diff --git a/services/_includes/adoc/antivirus_configvars.adoc b/services/_includes/adoc/antivirus_configvars.adoc
index b745900a52a..522bf89de21 100644
--- a/services/_includes/adoc/antivirus_configvars.adoc
+++ b/services/_includes/adoc/antivirus_configvars.adoc
@@ -4,7 +4,7 @@
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the antivirus service
[width="100%",cols="~,~,~,~",options="header"]
diff --git a/services/_includes/adoc/app-provider_configvars.adoc b/services/_includes/adoc/app-provider_configvars.adoc
index 72883ddd1f3..d54f1a564aa 100644
--- a/services/_includes/adoc/app-provider_configvars.adoc
+++ b/services/_includes/adoc/app-provider_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the app-provider service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,11 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
|===
endif::[]
@@ -185,8 +180,7 @@ a| [subs=-attributes]
The secret to mint and validate jwt tokens.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/app-provider_deprecation.adoc b/services/_includes/adoc/app-provider_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/app-provider_deprecation.adoc
+++ b/services/_includes/adoc/app-provider_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/app-registry_configvars.adoc b/services/_includes/adoc/app-registry_configvars.adoc
index 6de0efe66ff..8f75dbb0c8b 100644
--- a/services/_includes/adoc/app-registry_configvars.adoc
+++ b/services/_includes/adoc/app-registry_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the app-registry service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,11 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
|===
endif::[]
@@ -176,8 +171,7 @@ a| [subs=-attributes]
The secret to mint and validate jwt tokens.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/app-registry_deprecation.adoc b/services/_includes/adoc/app-registry_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/app-registry_deprecation.adoc
+++ b/services/_includes/adoc/app-registry_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/audit_configvars.adoc b/services/_includes/adoc/audit_configvars.adoc
index 56f304faa19..936914f075c 100644
--- a/services/_includes/adoc/audit_configvars.adoc
+++ b/services/_includes/adoc/audit_configvars.adoc
@@ -4,7 +4,7 @@
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the audit service
[width="100%",cols="~,~,~,~",options="header"]
diff --git a/services/_includes/adoc/auth-basic_configvars.adoc b/services/_includes/adoc/auth-basic_configvars.adoc
index c8805116614..d2a9e9bf433 100644
--- a/services/_includes/adoc/auth-basic_configvars.adoc
+++ b/services/_includes/adoc/auth-basic_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the auth-basic service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,141 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
-
-| LDAP_URI changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_URI
-
-| LDAP_CACERT changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_CACERT
-
-| LDAP_INSECURE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_INSECURE
-
-| LDAP_BIND_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_BIND_DN
-
-| LDAP_USER_BASE_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_BASE_DN
-
-| LDAP_GROUP_BASE_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_BASE_DN
-
-| LDAP_USER_SCOPE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCOPE
-
-| LDAP_GROUP_SCOPE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCOPE
-
-| LDAP_USER_FILTER changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_FILTER
-
-| LDAP_GROUP_FILTER changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_FILTER
-
-| LDAP_USER_OBJECTCLASS changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_OBJECTCLASS
-
-| LDAP_GROUP_OBJECTCLASS changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_OBJECTCLASS
-
-| LDAP_DISABLE_USER_MECHANISM changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_DISABLE_USER_MECHANISM
-
-| LDAP_DISABLED_USERS_GROUP_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_DISABLED_USERS_GROUP_DN
-
-| LDAP_USER_SCHEMA_ID changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_ID
-
-| LDAP_USER_SCHEMA_ID_IS_OCTETSTRING changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING
-
-| LDAP_USER_SCHEMA_MAIL changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_MAIL
-
-| LDAP_USER_SCHEMA_DISPLAYNAME changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_DISPLAYNAME
-
-| LDAP_USER_SCHEMA_USERNAME changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_USERNAME
-
-| LDAP_USER_ENABLED_ATTRIBUTE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_ENABLED_ATTRIBUTE
-
-| LDAP_GROUP_SCHEMA_ID changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_ID
-
-| LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING
-
-| LDAP_GROUP_SCHEMA_MAIL changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_MAIL
-
-| LDAP_GROUP_SCHEMA_DISPLAYNAME changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_DISPLAYNAME
-
-| LDAP_GROUP_SCHEMA_GROUPNAME changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_GROUPNAME
-
-| LDAP_GROUP_SCHEMA_MEMBER changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_MEMBER
|===
endif::[]
@@ -306,8 +171,7 @@ a| [subs=-attributes]
The secret to mint and validate jwt tokens.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -352,9 +216,8 @@ a| [subs=-attributes]
The authentication manager to check if credentials are valid. Supported value is 'ldap'.
a|`OCIS_LDAP_URI` +
-`LDAP_URI` +
`AUTH_BASIC_LDAP_URI` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -363,9 +226,8 @@ a| [subs=-attributes]
URI of the LDAP Server to connect to. Supported URI schemes are 'ldaps://' and 'ldap://'
a|`OCIS_LDAP_CACERT` +
-`LDAP_CACERT` +
`AUTH_BASIC_LDAP_CACERT` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -374,9 +236,8 @@ a| [subs=-attributes]
Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idm.
a|`OCIS_LDAP_INSECURE` +
-`LDAP_INSECURE` +
`AUTH_BASIC_LDAP_INSECURE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++bool ++
a| [subs=-attributes]
@@ -385,9 +246,8 @@ a| [subs=-attributes]
Disable TLS certificate validation for the LDAP connections. Do not set this in production environments.
a|`OCIS_LDAP_BIND_DN` +
-`LDAP_BIND_DN` +
`AUTH_BASIC_LDAP_BIND_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -406,9 +266,8 @@ a| [subs=-attributes]
Password to use for authenticating the 'bind_dn'.
a|`OCIS_LDAP_USER_BASE_DN` +
-`LDAP_USER_BASE_DN` +
`AUTH_BASIC_LDAP_USER_BASE_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -417,9 +276,8 @@ a| [subs=-attributes]
Search base DN for looking up LDAP users.
a|`OCIS_LDAP_GROUP_BASE_DN` +
-`LDAP_GROUP_BASE_DN` +
`AUTH_BASIC_LDAP_GROUP_BASE_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -428,9 +286,8 @@ a| [subs=-attributes]
Search base DN for looking up LDAP groups.
a|`OCIS_LDAP_USER_SCOPE` +
-`LDAP_USER_SCOPE` +
`AUTH_BASIC_LDAP_USER_SCOPE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -439,9 +296,8 @@ a| [subs=-attributes]
LDAP search scope to use when looking up users. Supported values are 'base', 'one' and 'sub'.
a|`OCIS_LDAP_GROUP_SCOPE` +
-`LDAP_GROUP_SCOPE` +
`AUTH_BASIC_LDAP_GROUP_SCOPE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -450,9 +306,8 @@ a| [subs=-attributes]
LDAP search scope to use when looking up groups. Supported values are 'base', 'one' and 'sub'.
a|`OCIS_LDAP_USER_FILTER` +
-`LDAP_USER_FILTER` +
`AUTH_BASIC_LDAP_USER_FILTER` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -461,9 +316,8 @@ a| [subs=-attributes]
LDAP filter to add to the default filters for user search like '(objectclass=ownCloud)'.
a|`OCIS_LDAP_GROUP_FILTER` +
-`LDAP_GROUP_FILTER` +
`AUTH_BASIC_LDAP_GROUP_FILTER` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -472,9 +326,8 @@ a| [subs=-attributes]
LDAP filter to add to the default filters for group searches.
a|`OCIS_LDAP_USER_OBJECTCLASS` +
-`LDAP_USER_OBJECTCLASS` +
`AUTH_BASIC_LDAP_USER_OBJECTCLASS` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -483,9 +336,8 @@ a| [subs=-attributes]
The object class to use for users in the default user search filter ('inetOrgPerson').
a|`OCIS_LDAP_GROUP_OBJECTCLASS` +
-`LDAP_GROUP_OBJECTCLASS` +
`AUTH_BASIC_LDAP_GROUP_OBJECTCLASS` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -515,9 +367,8 @@ a| [subs=-attributes]
The identity provider value to set in the userids of the CS3 user objects for users returned by this user provider.
a|`OCIS_LDAP_DISABLE_USER_MECHANISM` +
-`LDAP_DISABLE_USER_MECHANISM` +
`AUTH_BASIC_DISABLE_USER_MECHANISM` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -526,9 +377,8 @@ a| [subs=-attributes]
An option to control the behavior for disabling users. Valid options are 'none', 'attribute' and 'group'. If set to 'group', disabling a user via API will add the user to the configured group for disabled users, if set to 'attribute' this will be done in the ldap user entry, if set to 'none' the disable request is not processed.
a|`OCIS_LDAP_DISABLED_USERS_GROUP_DN` +
-`LDAP_DISABLED_USERS_GROUP_DN` +
`AUTH_BASIC_DISABLED_USERS_GROUP_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -537,9 +387,8 @@ a| [subs=-attributes]
The distinguished name of the group to which added users will be classified as disabled when 'disable_user_mechanism' is set to 'group'.
a|`OCIS_LDAP_USER_SCHEMA_ID` +
-`LDAP_USER_SCHEMA_ID` +
`AUTH_BASIC_LDAP_USER_SCHEMA_ID` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -548,9 +397,8 @@ a| [subs=-attributes]
LDAP Attribute to use as the unique ID for users. This should be a stable globally unique ID like a UUID.
a|`OCIS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING` +
-`LDAP_USER_SCHEMA_ID_IS_OCTETSTRING` +
`AUTH_BASIC_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++bool ++
a| [subs=-attributes]
@@ -559,9 +407,8 @@ a| [subs=-attributes]
Set this to true if the defined 'ID' attribute for users is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the user IDs.
a|`OCIS_LDAP_USER_SCHEMA_MAIL` +
-`LDAP_USER_SCHEMA_MAIL` +
`AUTH_BASIC_LDAP_USER_SCHEMA_MAIL` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -570,9 +417,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the email address of users.
a|`OCIS_LDAP_USER_SCHEMA_DISPLAYNAME` +
-`LDAP_USER_SCHEMA_DISPLAYNAME` +
`AUTH_BASIC_LDAP_USER_SCHEMA_DISPLAYNAME` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -581,9 +427,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the displayname of users.
a|`OCIS_LDAP_USER_SCHEMA_USERNAME` +
-`LDAP_USER_SCHEMA_USERNAME` +
`AUTH_BASIC_LDAP_USER_SCHEMA_USERNAME` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -592,9 +437,8 @@ a| [subs=-attributes]
LDAP Attribute to use for username of users.
a|`OCIS_LDAP_USER_ENABLED_ATTRIBUTE` +
-`LDAP_USER_ENABLED_ATTRIBUTE` +
`AUTH_BASIC_LDAP_USER_ENABLED_ATTRIBUTE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -603,9 +447,8 @@ a| [subs=-attributes]
LDAP attribute to use as a flag telling if the user is enabled or disabled.
a|`OCIS_LDAP_GROUP_SCHEMA_ID` +
-`LDAP_GROUP_SCHEMA_ID` +
`AUTH_BASIC_LDAP_GROUP_SCHEMA_ID` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -614,9 +457,8 @@ a| [subs=-attributes]
LDAP Attribute to use as the unique id for groups. This should be a stable globally unique id (e.g. a UUID).
a|`OCIS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING` +
-`LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING` +
`AUTH_BASIC_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++bool ++
a| [subs=-attributes]
@@ -625,9 +467,8 @@ a| [subs=-attributes]
Set this to true if the defined 'id' attribute for groups is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the group IDs.
a|`OCIS_LDAP_GROUP_SCHEMA_MAIL` +
-`LDAP_GROUP_SCHEMA_MAIL` +
`AUTH_BASIC_LDAP_GROUP_SCHEMA_MAIL` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -636,9 +477,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the email address of groups (can be empty).
a|`OCIS_LDAP_GROUP_SCHEMA_DISPLAYNAME` +
-`LDAP_GROUP_SCHEMA_DISPLAYNAME` +
`AUTH_BASIC_LDAP_GROUP_SCHEMA_DISPLAYNAME` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -647,9 +487,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the displayname of groups (often the same as groupname attribute).
a|`OCIS_LDAP_GROUP_SCHEMA_GROUPNAME` +
-`LDAP_GROUP_SCHEMA_GROUPNAME` +
`AUTH_BASIC_LDAP_GROUP_SCHEMA_GROUPNAME` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -658,9 +497,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the name of groups.
