(Member_of {SID(AU)}))
+                               </para>
+                       </listitem>
+               </varlistentry>
        </variablelist>
 </refsect3>