Add new attachment

Only authorized users are allowed to upload new attachments.

List of attachments

Kind Attachment Name Size Version Date Modified Author Change note
png
app_reg_auth_config.png 160.8 kB 1 05-Dec-2023 05:32 krivacsz
png
app_reg_config.png 173.1 kB 1 05-Dec-2023 05:32 krivacsz
png
b2c_azure_settings.png 184.4 kB 1 05-Dec-2023 05:32 krivacsz
png
b2c_client_id.png 127.2 kB 1 05-Dec-2023 05:32 krivacsz
png
b2c_id_token.png 207.0 kB 1 05-Dec-2023 05:32 krivacsz
png
cognito_client_id_secret.png 66.4 kB 2 05-Dec-2023 05:32 krivacsz
png
cognito_user_pool.png 82.3 kB 2 05-Dec-2023 05:32 krivacsz
png
cognito_user_pool_app_client_1... 244.9 kB 1 05-Dec-2023 05:32 krivacsz
png
cognito_user_pool_app_client_2... 340.5 kB 1 05-Dec-2023 05:32 krivacsz
png
dmz_template_user_internal_por... 94.7 kB 1 05-Dec-2023 05:32 krivacsz
png
g_sign_origin_redirect_url.png 85.4 kB 1 05-Dec-2023 05:32 krivacsz
png
gsign_in_button.png 204.4 kB 1 05-Dec-2023 05:32 krivacsz
png
http_port_oauth_item_settings.... 43.5 kB 1 05-Dec-2023 05:32 krivacsz
png
plugin_settings.png 99.6 kB 7 05-Dec-2023 05:32 krivacsz
png
port_item_settings.png 76.4 kB 2 05-Dec-2023 05:32 krivacsz
png
port_item_settings_b2c.png 105.6 kB 1 05-Dec-2023 05:32 krivacsz
png
port_item_settings_cognito.png 14.1 kB 2 05-Dec-2023 05:32 krivacsz
png
port_item_settings_ms.png 75.3 kB 1 05-Dec-2023 05:32 krivacsz

This page (revision-225) was last changed on 10-Jan-2025 02:20 by krivacsz

This page was created on 05-Dec-2023 05:32 by krivacsz

Only authorized users are allowed to rename pages.

Only authorized users are allowed to delete pages.

Difference between version and

At line 1 changed one line
!!Enterprise Licenses Only\\
\\
!WARNING!!!: Outdated: Switch to the [CrushOIDC] plugin instead!\\
\\
Constraint: __Enterprise Licenses Only__\\
At line 3 changed one line
Currently __Google Sign-In__, __Microsoft Sign-In__, __Azure Active Directory B2C Sign in__ and __Amazon Cognito Sign in__ are supported.\\
Currently __Google Sign-In__([Google Sign in Configuration]), __Microsoft Sign-In__([Microsoft Sign in Configuration]), __Azure Active Directory B2C Sign in__([Azure Active Directory B2C Configuration]) and __Amazon Cognito Sign in__([Amazon Cognito Configuration]) are supported.\\
At line 8 added 5 lines
It only works through __HTTP__ or __HTTPS__ protocol.\\
First configure an HTTP(S) port item with OAuth Sign In configuration.\\
[attachments|http_port_oauth_item_settings.png]\\
\\
!!Supported types:\\
At line 13 removed one line
!5. Plugin Settings\\
At line 22 added 2 lines
!!Plugin Settings\\
\\
At line 16 changed one line
__1.__ __Username matching__ -> It filters the OAuth user name (Google Auth: email address, Microsoft Auth: user principal name). You can put multiple values separated by a comma. Domain filter is allowed to (like *mydomain.com).\\
__1.__ __Username matching__ -> It filters the OAuth user name (Google Auth: email address, Microsoft Auth: user principal name). Allow multiple values separated by a comma. Domain filter is allowed (like *mydomain.com).\\
At line 18 changed one line
__2.__ Allowed authentication types\\
__2.__ __Allowed authentication types__: Google Sign-In, Microsoft Sign-In, Azure Active Directory B2C Sign in and Amazon Cognito Sign. Configure the sign-in button on HTTP(S) server.\\
At line 21 changed 2 lines
__a.__ __Skip OTP processing__ -> CrushOAuth plugin is not compatible with [OTP Settings] as IDP (identity provider) can have its own two-factor authentication. Turning the flag to true will skip OAuth users from CrushFTP's OTP process.\\
__b.__ __Get Cognito user info__ -> Gets more info about Amazon Cognito users (like custom attributes). Only if __Amazon Cognito Sign in__ is enabled.\\
__a.__ __Skip OTP processing__: CrushOAuth plugin is not compatible with [OTP Settings] as IDP (identity provider) can have its own two-factor authentication. Turning the flag to true will skip OAuth users from CrushFTP's OTP process.\\
__b.__ __Remove email suffix from username__: It removes the email suffix of the user name. Like username "my_user@email.com" will be "my_user".\\
__c.__ __Get Cognito user info__: Gets more info about Amazon Cognito users (like custom attributes). It is related only to __Amazon Cognito Sign in__.\\
At line 24 changed one line
__4.__ OAuth only used for Authentication ([User Manager] defines user's access.) -> If users already exist with username of the IDP (identity provider), you can use the CrushOAuth plugin __just for authentication__.\\
__4.__ OAuth only used for Authentication ([User Manager] defines user's access.) -> If users already exist in CrushFTP's User Manager, you can use the CrushOAuth plugin __just for authentication__.\\
At line 73 added 9 lines
!!DMZ\\
\\
__1.__ Configure your OAuth Sign In settings on the DMZ's HTTP(S) port item.\\
__2.__ Configure the same OAuth Sign In settings on the Internal (Main) HTTP(S) port item. This port item must match with the port item configured at the DMZ template user's VFS. (See [DMZ])\\
\\
[attachments|dmz_template_user_internal_port.png]\\
\\
__3.__ Configure the OAuth plugin __only on the Internal (Main) instance__. !!!Do not configure the OAuth plugin on the DMZ too. See __Plugin Settings__ on the current page.\\
\\
Version Date Modified Size Author Changes ... Change note
225 10-Jan-2025 02:20 4.48 kB krivacsz to previous
224 10-Jan-2025 02:19 4.477 kB krivacsz to previous | to last
223 10-Jan-2025 02:17 4.469 kB krivacsz to previous | to last
222 10-Jan-2025 02:17 4.468 kB krivacsz to previous | to last
221 10-Jan-2025 02:17 4.46 kB krivacsz to previous | to last
« This page (revision-225) was last changed on 10-Jan-2025 02:20 by krivacsz
G’day (anonymous guest)
CrushFTP11 | What's New
JSPWiki