a|`OCIS_LDAP_GROUP_SCHEMA_MEMBER` +
-`LDAP_GROUP_SCHEMA_MEMBER` +
`AUTH_BASIC_LDAP_GROUP_SCHEMA_MEMBER` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/auth-basic_deprecation.adoc b/services/_includes/adoc/auth-basic_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/auth-basic_deprecation.adoc
+++ b/services/_includes/adoc/auth-basic_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/auth-bearer_configvars.adoc b/services/_includes/adoc/auth-bearer_configvars.adoc
index 81d1a813166..ed9d5a76e3f 100644
--- a/services/_includes/adoc/auth-bearer_configvars.adoc
+++ b/services/_includes/adoc/auth-bearer_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the auth-bearer service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,11 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
|===
endif::[]
@@ -176,8 +171,7 @@ a| [subs=-attributes]
The secret to mint and validate jwt tokens.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/auth-bearer_deprecation.adoc b/services/_includes/adoc/auth-bearer_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/auth-bearer_deprecation.adoc
+++ b/services/_includes/adoc/auth-bearer_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/auth-machine_configvars.adoc b/services/_includes/adoc/auth-machine_configvars.adoc
index 8503bcc1fae..457fc5990bf 100644
--- a/services/_includes/adoc/auth-machine_configvars.adoc
+++ b/services/_includes/adoc/auth-machine_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the auth-machine service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,11 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
|===
endif::[]
@@ -176,8 +171,7 @@ a| [subs=-attributes]
The secret to mint and validate jwt tokens.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/auth-machine_deprecation.adoc b/services/_includes/adoc/auth-machine_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/auth-machine_deprecation.adoc
+++ b/services/_includes/adoc/auth-machine_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/eventhistory_configvars.adoc b/services/_includes/adoc/eventhistory_configvars.adoc
index 85d49e24801..10d5c0658bd 100644
--- a/services/_includes/adoc/eventhistory_configvars.adoc
+++ b/services/_includes/adoc/eventhistory_configvars.adoc
@@ -4,7 +4,7 @@
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the eventhistory service
[width="100%",cols="~,~,~,~",options="header"]
diff --git a/services/_includes/adoc/frontend_configvars.adoc b/services/_includes/adoc/frontend_configvars.adoc
index 4f82085452e..5d4ac5b8d0f 100644
--- a/services/_includes/adoc/frontend_configvars.adoc
+++ b/services/_includes/adoc/frontend_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the frontend service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,21 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| STORAGE_TRANSFER_SECRET changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_TRANSFER_SECRET
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
-
-| FRONTEND_OCS_HOME_NAMESPACE changing name for consistency
-| 3.0
-| 4.0.0
-| FRONTEND_OCS_PERSONAL_NAMESPACE
|===
endif::[]
@@ -225,8 +210,7 @@ a| [subs=-attributes]
Allow credentials for CORS.See following chapter for more details: *Access-Control-Allow-Credentials* at \https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Allow-Credentials.
a|`OCIS_TRANSFER_SECRET` +
-`STORAGE_TRANSFER_SECRET` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -245,8 +229,7 @@ a| [subs=-attributes]
The secret to mint and validate jwt tokens.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -486,8 +469,7 @@ a| [subs=-attributes]
Path prefix for shares as part of an ocis resource. Note that the path must start with '/'.
a|`FRONTEND_OCS_PERSONAL_NAMESPACE` +
-`FRONTEND_OCS_HOME_NAMESPACE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/frontend_deprecation.adoc b/services/_includes/adoc/frontend_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/frontend_deprecation.adoc
+++ b/services/_includes/adoc/frontend_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/gateway_configvars.adoc b/services/_includes/adoc/gateway_configvars.adoc
index 5b6385396f4..5ab0b707815 100644
--- a/services/_includes/adoc/gateway_configvars.adoc
+++ b/services/_includes/adoc/gateway_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the gateway service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,16 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
-
-| STORAGE_TRANSFER_SECRET changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_TRANSFER_SECRET
|===
endif::[]
@@ -181,8 +171,7 @@ a| [subs=-attributes]
The secret to mint and validate jwt tokens.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -245,8 +234,7 @@ a| [subs=-attributes]
Disable creation of the home space on login.
a|`OCIS_TRANSFER_SECRET` +
-`STORAGE_TRANSFER_SECRET` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/gateway_deprecation.adoc b/services/_includes/adoc/gateway_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/gateway_deprecation.adoc
+++ b/services/_includes/adoc/gateway_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/global_configvars.adoc b/services/_includes/adoc/global_configvars.adoc
index 2ac50814a87..b9b5b0609ca 100644
--- a/services/_includes/adoc/global_configvars.adoc
+++ b/services/_includes/adoc/global_configvars.adoc
@@ -33,25 +33,7 @@ a| [subs=-attributes]
++false ++
a| [subs=-attributes]
-Flag to enable or disable the creation of the demo users.
-
-a| `LDAP_BIND_DN`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/idp.adoc[idp] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++uid=libregraph,ou=sysusers,o=libregraph-idm ++
-
-a| [subs=-attributes]
-LDAP DN to use for simple bind authentication with the target LDAP server.
+The default role assignments the demo users should be setup.
a| `LDAP_BIND_PASSWORD`
@@ -71,449 +53,6 @@ a| [subs=-attributes]
a| [subs=-attributes]
Password to use for authenticating the 'bind_dn'.
-a| `LDAP_CACERT`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/idp.adoc[idp] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++~/.ocis/idm/ldap.crt ++
-
-a| [subs=-attributes]
-Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idm.
-
-a| `LDAP_DISABLED_USERS_GROUP_DN`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++cn=DisabledUsersGroup,ou=groups,o=libregraph-idm ++
-
-a| [subs=-attributes]
-The distinguished name of the group to which added users will be classified as disabled when 'disable_user_mechanism' is set to 'group'.
-
-a| `LDAP_DISABLE_USER_MECHANISM`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++attribute ++
-
-a| [subs=-attributes]
-An option to control the behavior for disabling users. Supported options are 'none', 'attribute' and 'group'. If set to 'group', disabling a user via API will add the user to the configured group for disabled users, if set to 'attribute' this will be done in the ldap user entry, if set to 'none' the disable request is not processed. Default is 'attribute'.
-
-a| `LDAP_GROUP_BASE_DN`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++ou=groups,o=libregraph-idm ++
-
-a| [subs=-attributes]
-Search base DN for looking up LDAP groups.
-
-a| `LDAP_GROUP_FILTER`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++ ++
-
-a| [subs=-attributes]
-LDAP filter to add to the default filters for group searches.
-
-a| `LDAP_GROUP_OBJECTCLASS`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++groupOfNames ++
-
-a| [subs=-attributes]
-The object class to use for groups in the default group search filter ('groupOfNames').
-
-a| `LDAP_GROUP_SCHEMA_DISPLAYNAME`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++cn ++
-
-a| [subs=-attributes]
-LDAP Attribute to use for the displayname of groups (often the same as groupname attribute).
-
-a| `LDAP_GROUP_SCHEMA_GROUPNAME`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++cn ++
-
-a| [subs=-attributes]
-LDAP Attribute to use for the name of groups.
-
-a| `LDAP_GROUP_SCHEMA_ID`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++owncloudUUID ++
-
-a| [subs=-attributes]
-LDAP Attribute to use as the unique id for groups. This should be a stable globally unique ID like a UUID.
-
-a| `LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++bool ++
-
-a| [subs=-attributes]
-++false ++
-
-a| [subs=-attributes]
-Set this to true if the defined 'id' attribute for groups is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the group ID's.
-
-a| `LDAP_GROUP_SCHEMA_MAIL`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++mail ++
-
-a| [subs=-attributes]
-LDAP Attribute to use for the email address of groups (can be empty).
-
-a| `LDAP_GROUP_SCHEMA_MEMBER`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++member ++
-
-a| [subs=-attributes]
-LDAP Attribute that is used for group members.
-
-a| `LDAP_GROUP_SCOPE`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++sub ++
-
-a| [subs=-attributes]
-LDAP search scope to use when looking up groups. Supported scopes are 'base', 'one' and 'sub'.
-
-a| `LDAP_INSECURE`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/idp.adoc[idp] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++bool ++
-
-a| [subs=-attributes]
-++false ++
-
-a| [subs=-attributes]
-Disable TLS certificate validation for the LDAP connections. Do not set this in production environments.
-
-a| `LDAP_URI`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/idp.adoc[idp] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++ldaps://localhost:9235 ++
-
-a| [subs=-attributes]
-URI of the LDAP Server to connect to. Supported URI schemes are 'ldaps://' and 'ldap://'
-
-a| `LDAP_USER_BASE_DN`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/idp.adoc[idp] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++ou=users,o=libregraph-idm ++
-
-a| [subs=-attributes]
-Search base DN for looking up LDAP users.
-
-a| `LDAP_USER_ENABLED_ATTRIBUTE`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/idp.adoc[idp] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++ownCloudUserEnabled ++
-
-a| [subs=-attributes]
-LDAP Attribute to use as a flag telling if the user is enabled or disabled.
-
-a| `LDAP_USER_FILTER`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/idp.adoc[idp] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++ ++
-
-a| [subs=-attributes]
-LDAP filter to add to the default filters for user search like '(objectclass=ownCloud)'.
-
-a| `LDAP_USER_OBJECTCLASS`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/idp.adoc[idp] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++inetOrgPerson ++
-
-a| [subs=-attributes]
-The object class to use for users in the default user search filter ('inetOrgPerson').
-
-a| `LDAP_USER_SCHEMA_DISPLAYNAME`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++displayname ++
-
-a| [subs=-attributes]
-LDAP Attribute to use for the displayname of users.
-
-a| `LDAP_USER_SCHEMA_ID`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/idp.adoc[idp] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++owncloudUUID ++
-
-a| [subs=-attributes]
-LDAP Attribute to use as the unique ID for users. This should be a stable globally unique ID like a UUID.
-
-a| `LDAP_USER_SCHEMA_ID_IS_OCTETSTRING`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++bool ++
-
-a| [subs=-attributes]
-++false ++
-
-a| [subs=-attributes]
-Set this to true if the defined 'ID' attribute for users is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the user ID's.
-
-a| `LDAP_USER_SCHEMA_MAIL`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/idp.adoc[idp] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++mail ++
-
-a| [subs=-attributes]
-LDAP Attribute to use for the email address of users.
-
-a| `LDAP_USER_SCHEMA_USERNAME`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/idp.adoc[idp] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++uid ++
-
-a| [subs=-attributes]
-LDAP Attribute to use for username of users.
-
-a| `LDAP_USER_SCHEMA_USER_TYPE`
-
-a| [subs=attributes+]
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++ownCloudUserType ++
-
-a| [subs=-attributes]
-LDAP Attribute to distinguish between 'Member' and 'Guest' users. Default is 'ownCloudUserType'.
-
-a| `LDAP_USER_SCOPE`
-
-a| [subs=attributes+]
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/idp.adoc[idp] +
-* xref:{s-path}/users.adoc[users] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++sub ++
-
-a| [subs=-attributes]
-LDAP search scope to use when looking up users. Supported scopes are 'base', 'one' and 'sub'.
-
a| `OCIS_ADMIN_USER_ID`
a| [subs=attributes+]
@@ -528,7 +67,7 @@ a| [subs=-attributes]
++ ++
a| [subs=-attributes]
-ID of the user who collects all necessary information for deletion. Consider that the UUID can be encoded in some LDAP deployment configurations like in .ldif files. These need to be decoded beforehand.
+ID of the user that should receive admin privileges. Consider that the UUID can be encoded in some LDAP deployment configurations like in .ldif files. These need to be decoded beforehand.
a| `OCIS_ASYNC_UPLOADS`
@@ -611,7 +150,7 @@ a| [subs=-attributes]
++string ++
a| [subs=-attributes]
-++noop ++
+++memory ++
a| [subs=-attributes]
The type of the cache store. Supported values are: 'memory', 'ocmem', 'etcd', 'redis', 'redis-sentinel', 'nats-js', 'noop'. See the text description for details.
@@ -659,10 +198,10 @@ a| [subs=-attributes]
++Duration ++
a| [subs=-attributes]
-++5m0s ++
+++10s ++
a| [subs=-attributes]
-Default time to live for user info in the user info cache. Only applied when access tokens has no expiration. The duration can be set as number followed by a unit identifier like s, m or h. Defaults to '300s' (300 seconds).
+Default time to live for user info in the user info cache. Only applied when access tokens has no expiration. The duration can be set as number followed by a unit identifier like s, m or h. Defaults to '10s' (10 seconds).
a| `OCIS_CORS_ALLOW_CREDENTIALS`
@@ -682,7 +221,7 @@ a| [subs=-attributes]
++bool ++
a| [subs=-attributes]
-++true ++
+++false ++
a| [subs=-attributes]
Allow credentials for CORS.See following chapter for more details: *Access-Control-Allow-Credentials* at \https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Allow-Credentials.
@@ -705,7 +244,7 @@ a| [subs=-attributes]
++[]string ++
a| [subs=-attributes]
-++[Authorization Origin Content-Type Accept X-Requested-With X-Request-Id Cache-Control] ++
+++[] ++
a| [subs=-attributes]
A blank or comma-separated list of allowed CORS headers. See following chapter for more details: *Access-Control-Request-Headers* at \https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Request-Headers.
@@ -728,7 +267,7 @@ a| [subs=-attributes]
++[]string ++
a| [subs=-attributes]
-++[GET POST PUT PATCH DELETE OPTIONS] ++
+++[] ++
a| [subs=-attributes]
A comma-separated list of allowed CORS methods. See following chapter for more details: *Access-Control-Request-Method* at \https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Request-Method
@@ -799,7 +338,7 @@ a| [subs=-attributes]
++false ++
a| [subs=-attributes]
-Set this option to 'true' to disable rendering of thumbnails triggered via webdav access. Note that when disabled, all access to preview related webdav paths will return a 404.
+Set this option to 'true' to disable previews in all the different web file listing views. This can speed up file listings in folders with many files. The only list view that is not affected by this setting is the trash bin, as it does not allow previewing at all.
a| `OCIS_EDITION`
@@ -1079,7 +618,7 @@ a| [subs=-attributes]
++false ++
a| [subs=-attributes]
-Whether to verify the server TLS certificates.
+Allow insecure connections to the OIDC issuer.
a| `OCIS_JWT_SECRET`
@@ -1146,7 +685,7 @@ a| [subs=-attributes]
++ ++
a| [subs=-attributes]
-The client id to authenticate with keycloak.
+The client ID to authenticate with keycloak.
a| `OCIS_KEYCLOAK_CLIENT_REALM`
@@ -1221,7 +760,7 @@ a| [subs=-attributes]
++string ++
a| [subs=-attributes]
-++uid=libregraph,ou=sysusers,o=libregraph-idm ++
+++uid=idp,ou=sysusers,o=libregraph-idm ++
a| [subs=-attributes]
LDAP DN to use for simple bind authentication with the target LDAP server.
