At line 5 changed one line |
__⚠️ Important__: Ensure that all {{''__(Required)__''}} fields are properly configured as outlined on this wiki page.\\ |
__⚠️ Important__: Ensure that all {{''__(Required❗)__''}} fields are properly configured as outlined on this wiki page.\\ |
At line 19 added one line |
\\ |
At line 57 changed one line |
!2.1.1 OpenID Configuration URL {{''__(Required)__''}}: \\ |
!2.1.1 OpenID Configuration URL {{''__(Required❗)__''}}: \\ |
At line 62 changed one line |
• Authorization endpoint {{''__(Required)__''}}\\ |
• Authorization endpoint {{''__(Required❗)__''}}\\ |
At line 100 changed one line |
!2.1.3 Authorization related settings {{''__(Required)__''}}:\\ |
!2.1.3 Authorization related settings {{''__(Required❗)__''}}:\\ |
At line 111 changed one line |
• {oidc_redirect_url}: An autogenerated URL by CrushFTP, composed of the initial host and port, followed by __/SSO_IDC/__. This URL is used to redirect the user after successful authentication. __!!! It must exactly match the redirect URL registered and configured in the IdP.__\\ |
• {oidc_redirect_url}: An autogenerated URL by CrushFTP, composed of the initial host and port, followed by __/SSO_IDC/__. This URL is used to redirect the user after successful authentication. __⚠️ It must exactly match the redirect URL registered and configured in the IdP.__\\ |
At line 147 changed one line |
__Verify ID Token:__ The Authorization Code Flow uses the code value returned by the IdP to obtain the ID token. Although this step is not mandatory in the OpenID protocol, you can enable an additional verification of the returned ID token by selecting this checkbox. __!!!__ This feature works only if the OpenID configuration includes the "__jwks_uri__" endpoint. __It provides an extra layer of validation for the ID token.__\\ |
__Verify ID Token:__ The Authorization Code Flow uses the code value returned by the IdP to obtain the ID token. Although this step is not mandatory in the OpenID protocol, you can enable an additional verification of the returned ID token by selecting this checkbox. ⚠️ This feature works only if the OpenID configuration includes the "__jwks_uri__" endpoint. __It provides an extra layer of validation for the ID token.__\\ |
At line 151 changed one line |
__Check User Endpoint URL?__: This option enables CrushFTP to retrieve additional information about the user from the IdP via the "__user_info__" endpoint URL. __!!!__ This feature only works if the OpenID configuration includes a "userinfo_endpoint" URL or if you manually specify it in the "__User Endpoint URL__" input field. \\ |
__Check User Endpoint URL?__: This option enables CrushFTP to retrieve additional information about the user from the IdP via the "__user_info__" endpoint URL. ⚠️ This feature only works if the OpenID configuration includes a "userinfo_endpoint" URL or if you manually specify it in the "__User Endpoint URL__" input field. \\ |
At line 170 changed one line |
__Claim as Username__ {{''__(Required)__''}}: Specify the name of the claim within the IdP's response that should be used as the __username for the CrushFTP session__. |
__Claim as Username__ {{''__(Required❗)__''}}: Specify the name of the claim within the IdP's response that should be used as the __username for the CrushFTP session__. |
At line 182 changed one line |
__Enable__: Activate the plugin. {{''__(Required)__''}}\\ |
__Enable__: Activate the plugin. {{''__(Required❗)__''}}\\ |
At line 188 changed one line |
!2.2.1 Login Button {{''__(Required)__''}}:\\ |
!2.2.1 Login Button {{''__(Required❗)__''}}:\\ |
At line 193 changed one line |
!2.2.2 Username matching {{''__(Required)__''}}:\\ |
!2.2.2 Username matching {{''__(Required❗)__''}}:\\ |
At line 211 changed one line |
!2.2.5 User Templates {{''__(Required)__''}}:\\ |
!2.2.5 User Templates {{''__(Required❗)__''}}:\\ |
At line 213 changed 2 lines |
__Template Username__: The signed-in user inherits both the settings and the VFS items(as Linked [VFS]). __It must have a value!__\\ |
__Import settings from CrushFTP user__: The signed-in user inherits only the settings from the specified user. __It must have a value!__\\ |
__Template Username__: The signed-in user inherits both the settings and the VFS items(as Linked [VFS]). ⚠️ __It must have a value!__\\ |
__Import settings from CrushFTP user__: The signed-in user inherits only the settings from the specified user. ⚠️ __It must have a value!__\\ |
At line 259 changed one line |
!2.2.7 Custom VFS {{''__(Required Under Specific Conditions)__''}}: |
!2.2.7 Custom VFS {{''__(Required Under Specific Conditions❗)__''}}: |
At line 262 changed one line |
__!!! Important:__ If the CrushOIDC user has no assigned VFS, __authentication will be rejected due to the absence of an assigned [VFS]__. CrushOIDC user can inherit VFS configuration from:\\ |
__⚠️ Important:__ If the CrushOIDC user has no assigned VFS, __authentication will be rejected due to the absence of an assigned [VFS]__. CrushOIDC user can inherit VFS configuration from:\\ |