@@ -1242,7 +781,7 @@ a| [subs=-attributes]
++~/.ocis/idm/ldap.crt ++
a| [subs=-attributes]
-Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idm.
+Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idp.
a| `OCIS_LDAP_DISABLED_USERS_GROUP_DN`
@@ -1274,7 +813,7 @@ a| [subs=-attributes]
++attribute ++
a| [subs=-attributes]
-An option to control the behavior for disabling users. Supported options are 'none', 'attribute' and 'group'. If set to 'group', disabling a user via API will add the user to the configured group for disabled users, if set to 'attribute' this will be done in the ldap user entry, if set to 'none' the disable request is not processed. Default is 'attribute'.
+An option to control the behavior for disabling users. Valid options are 'none', 'attribute' and 'group'. If set to 'group', disabling a user via API will add the user to the configured group for disabled users, if set to 'attribute' this will be done in the ldap user entry, if set to 'none' the disable request is not processed.
a| `OCIS_LDAP_GROUP_BASE_DN`
@@ -1372,10 +911,10 @@ a| [subs=-attributes]
++string ++
a| [subs=-attributes]
-++owncloudUUID ++
+++ownclouduuid ++
a| [subs=-attributes]
-LDAP Attribute to use as the unique id for groups. This should be a stable globally unique ID like a UUID.
+LDAP Attribute to use as the unique id for groups. This should be a stable globally unique id (e.g. a UUID).
a| `OCIS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING`
@@ -1392,7 +931,7 @@ a| [subs=-attributes]
++false ++
a| [subs=-attributes]
-Set this to true if the defined 'ID' attribute for groups is of the 'OCTETSTRING' syntax. This is required when using the 'objectGUID' attribute of Active Directory for the group ID's.
+Set this to true if the defined 'id' attribute for groups is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the group IDs.
a| `OCIS_LDAP_GROUP_SCHEMA_MAIL`
@@ -1442,7 +981,7 @@ a| [subs=-attributes]
++sub ++
a| [subs=-attributes]
-LDAP search scope to use when looking up groups. Supported scopes are 'base', 'one' and 'sub'.
+LDAP search scope to use when looking up groups. Supported values are 'base', 'one' and 'sub'.
a| `OCIS_LDAP_INSECURE`
@@ -1493,7 +1032,7 @@ a| [subs=-attributes]
++ldaps://localhost:9235 ++
a| [subs=-attributes]
-URI of the LDAP Server to connect to. Supported URI schemes are 'ldaps://' and 'ldap://'
+Url of the LDAP service to use as IDP.
a| `OCIS_LDAP_USER_BASE_DN`
@@ -1564,7 +1103,7 @@ a| [subs=-attributes]
++inetOrgPerson ++
a| [subs=-attributes]
-The object class to use for users in the default user search filter ('inetOrgPerson').
+LDAP User ObjectClass like 'inetOrgPerson'.
a| `OCIS_LDAP_USER_SCHEMA_DISPLAYNAME`
@@ -1595,10 +1134,10 @@ a| [subs=-attributes]
++string ++
a| [subs=-attributes]
-++owncloudUUID ++
+++ownCloudUUID ++
a| [subs=-attributes]
-LDAP Attribute to use as the unique ID for users. This should be a stable globally unique ID like a UUID.
+LDAP User UUID attribute like 'uid'.
a| `OCIS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING`
@@ -1615,7 +1154,7 @@ a| [subs=-attributes]
++false ++
a| [subs=-attributes]
-Set this to true if the defined 'ID' attribute for users is of the 'OCTETSTRING' syntax. This is required when using the 'objectGUID' attribute of Active Directory for the user ID's.
+Set this to true if the defined 'ID' attribute for users is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the user IDs.
a| `OCIS_LDAP_USER_SCHEMA_MAIL`
@@ -1633,7 +1172,7 @@ a| [subs=-attributes]
++mail ++
a| [subs=-attributes]
-LDAP Attribute to use for the email address of users.
+LDAP User email attribute like 'mail'.
a| `OCIS_LDAP_USER_SCHEMA_USERNAME`
@@ -1648,10 +1187,10 @@ a| [subs=-attributes]
++string ++
a| [subs=-attributes]
-++uid ++
+++displayName ++
a| [subs=-attributes]
-LDAP Attribute to use for username of users.
+LDAP User name attribute like 'displayName'.
a| `OCIS_LDAP_USER_SCHEMA_USER_TYPE`
@@ -1903,7 +1442,7 @@ a| [subs=-attributes]
++ ++
a| [subs=-attributes]
-Machine auth API key used to validate internal requests necessary to access resources from other services.
+Machine auth API key used to validate internal requests necessary for the access to resources from other services.
a| `OCIS_OIDC_ISSUER`
@@ -1985,7 +1524,7 @@ a| [subs=-attributes]
++Duration ++
a| [subs=-attributes]
-++336h0m0s ++
+++0s ++
a| [subs=-attributes]
Time to live for events in the store. The duration can be set as number followed by a unit identifier like s, m or h. Defaults to '336h' (2 weeks).
@@ -2040,7 +1579,7 @@ a| [subs=-attributes]
++false ++
a| [subs=-attributes]
-Set this to true if you want to enforce passwords on Uploader, Editor or Contributor shares.
+Set this to true if you want to enforce passwords on Uploader, Editor or Contributor shares. If not using the global OCIS_SHARING_PUBLIC_WRITEABLE_SHARE_MUST_HAVE_PASSWORD, you must define the FRONTEND_OCS_PUBLIC_WRITEABLE_SHARE_MUST_HAVE_PASSWORD in the frontend service.
a| `OCIS_SPACES_MAX_QUOTA`
@@ -2055,7 +1594,7 @@ a| [subs=-attributes]
++0 ++
a| [subs=-attributes]
-Set a global max quota for spaces in bytes. A value of 0 equals unlimited. If not using the global OCIS_SPACES_MAX_QUOTA, you must define the FRONTEND_MAX_QUOTA in the frontend service.
+Set the global max quota value in bytes. A value of 0 equals unlimited. The value is provided via capabilities.
a| `OCIS_SYSTEM_USER_API_KEY`
@@ -2318,7 +1857,7 @@ a| [subs=-attributes]
++ ++
a| [subs=-attributes]
-The storage transfer secret.
+Transfer secret for signing file up- and download requests.
a| `OCIS_URL`
@@ -2346,62 +1885,10 @@ a| [subs=-attributes]
++string ++
a| [subs=-attributes]
-++https://127.0.0.1:9200 ++
-
-a| [subs=-attributes]
-URL, where oCIS is reachable for users.
-
-a| `REVA_GATEWAY`
-
-a| [subs=attributes+]
-* xref:{s-path}/app-provider.adoc[app-provider] +
-* xref:{s-path}/app-registry.adoc[app-registry] +
-* xref:{s-path}/auth-basic.adoc[auth-basic] +
-* xref:{s-path}/auth-bearer.adoc[auth-bearer] +
-* xref:{s-path}/auth-machine.adoc[auth-machine] +
-* xref:{s-path}/frontend.adoc[frontend] +
-* xref:{s-path}/gateway.adoc[gateway] +
-* xref:{s-path}/graph.adoc[graph] +
-* xref:{s-path}/groups.adoc[groups] +
-* xref:{s-path}/idp.adoc[idp] +
-* xref:{s-path}/notifications.adoc[notifications] +
-* xref:{s-path}/ocdav.adoc[ocdav] +
-* xref:{s-path}/policies.adoc[policies] +
-* xref:{s-path}/proxy.adoc[proxy] +
-* xref:{s-path}/search.adoc[search] +
-* xref:{s-path}/sharing.adoc[sharing] +
-* xref:{s-path}/storage-publiclink.adoc[storage-publiclink] +
-* xref:{s-path}/storage-shares.adoc[storage-shares] +
-* xref:{s-path}/storage-system.adoc[storage-system] +
-* xref:{s-path}/storage-users.adoc[storage-users] +
-* xref:{s-path}/thumbnails.adoc[thumbnails] +
-* xref:{s-path}/userlog.adoc[userlog] +
-* xref:{s-path}/users.adoc[users] +
-* xref:{s-path}/webdav.adoc[webdav] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++com.owncloud.api.gateway ++
-
-a| [subs=-attributes]
-The CS3 gateway endpoint.
-
-a| `STORAGE_TRANSFER_SECRET`
-
-a| [subs=attributes+]
-* xref:{s-path}/frontend.adoc[frontend] +
-* xref:{s-path}/gateway.adoc[gateway] +
-
-a| [subs=-attributes]
-++string ++
-
-a| [subs=-attributes]
-++ ++
+++https://localhost:9200 ++
a| [subs=-attributes]
-The storage transfer secret.
+URL of the OIDC issuer. It defaults to URL of the builtin IDP.
a| `STORAGE_USERS_ASYNC_PROPAGATOR_PROPAGATION_DELAY`
@@ -2418,21 +1905,6 @@ a| [subs=-attributes]
a| [subs=-attributes]
The delay in seconds between a change made to a tree and the propagation start on treesize and treetime. Multiple propagations are computed to a single one.
-a| `STORAGE_USERS_OCIS_ASYNC_UPLOADS`
-
-a| [subs=attributes+]
-* xref:{s-path}/search.adoc[search] +
-* xref:{s-path}/storage-users.adoc[storage-users] +
-
-a| [subs=-attributes]
-++bool ++
-
-a| [subs=-attributes]
-++false ++
-
-a| [subs=-attributes]
-Enable asynchronous file uploads.
-
a| `STORAGE_USERS_PERMISSION_ENDPOINT`
a| [subs=attributes+]
diff --git a/services/_includes/adoc/graph_configvars.adoc b/services/_includes/adoc/graph_configvars.adoc
index 9b5e23914a1..b9824081dc5 100644
--- a/services/_includes/adoc/graph_configvars.adoc
+++ b/services/_includes/adoc/graph_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the graph service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,121 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
-
-| LDAP_URI changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_URI
-
-| LDAP_CACERT changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_CACERT
-
-| LDAP_INSECURE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_INSECURE
-
-| LDAP_BIND_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_BIND_DN
-
-| LDAP_USER_BASE_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_BASE_DN
-
-| LDAP_USER_SCOPE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCOPE
-
-| LDAP_USER_FILTER changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_FILTER
-
-| LDAP_USER_OBJECTCLASS changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_OBJECTCLASS
-
-| LDAP_USER_SCHEMA_MAIL changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_MAIL
-
-| LDAP_USER_SCHEMA_USERNAME changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_USERNAME
-
-| LDAP_USER_SCHEMA_ID changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_ID
-
-| LDAP_USER_SCHEMA_USER_TYPE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_USER_TYPE
-
-| LDAP_USER_ENABLED_ATTRIBUTE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_ENABLED_ATTRIBUTE
-
-| LDAP_DISABLE_USER_MECHANISM changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_DISABLE_USER_MECHANISM
-
-| LDAP_DISABLED_USERS_GROUP_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_DISABLED_USERS_GROUP_DN
-
-| LDAP_GROUP_BASE_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_BASE_DN
-
-| LDAP_GROUP_SCOPE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCOPE
-
-| LDAP_GROUP_FILTER changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_FILTER
-
-| LDAP_GROUP_OBJECTCLASS changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_OBJECTCLASS
-
-| LDAP_GROUP_SCHEMA_GROUPNAME changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_GROUPNAME
-
-| LDAP_GROUP_SCHEMA_MEMBER changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_MEMBER
-
-| LDAP_GROUP_SCHEMA_ID changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_ID
|===
endif::[]
@@ -437,8 +322,7 @@ a| [subs=-attributes]
Whether to assign newly created users the default role 'User'. Set this to 'false' if you want to assign roles manually, or if the role assignment should happen at first login. Set this to 'true' (the default) to assign the role 'User' when creating a new user.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -557,9 +441,8 @@ a| [subs=-attributes]
The user identity backend to use. Supported backend types are 'ldap' and 'cs3'.
a|`OCIS_LDAP_URI` +
-`LDAP_URI` +
`GRAPH_LDAP_URI` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -568,9 +451,8 @@ a| [subs=-attributes]
URI of the LDAP Server to connect to. Supported URI schemes are 'ldaps://' and 'ldap://'
a|`OCIS_LDAP_CACERT` +
-`LDAP_CACERT` +
`GRAPH_LDAP_CACERT` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -579,9 +461,8 @@ a| [subs=-attributes]
Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idm.
a|`OCIS_LDAP_INSECURE` +
-`LDAP_INSECURE` +
`GRAPH_LDAP_INSECURE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++bool ++
a| [subs=-attributes]
@@ -590,9 +471,8 @@ a| [subs=-attributes]
Disable TLS certificate validation for the LDAP connections. Do not set this in production environments.
a|`OCIS_LDAP_BIND_DN` +
-`LDAP_BIND_DN` +
`GRAPH_LDAP_BIND_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -648,9 +528,8 @@ a| [subs=-attributes]
Signals that the server has the refint plugin enabled, which makes some actions not needed.
a|`OCIS_LDAP_USER_BASE_DN` +
-`LDAP_USER_BASE_DN` +
`GRAPH_LDAP_USER_BASE_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -659,9 +538,8 @@ a| [subs=-attributes]
Search base DN for looking up LDAP users.
a|`OCIS_LDAP_USER_SCOPE` +
-`LDAP_USER_SCOPE` +
`GRAPH_LDAP_USER_SCOPE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -670,9 +548,8 @@ a| [subs=-attributes]
LDAP search scope to use when looking up users. Supported scopes are 'base', 'one' and 'sub'.
a|`OCIS_LDAP_USER_FILTER` +
-`LDAP_USER_FILTER` +
`GRAPH_LDAP_USER_FILTER` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -681,9 +558,8 @@ a| [subs=-attributes]
LDAP filter to add to the default filters for user search like '(objectclass=ownCloud)'.
a|`OCIS_LDAP_USER_OBJECTCLASS` +
-`LDAP_USER_OBJECTCLASS` +
`GRAPH_LDAP_USER_OBJECTCLASS` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -692,9 +568,8 @@ a| [subs=-attributes]
The object class to use for users in the default user search filter ('inetOrgPerson').
a|`OCIS_LDAP_USER_SCHEMA_MAIL` +
-`LDAP_USER_SCHEMA_MAIL` +
`GRAPH_LDAP_USER_EMAIL_ATTRIBUTE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -713,9 +588,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the displayname of users.
a|`OCIS_LDAP_USER_SCHEMA_USERNAME` +
-`LDAP_USER_SCHEMA_USERNAME` +
`GRAPH_LDAP_USER_NAME_ATTRIBUTE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -724,9 +598,8 @@ a| [subs=-attributes]
LDAP Attribute to use for username of users.
a|`OCIS_LDAP_USER_SCHEMA_ID` +
-`LDAP_USER_SCHEMA_ID` +
`GRAPH_LDAP_USER_UID_ATTRIBUTE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -745,9 +618,8 @@ a| [subs=-attributes]
Set this to true if the defined 'ID' attribute for users is of the 'OCTETSTRING' syntax. This is required when using the 'objectGUID' attribute of Active Directory for the user ID's.
a|`OCIS_LDAP_USER_SCHEMA_USER_TYPE` +
-`LDAP_USER_SCHEMA_USER_TYPE` +
`GRAPH_LDAP_USER_TYPE_ATTRIBUTE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -756,9 +628,8 @@ a| [subs=-attributes]
LDAP Attribute to distinguish between 'Member' and 'Guest' users. Default is 'ownCloudUserType'.
a|`OCIS_LDAP_USER_ENABLED_ATTRIBUTE` +
-`LDAP_USER_ENABLED_ATTRIBUTE` +
`GRAPH_USER_ENABLED_ATTRIBUTE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -767,9 +638,8 @@ a| [subs=-attributes]
LDAP Attribute to use as a flag telling if the user is enabled or disabled.
a|`OCIS_LDAP_DISABLE_USER_MECHANISM` +
-`LDAP_DISABLE_USER_MECHANISM` +
`GRAPH_DISABLE_USER_MECHANISM` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -778,9 +648,8 @@ a| [subs=-attributes]
An option to control the behavior for disabling users. Supported options are 'none', 'attribute' and 'group'. If set to 'group', disabling a user via API will add the user to the configured group for disabled users, if set to 'attribute' this will be done in the ldap user entry, if set to 'none' the disable request is not processed. Default is 'attribute'.
a|`OCIS_LDAP_DISABLED_USERS_GROUP_DN` +
-`LDAP_DISABLED_USERS_GROUP_DN` +
`GRAPH_DISABLED_USERS_GROUP_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -789,9 +658,8 @@ a| [subs=-attributes]
The distinguished name of the group to which added users will be classified as disabled when 'disable_user_mechanism' is set to 'group'.
a|`OCIS_LDAP_GROUP_BASE_DN` +
-`LDAP_GROUP_BASE_DN` +
`GRAPH_LDAP_GROUP_BASE_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -809,9 +677,8 @@ a| [subs=-attributes]
Parent DN under which new groups are created. This DN needs to be subordinate to the 'GRAPH_LDAP_GROUP_BASE_DN'. This setting is only relevant when 'GRAPH_LDAP_SERVER_WRITE_ENABLED' is 'true'. It defaults to the value of 'GRAPH_LDAP_GROUP_BASE_DN'. All groups outside of this subtree are treated as readonly groups and cannot be updated.
a|`OCIS_LDAP_GROUP_SCOPE` +
-`LDAP_GROUP_SCOPE` +
`GRAPH_LDAP_GROUP_SEARCH_SCOPE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -820,9 +687,8 @@ a| [subs=-attributes]
LDAP search scope to use when looking up groups. Supported scopes are 'base', 'one' and 'sub'.
a|`OCIS_LDAP_GROUP_FILTER` +
-`LDAP_GROUP_FILTER` +
`GRAPH_LDAP_GROUP_FILTER` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -831,9 +697,8 @@ a| [subs=-attributes]
LDAP filter to add to the default filters for group searches.
a|`OCIS_LDAP_GROUP_OBJECTCLASS` +
-`LDAP_GROUP_OBJECTCLASS` +
`GRAPH_LDAP_GROUP_OBJECTCLASS` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -842,9 +707,8 @@ a| [subs=-attributes]
The object class to use for groups in the default group search filter ('groupOfNames').
a|`OCIS_LDAP_GROUP_SCHEMA_GROUPNAME` +
-`LDAP_GROUP_SCHEMA_GROUPNAME` +
`GRAPH_LDAP_GROUP_NAME_ATTRIBUTE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -853,9 +717,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the name of groups.
a|`OCIS_LDAP_GROUP_SCHEMA_MEMBER` +
-`LDAP_GROUP_SCHEMA_MEMBER` +
`GRAPH_LDAP_GROUP_MEMBER_ATTRIBUTE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -864,9 +727,8 @@ a| [subs=-attributes]
LDAP Attribute that is used for group members.
a|`OCIS_LDAP_GROUP_SCHEMA_ID` +
-`LDAP_GROUP_SCHEMA_ID` +
`GRAPH_LDAP_GROUP_ID_ATTRIBUTE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/graph_deprecation.adoc b/services/_includes/adoc/graph_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/graph_deprecation.adoc
+++ b/services/_includes/adoc/graph_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/groups_configvars.adoc b/services/_includes/adoc/groups_configvars.adoc
index d80f3a04efb..7da18fe5848 100644
--- a/services/_includes/adoc/groups_configvars.adoc
+++ b/services/_includes/adoc/groups_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the groups service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,126 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
-
-| LDAP_URI changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_URI
-
-| LDAP_CACERT changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_CACERT
-
-| LDAP_INSECURE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_INSECURE
-
-| LDAP_BIND_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_BIND_DN
-
-| LDAP_USER_BASE_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_BASE_DN
-
-| LDAP_GROUP_BASE_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_BASE_DN
-
-| LDAP_USER_SCOPE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCOPE
-
-| LDAP_GROUP_SCOPE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCOPE
-
-| LDAP_USER_FILTER changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_FILTER
-
-| LDAP_GROUP_FILTER changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_FILTER
-
-| LDAP_USER_OBJECTCLASS changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_OBJECTCLASS
-
-| LDAP_GROUP_OBJECTCLASS changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_OBJECTCLASS
-
-| LDAP_USER_SCHEMA_ID changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_ID
-
-| LDAP_USER_SCHEMA_ID_IS_OCTETSTRING changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING
-
-| LDAP_USER_SCHEMA_MAIL changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_MAIL
-
-| LDAP_USER_SCHEMA_DISPLAYNAME changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_DISPLAYNAME
-
-| LDAP_USER_SCHEMA_USERNAME changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_USERNAME
-
-| LDAP_GROUP_SCHEMA_ID changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_ID
-
-| LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING
-
-| LDAP_GROUP_SCHEMA_MAIL changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_MAIL
-
-| LDAP_GROUP_SCHEMA_DISPLAYNAME changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_DISPLAYNAME
-
-| LDAP_GROUP_SCHEMA_GROUPNAME changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_GROUPNAME
-
-| LDAP_GROUP_SCHEMA_MEMBER changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_MEMBER
|===
endif::[]
@@ -291,8 +171,7 @@ a| [subs=-attributes]
The secret to mint and validate jwt tokens.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -337,9 +216,8 @@ a| [subs=-attributes]
The driver which should be used by the groups service. Supported values are 'ldap' and 'owncloudsql'.
a|`OCIS_LDAP_URI` +
-`LDAP_URI` +
`GROUPS_LDAP_URI` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -348,9 +226,8 @@ a| [subs=-attributes]
URI of the LDAP Server to connect to. Supported URI schemes are 'ldaps://' and 'ldap://'
a|`OCIS_LDAP_CACERT` +
-`LDAP_CACERT` +
`GROUPS_LDAP_CACERT` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -359,9 +236,8 @@ a| [subs=-attributes]
Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idm.
a|`OCIS_LDAP_INSECURE` +
-`LDAP_INSECURE` +
`GROUPS_LDAP_INSECURE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++bool ++
a| [subs=-attributes]
@@ -370,9 +246,8 @@ a| [subs=-attributes]
Disable TLS certificate validation for the LDAP connections. Do not set this in production environments.
a|`OCIS_LDAP_BIND_DN` +
-`LDAP_BIND_DN` +
`GROUPS_LDAP_BIND_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -391,9 +266,8 @@ a| [subs=-attributes]
Password to use for authenticating the 'bind_dn'.
a|`OCIS_LDAP_USER_BASE_DN` +
-`LDAP_USER_BASE_DN` +
`GROUPS_LDAP_USER_BASE_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -402,9 +276,8 @@ a| [subs=-attributes]
Search base DN for looking up LDAP users.
a|`OCIS_LDAP_GROUP_BASE_DN` +
-`LDAP_GROUP_BASE_DN` +
`GROUPS_LDAP_GROUP_BASE_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -413,9 +286,8 @@ a| [subs=-attributes]
Search base DN for looking up LDAP groups.
a|`OCIS_LDAP_USER_SCOPE` +
-`LDAP_USER_SCOPE` +
`GROUPS_LDAP_USER_SCOPE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -424,9 +296,8 @@ a| [subs=-attributes]
LDAP search scope to use when looking up users. Supported scopes are 'base', 'one' and 'sub'.
a|`OCIS_LDAP_GROUP_SCOPE` +
-`LDAP_GROUP_SCOPE` +
`GROUPS_LDAP_GROUP_SCOPE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -445,9 +316,8 @@ a| [subs=-attributes]
Type of substring search filter to use for substring searches for groups. Supported values are 'initial', 'final' and 'any'. The value 'initial' is used for doing prefix only searches, 'final' for doing suffix only searches or 'any' for doing full substring searches
a|`OCIS_LDAP_USER_FILTER` +
-`LDAP_USER_FILTER` +
`GROUPS_LDAP_USER_FILTER` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -456,9 +326,8 @@ a| [subs=-attributes]
LDAP filter to add to the default filters for user search like '(objectclass=ownCloud)'.
a|`OCIS_LDAP_GROUP_FILTER` +
-`LDAP_GROUP_FILTER` +
`GROUPS_LDAP_GROUP_FILTER` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -467,9 +336,8 @@ a| [subs=-attributes]
LDAP filter to add to the default filters for group searches.
a|`OCIS_LDAP_USER_OBJECTCLASS` +
-`LDAP_USER_OBJECTCLASS` +
`GROUPS_LDAP_USER_OBJECTCLASS` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -478,9 +346,8 @@ a| [subs=-attributes]
The object class to use for users in the default user search filter ('inetOrgPerson').
a|`OCIS_LDAP_GROUP_OBJECTCLASS` +
-`LDAP_GROUP_OBJECTCLASS` +
`GROUPS_LDAP_GROUP_OBJECTCLASS` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -500,9 +367,8 @@ a| [subs=-attributes]
The identity provider value to set in the group IDs of the CS3 group objects for groups returned by this group provider.
a|`OCIS_LDAP_USER_SCHEMA_ID` +
-`LDAP_USER_SCHEMA_ID` +
`GROUPS_LDAP_USER_SCHEMA_ID` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -511,9 +377,8 @@ a| [subs=-attributes]
LDAP Attribute to use as the unique id for users. This should be a stable globally unique id like a UUID.
a|`OCIS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING` +
-`LDAP_USER_SCHEMA_ID_IS_OCTETSTRING` +
`GROUPS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++bool ++
a| [subs=-attributes]
@@ -522,9 +387,8 @@ a| [subs=-attributes]
Set this to true if the defined 'ID' attribute for users is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the user ID's.
a|`OCIS_LDAP_USER_SCHEMA_MAIL` +
-`LDAP_USER_SCHEMA_MAIL` +
`GROUPS_LDAP_USER_SCHEMA_MAIL` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -533,9 +397,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the email address of users.
a|`OCIS_LDAP_USER_SCHEMA_DISPLAYNAME` +
-`LDAP_USER_SCHEMA_DISPLAYNAME` +
`GROUPS_LDAP_USER_SCHEMA_DISPLAYNAME` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -544,9 +407,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the displayname of users.
a|`OCIS_LDAP_USER_SCHEMA_USERNAME` +
-`LDAP_USER_SCHEMA_USERNAME` +
`GROUPS_LDAP_USER_SCHEMA_USERNAME` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -555,9 +417,8 @@ a| [subs=-attributes]
LDAP Attribute to use for username of users.
a|`OCIS_LDAP_GROUP_SCHEMA_ID` +
-`LDAP_GROUP_SCHEMA_ID` +
`GROUPS_LDAP_GROUP_SCHEMA_ID` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -566,9 +427,8 @@ a| [subs=-attributes]
LDAP Attribute to use as the unique id for groups. This should be a stable globally unique ID like a UUID.
a|`OCIS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING` +
-`LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING` +
`GROUPS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++bool ++
a| [subs=-attributes]
@@ -577,9 +437,8 @@ a| [subs=-attributes]
Set this to true if the defined 'id' attribute for groups is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the group ID's.
a|`OCIS_LDAP_GROUP_SCHEMA_MAIL` +
-`LDAP_GROUP_SCHEMA_MAIL` +
`GROUPS_LDAP_GROUP_SCHEMA_MAIL` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -588,9 +447,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the email address of groups (can be empty).
a|`OCIS_LDAP_GROUP_SCHEMA_DISPLAYNAME` +
-`LDAP_GROUP_SCHEMA_DISPLAYNAME` +
`GROUPS_LDAP_GROUP_SCHEMA_DISPLAYNAME` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -599,9 +457,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the displayname of groups (often the same as groupname attribute).
a|`OCIS_LDAP_GROUP_SCHEMA_GROUPNAME` +
-`LDAP_GROUP_SCHEMA_GROUPNAME` +
`GROUPS_LDAP_GROUP_SCHEMA_GROUPNAME` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -610,9 +467,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the name of groups.
a|`OCIS_LDAP_GROUP_SCHEMA_MEMBER` +
-`LDAP_GROUP_SCHEMA_MEMBER` +
`GROUPS_LDAP_GROUP_SCHEMA_MEMBER` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/groups_deprecation.adoc b/services/_includes/adoc/groups_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/groups_deprecation.adoc
+++ b/services/_includes/adoc/groups_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/idm_configvars.adoc b/services/_includes/adoc/idm_configvars.adoc
index 0b98ecfbe2d..7f73bc334b6 100644
--- a/services/_includes/adoc/idm_configvars.adoc
+++ b/services/_includes/adoc/idm_configvars.adoc
@@ -4,7 +4,7 @@
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the idm service
[width="100%",cols="~,~,~,~",options="header"]
diff --git a/services/_includes/adoc/idp_configvars.adoc b/services/_includes/adoc/idp_configvars.adoc
index a8b28b6e85c..17316136347 100644
--- a/services/_includes/adoc/idp_configvars.adoc
+++ b/services/_includes/adoc/idp_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the idp service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,71 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
-
-| LDAP_INSECURE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_INSECURE
-
-| LDAP_URI changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_URI
-
-| LDAP_CACERT changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_CACERT
-
-| LDAP_BIND_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_BIND_DN
-
-| LDAP_USER_BASE_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_BASE_DN
-
-| LDAP_USER_SCOPE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCOPE
-
-| LDAP_USER_SCHEMA_MAIL changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_MAIL
-
-| LDAP_USER_SCHEMA_USERNAME changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_USERNAME
-
-| LDAP_USER_SCHEMA_ID changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_ID
-
-| LDAP_USER_ENABLED_ATTRIBUTE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_ENABLED_ATTRIBUTE
-
-| LDAP_USER_FILTER changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_FILTER
-
-| LDAP_USER_OBJECTCLASS changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_OBJECTCLASS
|===
endif::[]
@@ -262,8 +197,7 @@ a| [subs=-attributes]
Disable or Enable HTTPS for the communication between the Proxy service and the IDP service. If set to 'true', the key and cert files need to be configured and present.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -365,9 +299,8 @@ a| [subs=-attributes]
URL of the IDP endpoint.
a|`OCIS_LDAP_INSECURE` +
-`LDAP_INSECURE` +
`IDP_INSECURE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++bool ++
a| [subs=-attributes]
@@ -475,9 +408,8 @@ a| [subs=-attributes]
Lifespan in seconds of a dynamically registered OIDC client.
a|`OCIS_LDAP_URI` +
-`LDAP_URI` +
`IDP_LDAP_URI` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -486,9 +418,8 @@ a| [subs=-attributes]
Url of the LDAP service to use as IDP.
a|`OCIS_LDAP_CACERT` +
-`LDAP_CACERT` +
`IDP_LDAP_TLS_CACERT` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -497,9 +428,8 @@ a| [subs=-attributes]
Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idp.
a|`OCIS_LDAP_BIND_DN` +
-`LDAP_BIND_DN` +
`IDP_LDAP_BIND_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -518,9 +448,8 @@ a| [subs=-attributes]
Password to use for authenticating the 'bind_dn'.
a|`OCIS_LDAP_USER_BASE_DN` +
-`LDAP_USER_BASE_DN` +
`IDP_LDAP_BASE_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -529,9 +458,8 @@ a| [subs=-attributes]
Search base DN for looking up LDAP users.
a|`OCIS_LDAP_USER_SCOPE` +
-`LDAP_USER_SCOPE` +
`IDP_LDAP_SCOPE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -549,9 +477,8 @@ a| [subs=-attributes]
LDAP User attribute to use for login like 'uid'.
a|`OCIS_LDAP_USER_SCHEMA_MAIL` +
-`LDAP_USER_SCHEMA_MAIL` +
`IDP_LDAP_EMAIL_ATTRIBUTE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -560,9 +487,8 @@ a| [subs=-attributes]
LDAP User email attribute like 'mail'.
a|`OCIS_LDAP_USER_SCHEMA_USERNAME` +
-`LDAP_USER_SCHEMA_USERNAME` +
`IDP_LDAP_NAME_ATTRIBUTE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -571,9 +497,8 @@ a| [subs=-attributes]
LDAP User name attribute like 'displayName'.
a|`OCIS_LDAP_USER_SCHEMA_ID` +
-`LDAP_USER_SCHEMA_ID` +
`IDP_LDAP_UUID_ATTRIBUTE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -591,9 +516,8 @@ a| [subs=-attributes]
LDAP User uuid attribute type like 'text'.
a|`OCIS_LDAP_USER_ENABLED_ATTRIBUTE` +
-`LDAP_USER_ENABLED_ATTRIBUTE` +
`IDP_USER_ENABLED_ATTRIBUTE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -602,9 +526,8 @@ a| [subs=-attributes]
LDAP Attribute to use as a flag telling if the user is enabled or disabled.
a|`OCIS_LDAP_USER_FILTER` +
-`LDAP_USER_FILTER` +
`IDP_LDAP_FILTER` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -613,9 +536,8 @@ a| [subs=-attributes]
LDAP filter to add to the default filters for user search like '(objectclass=ownCloud)'.
a|`OCIS_LDAP_USER_OBJECTCLASS` +
-`LDAP_USER_OBJECTCLASS` +
`IDP_LDAP_OBJECTCLASS` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/idp_deprecation.adoc b/services/_includes/adoc/idp_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/idp_deprecation.adoc
+++ b/services/_includes/adoc/idp_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/invitations_configvars.adoc b/services/_includes/adoc/invitations_configvars.adoc
index 359a64a7a29..6e391d37797 100644
--- a/services/_includes/adoc/invitations_configvars.adoc
+++ b/services/_includes/adoc/invitations_configvars.adoc
@@ -4,7 +4,7 @@
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the invitations service
[width="100%",cols="~,~,~,~",options="header"]
diff --git a/services/_includes/adoc/nats_configvars.adoc b/services/_includes/adoc/nats_configvars.adoc
index 945d47cf302..3108f872a28 100644
--- a/services/_includes/adoc/nats_configvars.adoc
+++ b/services/_includes/adoc/nats_configvars.adoc
@@ -4,7 +4,7 @@
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the nats service
[width="100%",cols="~,~,~,~",options="header"]
diff --git a/services/_includes/adoc/notifications_configvars.adoc b/services/_includes/adoc/notifications_configvars.adoc
index 5c2e021f788..ed5c6015821 100644
--- a/services/_includes/adoc/notifications_configvars.adoc
+++ b/services/_includes/adoc/notifications_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the notifications service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,11 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
|===
endif::[]
@@ -309,8 +304,7 @@ a| [subs=-attributes]
(optional) Set this to a path with custom translations to overwrite the builtin translations. Note that file and folder naming rules apply, see the documentation for more details.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/notifications_deprecation.adoc b/services/_includes/adoc/notifications_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/notifications_deprecation.adoc
+++ b/services/_includes/adoc/notifications_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/ocdav_configvars.adoc b/services/_includes/adoc/ocdav_configvars.adoc
index 79807931d4d..6c7e106418e 100644
--- a/services/_includes/adoc/ocdav_configvars.adoc
+++ b/services/_includes/adoc/ocdav_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the ocdav service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,11 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
|===
endif::[]
@@ -225,8 +220,7 @@ a| [subs=-attributes]
The secret to mint and validate jwt tokens.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/ocdav_deprecation.adoc b/services/_includes/adoc/ocdav_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/ocdav_deprecation.adoc
+++ b/services/_includes/adoc/ocdav_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/ocs_configvars.adoc b/services/_includes/adoc/ocs_configvars.adoc
index a654152334e..357c535d9a3 100644
--- a/services/_includes/adoc/ocs_configvars.adoc
+++ b/services/_includes/adoc/ocs_configvars.adoc
@@ -4,7 +4,7 @@
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the ocs service
[width="100%",cols="~,~,~,~",options="header"]
diff --git a/services/_includes/adoc/policies_configvars.adoc b/services/_includes/adoc/policies_configvars.adoc
index e543296b2cf..696929b7748 100644
--- a/services/_includes/adoc/policies_configvars.adoc
+++ b/services/_includes/adoc/policies_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the policies service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,11 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
|===
endif::[]
@@ -137,8 +132,7 @@ a| [subs=-attributes]
Enable TLS for the connection to the events broker. The events broker is the ocis service which receives and delivers events between the services.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/policies_deprecation.adoc b/services/_includes/adoc/policies_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/policies_deprecation.adoc
+++ b/services/_includes/adoc/policies_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/postprocessing_configvars.adoc b/services/_includes/adoc/postprocessing_configvars.adoc
index dd2dc627b9f..04898478eb6 100644
--- a/services/_includes/adoc/postprocessing_configvars.adoc
+++ b/services/_includes/adoc/postprocessing_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the postprocessing service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,11 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| POSTPROCESSING_VIRUSSCAN is not longer necessary and is replaced by POSTPROCESSING_STEPS which also holds information about the order of steps
-| master
-| master
-| POSTPROCESSING_STEPS
|===
endif::[]
@@ -264,15 +259,6 @@ a| [subs=-attributes]
a| [subs=-attributes]
A comma separated list of postprocessing steps, processed in order of their appearance. Currently supported values by the system are: 'virusscan', 'policies' and 'delay'. Custom steps are allowed. See the documentation for instructions.
-a|`POSTPROCESSING_VIRUSSCAN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
-a| [subs=-attributes]
-++bool ++
-a| [subs=-attributes]
-++false ++
-a| [subs=-attributes]
-After uploading a file but before making it available for download, virus scanning the file can be enabled. Needs as prerequisite the antivirus service to be enabled and configured.
-
a|`POSTPROCESSING_DELAY` +
a| [subs=-attributes]
diff --git a/services/_includes/adoc/postprocessing_deprecation.adoc b/services/_includes/adoc/postprocessing_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/postprocessing_deprecation.adoc
+++ b/services/_includes/adoc/postprocessing_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/proxy_configvars.adoc b/services/_includes/adoc/proxy_configvars.adoc
index 85eadb16dfc..af1f66c5535 100644
--- a/services/_includes/adoc/proxy_configvars.adoc
+++ b/services/_includes/adoc/proxy_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the proxy service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,11 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
|===
endif::[]
@@ -193,8 +188,7 @@ a| [subs=-attributes]
Enable/Disable HTTPS for external HTTP services. Must be set to 'true' if the built-in IDP service an no reverse proxy is used. See the text description for details.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/proxy_deprecation.adoc b/services/_includes/adoc/proxy_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/proxy_deprecation.adoc
+++ b/services/_includes/adoc/proxy_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/search_configvars.adoc b/services/_includes/adoc/search_configvars.adoc
index 173d637854b..bcbbef0979e 100644
--- a/services/_includes/adoc/search_configvars.adoc
+++ b/services/_includes/adoc/search_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the search service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,16 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
-
-| STORAGE_USERS_OCIS_ASYNC_UPLOADS changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_ASYNC_UPLOADS
|===
endif::[]
@@ -172,8 +162,7 @@ a| [subs=-attributes]
The secret to mint and validate jwt tokens.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -220,9 +209,8 @@ a| [subs=-attributes]
The clusterID of the event system. The event system is the message queuing service. It is used as message broker for the microservice architecture. Mandatory when using NATS as event system.
a|`OCIS_ASYNC_UPLOADS` +
-`STORAGE_USERS_OCIS_ASYNC_UPLOADS` +
`SEARCH_EVENTS_ASYNC_UPLOADS` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++bool ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/search_deprecation.adoc b/services/_includes/adoc/search_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/search_deprecation.adoc
+++ b/services/_includes/adoc/search_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/settings_configvars.adoc b/services/_includes/adoc/settings_configvars.adoc
index 32d12a7f365..f086becd372 100644
--- a/services/_includes/adoc/settings_configvars.adoc
+++ b/services/_includes/adoc/settings_configvars.adoc
@@ -4,7 +4,7 @@
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the settings service
[width="100%",cols="~,~,~,~",options="header"]
diff --git a/services/_includes/adoc/sharing_configvars.adoc b/services/_includes/adoc/sharing_configvars.adoc
index d8fdb1bb729..00c5c22eeb9 100644
--- a/services/_includes/adoc/sharing_configvars.adoc
+++ b/services/_includes/adoc/sharing_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the sharing service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,16 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
-
-| SHARING_EVENTS_TLS_ROOT_CA_CERT changing name for consistency
-| 3.0
-| 4.0.0
-| SHARING_EVENTS_TLS_ROOT_CA_CERTIFICATE
|===
endif::[]
@@ -181,8 +171,7 @@ a| [subs=-attributes]
The secret to mint and validate jwt tokens.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -239,9 +228,8 @@ a| [subs=-attributes]
Whether to verify the server TLS certificates.
a|`OCIS_EVENTS_TLS_ROOT_CA_CERTIFICATE` +
-`SHARING_EVENTS_TLS_ROOT_CA_CERTIFICATE` +
`SHARING_EVENTS_TLS_ROOT_CA_CERT` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/sharing_deprecation.adoc b/services/_includes/adoc/sharing_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/sharing_deprecation.adoc
+++ b/services/_includes/adoc/sharing_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/storage-publiclink_configvars.adoc b/services/_includes/adoc/storage-publiclink_configvars.adoc
index fc6ec196863..5d845e10e5f 100644
--- a/services/_includes/adoc/storage-publiclink_configvars.adoc
+++ b/services/_includes/adoc/storage-publiclink_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the storage-publiclink service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,11 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
|===
endif::[]
@@ -176,8 +171,7 @@ a| [subs=-attributes]
The secret to mint and validate jwt tokens.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/storage-publiclink_deprecation.adoc b/services/_includes/adoc/storage-publiclink_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/storage-publiclink_deprecation.adoc
+++ b/services/_includes/adoc/storage-publiclink_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/storage-shares_configvars.adoc b/services/_includes/adoc/storage-shares_configvars.adoc
index ccd92e55d8a..d22b06c96b2 100644
--- a/services/_includes/adoc/storage-shares_configvars.adoc
+++ b/services/_includes/adoc/storage-shares_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the storage-shares service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,11 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
|===
endif::[]
@@ -176,8 +171,7 @@ a| [subs=-attributes]
The secret to mint and validate jwt tokens.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/storage-shares_deprecation.adoc b/services/_includes/adoc/storage-shares_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/storage-shares_deprecation.adoc
+++ b/services/_includes/adoc/storage-shares_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/storage-system_configvars.adoc b/services/_includes/adoc/storage-system_configvars.adoc
index c608837cc9e..ba3227fb432 100644
--- a/services/_includes/adoc/storage-system_configvars.adoc
+++ b/services/_includes/adoc/storage-system_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the storage-system service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,11 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
|===
endif::[]
@@ -194,8 +189,7 @@ a| [subs=-attributes]
The secret to mint and validate jwt tokens.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/storage-system_deprecation.adoc b/services/_includes/adoc/storage-system_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/storage-system_deprecation.adoc
+++ b/services/_includes/adoc/storage-system_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/storage-users_configvars.adoc b/services/_includes/adoc/storage-users_configvars.adoc
index a7bf92670f0..3d9639a058f 100644
--- a/services/_includes/adoc/storage-users_configvars.adoc
+++ b/services/_includes/adoc/storage-users_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the storage-users service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,21 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
-
-| STORAGE_USERS_OCIS_ASYNC_UPLOADS changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_ASYNC_UPLOADS
-
-| STORAGE_USERS_EVENTS_TLS_ROOT_CA_CERT changing name for consistency
-| 3.0
-| 4.0.0
-| STORAGE_USERS_EVENTS_TLS_ROOT_CA_CERTIFICATE
|===
endif::[]
@@ -204,8 +189,7 @@ a| [subs=-attributes]
The secret to mint and validate jwt tokens.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -370,8 +354,8 @@ a| [subs=-attributes]
Maximum number of concurrent go-routines. Higher values can potentially get work done faster but will also cause more load on the system. Values of 0 or below will be ignored and the default value of 100 will be used.
a|`OCIS_ASYNC_UPLOADS` +
-`STORAGE_USERS_OCIS_ASYNC_UPLOADS` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+`` +
+
a| [subs=-attributes]
++bool ++
a| [subs=-attributes]
@@ -693,8 +677,7 @@ Whether to verify the server TLS certificates.
a|`OCIS_EVENTS_TLS_ROOT_CA_CERTIFICATE` +
`STORAGE_USERS_EVENTS_TLS_ROOT_CA_CERTIFICATE` +
-`STORAGE_USERS_EVENTS_TLS_ROOT_CA_CERT` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -719,7 +702,7 @@ a| [subs=-attributes]
a| [subs=-attributes]
++0 ++
a| [subs=-attributes]
-The amount of concurrent event consumers to start. Event consumers are used for post-processing files. Multiple consumers increase parallelisation, but will also increase CPU and memory demands. The setting has no effect when the STORAGE_USERS_OCIS_ASYNC_UPLOADS is set to false. The default and minimum value is 1.
+The amount of concurrent event consumers to start. Event consumers are used for post-processing files. Multiple consumers increase parallelisation, but will also increase CPU and memory demands. The setting has no effect when the OCIS_ASYNC_UPLOADS is set to false. The default and minimum value is 1.
a|`OCIS_CACHE_STORE` +
`STORAGE_USERS_STAT_CACHE_STORE` +
diff --git a/services/_includes/adoc/storage-users_deprecation.adoc b/services/_includes/adoc/storage-users_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/storage-users_deprecation.adoc
+++ b/services/_includes/adoc/storage-users_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/store_configvars.adoc b/services/_includes/adoc/store_configvars.adoc
index 8c5d7ba9455..7cbe6b82b02 100644
--- a/services/_includes/adoc/store_configvars.adoc
+++ b/services/_includes/adoc/store_configvars.adoc
@@ -4,7 +4,7 @@
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the store service
[width="100%",cols="~,~,~,~",options="header"]
diff --git a/services/_includes/adoc/thumbnails_configvars.adoc b/services/_includes/adoc/thumbnails_configvars.adoc
index ef4cccd4be5..75fdd01c95d 100644
--- a/services/_includes/adoc/thumbnails_configvars.adoc
+++ b/services/_includes/adoc/thumbnails_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the thumbnails service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,11 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
|===
endif::[]
@@ -240,8 +235,7 @@ a| [subs=-attributes]
Ignore untrusted SSL certificates when connecting to the CS3 source.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/thumbnails_deprecation.adoc b/services/_includes/adoc/thumbnails_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/thumbnails_deprecation.adoc
+++ b/services/_includes/adoc/thumbnails_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/userlog_configvars.adoc b/services/_includes/adoc/userlog_configvars.adoc
index f44336b9644..492f155677e 100644
--- a/services/_includes/adoc/userlog_configvars.adoc
+++ b/services/_includes/adoc/userlog_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the userlog service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,11 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
|===
endif::[]
@@ -253,8 +248,7 @@ a| [subs=-attributes]
Machine auth API key used to validate internal requests necessary to access resources from other services.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/userlog_deprecation.adoc b/services/_includes/adoc/userlog_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/userlog_deprecation.adoc
+++ b/services/_includes/adoc/userlog_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/users_configvars.adoc b/services/_includes/adoc/users_configvars.adoc
index 22e7a74af90..fbd17028594 100644
--- a/services/_includes/adoc/users_configvars.adoc
+++ b/services/_includes/adoc/users_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the users service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,146 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
-
-| LDAP_URI changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_URI
-
-| LDAP_CACERT changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_CACERT
-
-| LDAP_INSECURE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_INSECURE
-
-| LDAP_BIND_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_BIND_DN
-
-| LDAP_USER_BASE_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_BASE_DN
-
-| LDAP_GROUP_BASE_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_BASE_DN
-
-| LDAP_USER_SCOPE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCOPE
-
-| LDAP_GROUP_SCOPE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCOPE
-
-| LDAP_USER_FILTER changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_FILTER
-
-| LDAP_GROUP_FILTER changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_FILTER
-
-| LDAP_USER_OBJECTCLASS changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_OBJECTCLASS
-
-| LDAP_GROUP_OBJECTCLASS changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_OBJECTCLASS
-
-| LDAP_DISABLE_USER_MECHANISM changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_DISABLE_USER_MECHANISM
-
-| LDAP_USER_SCHEMA_USER_TYPE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_USER_TYPE
-
-| LDAP_DISABLED_USERS_GROUP_DN changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_DISABLED_USERS_GROUP_DN
-
-| LDAP_USER_SCHEMA_ID changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_ID
-
-| LDAP_USER_SCHEMA_ID_IS_OCTETSTRING changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING
-
-| LDAP_USER_SCHEMA_MAIL changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_MAIL
-
-| LDAP_USER_SCHEMA_DISPLAYNAME changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_DISPLAYNAME
-
-| LDAP_USER_SCHEMA_USERNAME changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_SCHEMA_USERNAME
-
-| LDAP_USER_ENABLED_ATTRIBUTE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_USER_ENABLED_ATTRIBUTE
-
-| LDAP_GROUP_SCHEMA_ID changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_ID
-
-| LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING
-
-| LDAP_GROUP_SCHEMA_MAIL changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_MAIL
-
-| LDAP_GROUP_SCHEMA_DISPLAYNAME changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_DISPLAYNAME
-
-| LDAP_GROUP_SCHEMA_GROUPNAME changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_GROUPNAME
-
-| LDAP_GROUP_SCHEMA_MEMBER changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_LDAP_GROUP_SCHEMA_MEMBER
|===
endif::[]
@@ -311,8 +171,7 @@ a| [subs=-attributes]
The secret to mint and validate jwt tokens.
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -357,9 +216,8 @@ a| [subs=-attributes]
The driver which should be used by the users service. Supported values are 'ldap' and 'owncloudsql'.
a|`OCIS_LDAP_URI` +
-`LDAP_URI` +
`USERS_LDAP_URI` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -368,9 +226,8 @@ a| [subs=-attributes]
URI of the LDAP Server to connect to. Supported URI schemes are 'ldaps://' and 'ldap://'
a|`OCIS_LDAP_CACERT` +
-`LDAP_CACERT` +
`USERS_LDAP_CACERT` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -379,9 +236,8 @@ a| [subs=-attributes]
Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idm.
a|`OCIS_LDAP_INSECURE` +
-`LDAP_INSECURE` +
`USERS_LDAP_INSECURE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++bool ++
a| [subs=-attributes]
@@ -390,9 +246,8 @@ a| [subs=-attributes]
Disable TLS certificate validation for the LDAP connections. Do not set this in production environments.
a|`OCIS_LDAP_BIND_DN` +
-`LDAP_BIND_DN` +
`USERS_LDAP_BIND_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -411,9 +266,8 @@ a| [subs=-attributes]
Password to use for authenticating the 'bind_dn'.
a|`OCIS_LDAP_USER_BASE_DN` +
-`LDAP_USER_BASE_DN` +
`USERS_LDAP_USER_BASE_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -422,9 +276,8 @@ a| [subs=-attributes]
Search base DN for looking up LDAP users.
a|`OCIS_LDAP_GROUP_BASE_DN` +
-`LDAP_GROUP_BASE_DN` +
`USERS_LDAP_GROUP_BASE_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -433,9 +286,8 @@ a| [subs=-attributes]
Search base DN for looking up LDAP groups.
a|`OCIS_LDAP_USER_SCOPE` +
-`LDAP_USER_SCOPE` +
`USERS_LDAP_USER_SCOPE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -444,9 +296,8 @@ a| [subs=-attributes]
LDAP search scope to use when looking up users. Supported values are 'base', 'one' and 'sub'.
a|`OCIS_LDAP_GROUP_SCOPE` +
-`LDAP_GROUP_SCOPE` +
`USERS_LDAP_GROUP_SCOPE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -465,9 +316,8 @@ a| [subs=-attributes]
Type of substring search filter to use for substring searches for users. Possible values: 'initial' for doing prefix only searches, 'final' for doing suffix only searches or 'any' for doing full substring searches
a|`OCIS_LDAP_USER_FILTER` +
-`LDAP_USER_FILTER` +
`USERS_LDAP_USER_FILTER` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -476,9 +326,8 @@ a| [subs=-attributes]
LDAP filter to add to the default filters for user search like '(objectclass=ownCloud)'.
a|`OCIS_LDAP_GROUP_FILTER` +
-`LDAP_GROUP_FILTER` +
`USERS_LDAP_GROUP_FILTER` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -487,9 +336,8 @@ a| [subs=-attributes]
LDAP filter to add to the default filters for group searches.
a|`OCIS_LDAP_USER_OBJECTCLASS` +
-`LDAP_USER_OBJECTCLASS` +
`USERS_LDAP_USER_OBJECTCLASS` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -498,9 +346,8 @@ a| [subs=-attributes]
The object class to use for users in the default user search filter like 'inetOrgPerson'.
a|`OCIS_LDAP_GROUP_OBJECTCLASS` +
-`LDAP_GROUP_OBJECTCLASS` +
`USERS_LDAP_GROUP_OBJECTCLASS` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -520,9 +367,8 @@ a| [subs=-attributes]
The identity provider value to set in the userids of the CS3 user objects for users returned by this user provider.
a|`OCIS_LDAP_DISABLE_USER_MECHANISM` +
-`LDAP_DISABLE_USER_MECHANISM` +
`USERS_LDAP_DISABLE_USER_MECHANISM` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -531,9 +377,8 @@ a| [subs=-attributes]
An option to control the behavior for disabling users. Valid options are 'none', 'attribute' and 'group'. If set to 'group', disabling a user via API will add the user to the configured group for disabled users, if set to 'attribute' this will be done in the ldap user entry, if set to 'none' the disable request is not processed.
a|`OCIS_LDAP_USER_SCHEMA_USER_TYPE` +
-`LDAP_USER_SCHEMA_USER_TYPE` +
`USERS_LDAP_USER_TYPE_ATTRIBUTE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -542,9 +387,8 @@ a| [subs=-attributes]
LDAP Attribute to distinguish between 'Member' and 'Guest' users. Default is 'ownCloudUserType'.
a|`OCIS_LDAP_DISABLED_USERS_GROUP_DN` +
-`LDAP_DISABLED_USERS_GROUP_DN` +
`USERS_LDAP_DISABLED_USERS_GROUP_DN` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -553,9 +397,7 @@ a| [subs=-attributes]
The distinguished name of the group to which added users will be classified as disabled when 'disable_user_mechanism' is set to 'group'.
a|`OCIS_LDAP_USER_SCHEMA_ID` +
-`LDAP_USER_SCHEMA_ID` +
-`USERS_LDAP_USER_SCHEMA_ID` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -566,7 +408,7 @@ LDAP Attribute to use as the unique ID for users. This should be a stable global
a|`OCIS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING` +
`LDAP_USER_SCHEMA_ID_IS_OCTETSTRING` +
`USERS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++bool ++
a| [subs=-attributes]
@@ -575,9 +417,8 @@ a| [subs=-attributes]
Set this to true if the defined 'ID' attribute for users is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the user ID's.
a|`OCIS_LDAP_USER_SCHEMA_MAIL` +
-`LDAP_USER_SCHEMA_MAIL` +
`USERS_LDAP_USER_SCHEMA_MAIL` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -586,9 +427,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the email address of users.
a|`OCIS_LDAP_USER_SCHEMA_DISPLAYNAME` +
-`LDAP_USER_SCHEMA_DISPLAYNAME` +
`USERS_LDAP_USER_SCHEMA_DISPLAYNAME` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -597,9 +437,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the displayname of users.
a|`OCIS_LDAP_USER_SCHEMA_USERNAME` +
-`LDAP_USER_SCHEMA_USERNAME` +
`USERS_LDAP_USER_SCHEMA_USERNAME` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -608,9 +447,8 @@ a| [subs=-attributes]
LDAP Attribute to use for username of users.
a|`OCIS_LDAP_USER_ENABLED_ATTRIBUTE` +
-`LDAP_USER_ENABLED_ATTRIBUTE` +
`USERS_LDAP_USER_ENABLED_ATTRIBUTE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -619,9 +457,8 @@ a| [subs=-attributes]
LDAP attribute to use as a flag telling if the user is enabled or disabled.
a|`OCIS_LDAP_GROUP_SCHEMA_ID` +
-`LDAP_GROUP_SCHEMA_ID` +
`USERS_LDAP_GROUP_SCHEMA_ID` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -630,9 +467,8 @@ a| [subs=-attributes]
LDAP Attribute to use as the unique ID for groups. This should be a stable globally unique ID like a UUID.
a|`OCIS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING` +
-`LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING` +
`USERS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++bool ++
a| [subs=-attributes]
@@ -641,9 +477,8 @@ a| [subs=-attributes]
Set this to true if the defined 'id' attribute for groups is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the group ID's.
a|`OCIS_LDAP_GROUP_SCHEMA_MAIL` +
-`LDAP_GROUP_SCHEMA_MAIL` +
`USERS_LDAP_GROUP_SCHEMA_MAIL` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -652,9 +487,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the email address of groups (can be empty).
a|`OCIS_LDAP_GROUP_SCHEMA_DISPLAYNAME` +
-`LDAP_GROUP_SCHEMA_DISPLAYNAME` +
`USERS_LDAP_GROUP_SCHEMA_DISPLAYNAME` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -663,9 +497,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the displayname of groups (often the same as groupname attribute).
a|`OCIS_LDAP_GROUP_SCHEMA_GROUPNAME` +
-`LDAP_GROUP_SCHEMA_GROUPNAME` +
`USERS_LDAP_GROUP_SCHEMA_GROUPNAME` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -674,9 +507,8 @@ a| [subs=-attributes]
LDAP Attribute to use for the name of groups.
a|`OCIS_LDAP_GROUP_SCHEMA_MEMBER` +
-`LDAP_GROUP_SCHEMA_MEMBER` +
`USERS_LDAP_GROUP_SCHEMA_MEMBER` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/users_deprecation.adoc b/services/_includes/adoc/users_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/users_deprecation.adoc
+++ b/services/_includes/adoc/users_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/web_configvars.adoc b/services/_includes/adoc/web_configvars.adoc
index 4a13a486b26..d01a7f65af9 100644
--- a/services/_includes/adoc/web_configvars.adoc
+++ b/services/_includes/adoc/web_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the web service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,16 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| WEB_UI_CONFIG name changing to make the usecase clear
-| 3.0
-| 4.0.0
-| WEB_UI_CONFIG_FILE
-
-| WEB_UI_PATH will be superceded by WEB_UI_CONFIG_FILE
-| 3.0
-| 4.0.0
-| WEB_UI_CONFIG_FILE
|===
endif::[]
@@ -256,8 +246,7 @@ a| [subs=-attributes]
Serve ownCloud Web assets from a path on the filesystem instead of the builtin assets.
a|`WEB_UI_CONFIG_FILE` +
-`WEB_UI_CONFIG` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -266,8 +255,7 @@ a| [subs=-attributes]
Read the ownCloud Web json based configuration from this path/file. The config file takes precedence over WEB_OPTION_xxx environment variables. See the text description for more details.
a|`WEB_UI_CONFIG_FILE` +
-`WEB_UI_PATH` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/web_deprecation.adoc b/services/_includes/adoc/web_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/web_deprecation.adoc
+++ b/services/_includes/adoc/web_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/webdav_configvars.adoc b/services/_includes/adoc/webdav_configvars.adoc
index b3eadb96123..2c7ba039754 100644
--- a/services/_includes/adoc/webdav_configvars.adoc
+++ b/services/_includes/adoc/webdav_configvars.adoc
@@ -1,10 +1,10 @@
// set the attribute to true or leave empty, true without any quotes.
-:show-deprecation: true
+:show-deprecation: false
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the webdav service
[width="100%",cols="~,~,~,~",options="header"]
@@ -13,21 +13,6 @@ ifeval::[{show-deprecation} == true]
| Deprecation Version
| Removal Version
| Deprecation Replacement
-
-| REVA_GATEWAY changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY
-
-| REVA_GATEWAY_TLS_MODE changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY_TLS_MODE
-
-| REVA_GATEWAY_TLS_CACERT changing name for consistency
-| 3.0
-| 4.0.0
-| OCIS_REVA_GATEWAY_TLS_CACERT
|===
endif::[]
@@ -272,8 +257,7 @@ a| [subs=-attributes]
CS3 path layout to use when forwarding /webdav requests
a|`OCIS_REVA_GATEWAY` +
-`REVA_GATEWAY` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -282,8 +266,7 @@ a| [subs=-attributes]
CS3 gateway used to look up user metadata
a|`OCIS_REVA_GATEWAY_TLS_MODE` +
-`REVA_GATEWAY_TLS_MODE` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
@@ -292,8 +275,7 @@ a| [subs=-attributes]
TLS mode for grpc connection to the CS3 gateway endpoint. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.
a|`OCIS_REVA_GATEWAY_TLS_CACERT` +
-`REVA_GATEWAY_TLS_CACERT` +
-xref:deprecation-note-2023-08-23-00-45-54[Deprecation Note]
+
a| [subs=-attributes]
++string ++
a| [subs=-attributes]
diff --git a/services/_includes/adoc/webdav_deprecation.adoc b/services/_includes/adoc/webdav_deprecation.adoc
index e452d9c3e42..4b3cef689ac 100644
--- a/services/_includes/adoc/webdav_deprecation.adoc
+++ b/services/_includes/adoc/webdav_deprecation.adoc
@@ -1,2 +1,2 @@
-:show-deprecation: true
+:show-deprecation: false
diff --git a/services/_includes/adoc/webfinger_configvars.adoc b/services/_includes/adoc/webfinger_configvars.adoc
index bac12c7dfe3..487e7fbc0a6 100644
--- a/services/_includes/adoc/webfinger_configvars.adoc
+++ b/services/_includes/adoc/webfinger_configvars.adoc
@@ -4,7 +4,7 @@
ifeval::[{show-deprecation} == true]
-[#deprecation-note-2023-08-23-00-45-54]
+[#deprecation-note-2023-08-23-08-25-18]
[caption=]
.Deprecation notes for the webfinger service
[width="100%",cols="~,~,~,~",options="header"]
diff --git a/services/_includes/app-provider_configvars.md b/services/_includes/app-provider_configvars.md
index 4dfc8d4e950..c155c22c0c6 100644
--- a/services/_includes/app-provider_configvars.md
+++ b/services/_includes/app-provider_configvars.md
@@ -18,7 +18,7 @@
| APP_PROVIDER_GRPC_ADDR | string | 127.0.0.1:9164 | The bind address of the GRPC service.|
| APP_PROVIDER_GRPC_PROTOCOL | string | tcp | The transport protocol of the GPRC service.|
| OCIS_JWT_SECRET
APP_PROVIDER_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| APP_PROVIDER_EXTERNAL_ADDR | string | | Address of the app provider, where the GATEWAY service can reach it.|
diff --git a/services/_includes/app-registry_configvars.md b/services/_includes/app-registry_configvars.md
index db8400b26fc..b53b55086d1 100644
--- a/services/_includes/app-registry_configvars.md
+++ b/services/_includes/app-registry_configvars.md
@@ -17,6 +17,6 @@
| APP_REGISTRY_GRPC_ADDR | string | 127.0.0.1:9242 | The bind address of the GRPC service.|
| APP_REGISTRY_GRPC_PROTOCOL | string | tcp | The transport protocol of the GRPC service.|
| OCIS_JWT_SECRET
APP_REGISTRY_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
\ No newline at end of file
diff --git a/services/_includes/auth-basic_configvars.md b/services/_includes/auth-basic_configvars.md
index 451b05d649b..9e4bc6b8edb 100644
--- a/services/_includes/auth-basic_configvars.md
+++ b/services/_includes/auth-basic_configvars.md
@@ -17,40 +17,40 @@
| AUTH_BASIC_GRPC_ADDR | string | 127.0.0.1:9146 | The bind address of the GRPC service.|
| AUTH_BASIC_GRPC_PROTOCOL | string | tcp | The transport protocol of the GRPC service.|
| OCIS_JWT_SECRET
AUTH_BASIC_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| AUTH_BASIC_SKIP_USER_GROUPS_IN_TOKEN | bool | false | Disables the encoding of the user's group memberships in the reva access token. This reduces the token size, especially when users are members of a large number of groups.|
| AUTH_BASIC_AUTH_MANAGER | string | ldap | The authentication manager to check if credentials are valid. Supported value is 'ldap'.|
-| OCIS_LDAP_URI
LDAP_URI
AUTH_BASIC_LDAP_URI | string | ldaps://localhost:9235 | URI of the LDAP Server to connect to. Supported URI schemes are 'ldaps://' and 'ldap://'|
-| OCIS_LDAP_CACERT
LDAP_CACERT
AUTH_BASIC_LDAP_CACERT | string | ~/.ocis/idm/ldap.crt | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idm.|
-| OCIS_LDAP_INSECURE
LDAP_INSECURE
AUTH_BASIC_LDAP_INSECURE | bool | false | Disable TLS certificate validation for the LDAP connections. Do not set this in production environments.|
-| OCIS_LDAP_BIND_DN
LDAP_BIND_DN
AUTH_BASIC_LDAP_BIND_DN | string | uid=reva,ou=sysusers,o=libregraph-idm | LDAP DN to use for simple bind authentication with the target LDAP server.|
+| OCIS_LDAP_URI
AUTH_BASIC_LDAP_URI | string | ldaps://localhost:9235 | URI of the LDAP Server to connect to. Supported URI schemes are 'ldaps://' and 'ldap://'|
+| OCIS_LDAP_CACERT
AUTH_BASIC_LDAP_CACERT | string | ~/.ocis/idm/ldap.crt | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idm.|
+| OCIS_LDAP_INSECURE
AUTH_BASIC_LDAP_INSECURE | bool | false | Disable TLS certificate validation for the LDAP connections. Do not set this in production environments.|
+| OCIS_LDAP_BIND_DN
AUTH_BASIC_LDAP_BIND_DN | string | uid=reva,ou=sysusers,o=libregraph-idm | LDAP DN to use for simple bind authentication with the target LDAP server.|
| LDAP_BIND_PASSWORD
AUTH_BASIC_LDAP_BIND_PASSWORD | string | | Password to use for authenticating the 'bind_dn'.|
-| OCIS_LDAP_USER_BASE_DN
LDAP_USER_BASE_DN
AUTH_BASIC_LDAP_USER_BASE_DN | string | ou=users,o=libregraph-idm | Search base DN for looking up LDAP users.|
-| OCIS_LDAP_GROUP_BASE_DN
LDAP_GROUP_BASE_DN
AUTH_BASIC_LDAP_GROUP_BASE_DN | string | ou=groups,o=libregraph-idm | Search base DN for looking up LDAP groups.|
-| OCIS_LDAP_USER_SCOPE
LDAP_USER_SCOPE
AUTH_BASIC_LDAP_USER_SCOPE | string | sub | LDAP search scope to use when looking up users. Supported values are 'base', 'one' and 'sub'.|
-| OCIS_LDAP_GROUP_SCOPE
LDAP_GROUP_SCOPE
AUTH_BASIC_LDAP_GROUP_SCOPE | string | sub | LDAP search scope to use when looking up groups. Supported values are 'base', 'one' and 'sub'.|
-| OCIS_LDAP_USER_FILTER
LDAP_USER_FILTER
AUTH_BASIC_LDAP_USER_FILTER | string | | LDAP filter to add to the default filters for user search like '(objectclass=ownCloud)'.|
-| OCIS_LDAP_GROUP_FILTER
LDAP_GROUP_FILTER
AUTH_BASIC_LDAP_GROUP_FILTER | string | | LDAP filter to add to the default filters for group searches.|
-| OCIS_LDAP_USER_OBJECTCLASS
LDAP_USER_OBJECTCLASS
AUTH_BASIC_LDAP_USER_OBJECTCLASS | string | inetOrgPerson | The object class to use for users in the default user search filter ('inetOrgPerson').|
-| OCIS_LDAP_GROUP_OBJECTCLASS
LDAP_GROUP_OBJECTCLASS
AUTH_BASIC_LDAP_GROUP_OBJECTCLASS | string | groupOfNames | The object class to use for groups in the default group search filter ('groupOfNames').|
+| OCIS_LDAP_USER_BASE_DN
AUTH_BASIC_LDAP_USER_BASE_DN | string | ou=users,o=libregraph-idm | Search base DN for looking up LDAP users.|
+| OCIS_LDAP_GROUP_BASE_DN
AUTH_BASIC_LDAP_GROUP_BASE_DN | string | ou=groups,o=libregraph-idm | Search base DN for looking up LDAP groups.|
+| OCIS_LDAP_USER_SCOPE
AUTH_BASIC_LDAP_USER_SCOPE | string | sub | LDAP search scope to use when looking up users. Supported values are 'base', 'one' and 'sub'.|
+| OCIS_LDAP_GROUP_SCOPE
AUTH_BASIC_LDAP_GROUP_SCOPE | string | sub | LDAP search scope to use when looking up groups. Supported values are 'base', 'one' and 'sub'.|
+| OCIS_LDAP_USER_FILTER
AUTH_BASIC_LDAP_USER_FILTER | string | | LDAP filter to add to the default filters for user search like '(objectclass=ownCloud)'.|
+| OCIS_LDAP_GROUP_FILTER
AUTH_BASIC_LDAP_GROUP_FILTER | string | | LDAP filter to add to the default filters for group searches.|
+| OCIS_LDAP_USER_OBJECTCLASS
AUTH_BASIC_LDAP_USER_OBJECTCLASS | string | inetOrgPerson | The object class to use for users in the default user search filter ('inetOrgPerson').|
+| OCIS_LDAP_GROUP_OBJECTCLASS
AUTH_BASIC_LDAP_GROUP_OBJECTCLASS | string | groupOfNames | The object class to use for groups in the default group search filter ('groupOfNames').|
| LDAP_LOGIN_ATTRIBUTES
AUTH_BASIC_LDAP_LOGIN_ATTRIBUTES | []string | [uid] | The user object attributes, that can be used for login.|
| OCIS_URL
OCIS_OIDC_ISSUER
AUTH_BASIC_IDP_URL | string | https://localhost:9200 | The identity provider value to set in the userids of the CS3 user objects for users returned by this user provider.|
-| OCIS_LDAP_DISABLE_USER_MECHANISM
LDAP_DISABLE_USER_MECHANISM
AUTH_BASIC_DISABLE_USER_MECHANISM | string | attribute | An option to control the behavior for disabling users. Valid options are 'none', 'attribute' and 'group'. If set to 'group', disabling a user via API will add the user to the configured group for disabled users, if set to 'attribute' this will be done in the ldap user entry, if set to 'none' the disable request is not processed.|
-| OCIS_LDAP_DISABLED_USERS_GROUP_DN
LDAP_DISABLED_USERS_GROUP_DN
AUTH_BASIC_DISABLED_USERS_GROUP_DN | string | cn=DisabledUsersGroup,ou=groups,o=libregraph-idm | The distinguished name of the group to which added users will be classified as disabled when 'disable_user_mechanism' is set to 'group'.|
-| OCIS_LDAP_USER_SCHEMA_ID
LDAP_USER_SCHEMA_ID
AUTH_BASIC_LDAP_USER_SCHEMA_ID | string | ownclouduuid | LDAP Attribute to use as the unique ID for users. This should be a stable globally unique ID like a UUID.|
-| OCIS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING
LDAP_USER_SCHEMA_ID_IS_OCTETSTRING
AUTH_BASIC_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING | bool | false | Set this to true if the defined 'ID' attribute for users is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the user IDs.|
-| OCIS_LDAP_USER_SCHEMA_MAIL
LDAP_USER_SCHEMA_MAIL
AUTH_BASIC_LDAP_USER_SCHEMA_MAIL | string | mail | LDAP Attribute to use for the email address of users.|
-| OCIS_LDAP_USER_SCHEMA_DISPLAYNAME
LDAP_USER_SCHEMA_DISPLAYNAME
AUTH_BASIC_LDAP_USER_SCHEMA_DISPLAYNAME | string | displayname | LDAP Attribute to use for the displayname of users.|
-| OCIS_LDAP_USER_SCHEMA_USERNAME
LDAP_USER_SCHEMA_USERNAME
AUTH_BASIC_LDAP_USER_SCHEMA_USERNAME | string | uid | LDAP Attribute to use for username of users.|
-| OCIS_LDAP_USER_ENABLED_ATTRIBUTE
LDAP_USER_ENABLED_ATTRIBUTE
AUTH_BASIC_LDAP_USER_ENABLED_ATTRIBUTE | string | ownCloudUserEnabled | LDAP attribute to use as a flag telling if the user is enabled or disabled.|
-| OCIS_LDAP_GROUP_SCHEMA_ID
LDAP_GROUP_SCHEMA_ID
AUTH_BASIC_LDAP_GROUP_SCHEMA_ID | string | ownclouduuid | LDAP Attribute to use as the unique id for groups. This should be a stable globally unique id (e.g. a UUID).|
-| OCIS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING
LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING
AUTH_BASIC_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING | bool | false | Set this to true if the defined 'id' attribute for groups is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the group IDs.|
-| OCIS_LDAP_GROUP_SCHEMA_MAIL
LDAP_GROUP_SCHEMA_MAIL
AUTH_BASIC_LDAP_GROUP_SCHEMA_MAIL | string | mail | LDAP Attribute to use for the email address of groups (can be empty).|
-| OCIS_LDAP_GROUP_SCHEMA_DISPLAYNAME
LDAP_GROUP_SCHEMA_DISPLAYNAME
AUTH_BASIC_LDAP_GROUP_SCHEMA_DISPLAYNAME | string | cn | LDAP Attribute to use for the displayname of groups (often the same as groupname attribute).|
-| OCIS_LDAP_GROUP_SCHEMA_GROUPNAME
LDAP_GROUP_SCHEMA_GROUPNAME
AUTH_BASIC_LDAP_GROUP_SCHEMA_GROUPNAME | string | cn | LDAP Attribute to use for the name of groups.|
-| OCIS_LDAP_GROUP_SCHEMA_MEMBER
LDAP_GROUP_SCHEMA_MEMBER
AUTH_BASIC_LDAP_GROUP_SCHEMA_MEMBER | string | member | LDAP Attribute that is used for group members.|
+| OCIS_LDAP_DISABLE_USER_MECHANISM
AUTH_BASIC_DISABLE_USER_MECHANISM | string | attribute | An option to control the behavior for disabling users. Valid options are 'none', 'attribute' and 'group'. If set to 'group', disabling a user via API will add the user to the configured group for disabled users, if set to 'attribute' this will be done in the ldap user entry, if set to 'none' the disable request is not processed.|
+| OCIS_LDAP_DISABLED_USERS_GROUP_DN
AUTH_BASIC_DISABLED_USERS_GROUP_DN | string | cn=DisabledUsersGroup,ou=groups,o=libregraph-idm | The distinguished name of the group to which added users will be classified as disabled when 'disable_user_mechanism' is set to 'group'.|
+| OCIS_LDAP_USER_SCHEMA_ID
AUTH_BASIC_LDAP_USER_SCHEMA_ID | string | ownclouduuid | LDAP Attribute to use as the unique ID for users. This should be a stable globally unique ID like a UUID.|
+| OCIS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING
AUTH_BASIC_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING | bool | false | Set this to true if the defined 'ID' attribute for users is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the user IDs.|
+| OCIS_LDAP_USER_SCHEMA_MAIL
AUTH_BASIC_LDAP_USER_SCHEMA_MAIL | string | mail | LDAP Attribute to use for the email address of users.|
+| OCIS_LDAP_USER_SCHEMA_DISPLAYNAME
AUTH_BASIC_LDAP_USER_SCHEMA_DISPLAYNAME | string | displayname | LDAP Attribute to use for the displayname of users.|
+| OCIS_LDAP_USER_SCHEMA_USERNAME
AUTH_BASIC_LDAP_USER_SCHEMA_USERNAME | string | uid | LDAP Attribute to use for username of users.|
+| OCIS_LDAP_USER_ENABLED_ATTRIBUTE
AUTH_BASIC_LDAP_USER_ENABLED_ATTRIBUTE | string | ownCloudUserEnabled | LDAP attribute to use as a flag telling if the user is enabled or disabled.|
+| OCIS_LDAP_GROUP_SCHEMA_ID
AUTH_BASIC_LDAP_GROUP_SCHEMA_ID | string | ownclouduuid | LDAP Attribute to use as the unique id for groups. This should be a stable globally unique id (e.g. a UUID).|
+| OCIS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING
AUTH_BASIC_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING | bool | false | Set this to true if the defined 'id' attribute for groups is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the group IDs.|
+| OCIS_LDAP_GROUP_SCHEMA_MAIL
AUTH_BASIC_LDAP_GROUP_SCHEMA_MAIL | string | mail | LDAP Attribute to use for the email address of groups (can be empty).|
+| OCIS_LDAP_GROUP_SCHEMA_DISPLAYNAME
AUTH_BASIC_LDAP_GROUP_SCHEMA_DISPLAYNAME | string | cn | LDAP Attribute to use for the displayname of groups (often the same as groupname attribute).|
+| OCIS_LDAP_GROUP_SCHEMA_GROUPNAME
AUTH_BASIC_LDAP_GROUP_SCHEMA_GROUPNAME | string | cn | LDAP Attribute to use for the name of groups.|
+| OCIS_LDAP_GROUP_SCHEMA_MEMBER
AUTH_BASIC_LDAP_GROUP_SCHEMA_MEMBER | string | member | LDAP Attribute that is used for group members.|
| AUTH_BASIC_OWNCLOUDSQL_DB_USERNAME | string | owncloud | Database user to use for authenticating with the owncloud database.|
| AUTH_BASIC_OWNCLOUDSQL_DB_PASSWORD | string | | Password for the database user.|
| AUTH_BASIC_OWNCLOUDSQL_DB_HOST | string | mysql | Hostname of the database server.|
diff --git a/services/_includes/auth-bearer_configvars.md b/services/_includes/auth-bearer_configvars.md
index a48e79bbf5f..d2ea1291838 100644
--- a/services/_includes/auth-bearer_configvars.md
+++ b/services/_includes/auth-bearer_configvars.md
@@ -17,7 +17,7 @@
| AUTH_BEARER_GRPC_ADDR | string | 127.0.0.1:9148 | The bind address of the GRPC service.|
| AUTH_BEARER_GRPC_PROTOCOL | string | tcp | The transport protocol of the GRPC service.|
| OCIS_JWT_SECRET
AUTH_BEARER_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| AUTH_BEARER_SKIP_USER_GROUPS_IN_TOKEN | bool | false | Disables the encoding of the user's group memberships in the reva access token. This reduces the token size, especially when users are members of a large number of groups.|
diff --git a/services/_includes/auth-machine_configvars.md b/services/_includes/auth-machine_configvars.md
index 0fa5ea417de..4ee25e33822 100644
--- a/services/_includes/auth-machine_configvars.md
+++ b/services/_includes/auth-machine_configvars.md
@@ -17,7 +17,7 @@
| AUTH_MACHINE_GRPC_ADDR | string | 127.0.0.1:9166 | The bind address of the GRPC service.|
| AUTH_MACHINE_GRPC_PROTOCOL | string | tcp | The transport protocol of the GRPC service.|
| OCIS_JWT_SECRET
AUTH_MACHINE_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| AUTH_MACHINE_SKIP_USER_GROUPS_IN_TOKEN | bool | false | Disables the encoding of the user's group memberships in the reva access token. This reduces the token size, especially when users are members of a large number of groups.|
diff --git a/services/_includes/frontend_configvars.md b/services/_includes/frontend_configvars.md
index 0a06ead2cc6..e82965079e6 100644
--- a/services/_includes/frontend_configvars.md
+++ b/services/_includes/frontend_configvars.md
@@ -21,9 +21,9 @@
| OCIS_CORS_ALLOW_METHODS
FRONTEND_CORS_ALLOW_METHODS | []string | [OPTIONS HEAD GET PUT POST DELETE MKCOL PROPFIND PROPPATCH MOVE COPY REPORT SEARCH] | A comma-separated list of allowed CORS methods. See following chapter for more details: *Access-Control-Request-Method* at https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Request-Method|
| OCIS_CORS_ALLOW_HEADERS
FRONTEND_CORS_ALLOW_HEADERS | []string | [Origin Accept Content-Type Depth Authorization Ocs-Apirequest If-None-Match If-Match Destination Overwrite X-Request-Id X-Requested-With Tus-Resumable Tus-Checksum-Algorithm Upload-Concat Upload-Length Upload-Metadata Upload-Defer-Length Upload-Expires Upload-Checksum Upload-Offset X-HTTP-Method-Override Cache-Control] | A blank or comma-separated list of allowed CORS headers. See following chapter for more details: *Access-Control-Request-Headers* at https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Request-Headers.|
| OCIS_CORS_ALLOW_CREDENTIALS
FRONTEND_CORS_ALLOW_CREDENTIALS | bool | true | Allow credentials for CORS.See following chapter for more details: *Access-Control-Allow-Credentials* at https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Allow-Credentials.|
-| OCIS_TRANSFER_SECRET
STORAGE_TRANSFER_SECRET | string | | Transfer secret for signing file up- and download requests.|
+| OCIS_TRANSFER_SECRET | string | | Transfer secret for signing file up- and download requests.|
| OCIS_JWT_SECRET
FRONTEND_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| OCIS_MACHINE_AUTH_API_KEY
FRONTEND_MACHINE_AUTH_API_KEY | string | | The machine auth API key used to validate internal requests necessary to access resources from other services.|
@@ -49,7 +49,7 @@
| FRONTEND_DATA_GATEWAY_PREFIX | string | data | Path prefix for the data gateway.|
| FRONTEND_OCS_PREFIX | string | ocs | URL path prefix for the OCS service. Note that the string must not start with '/'.|
| FRONTEND_OCS_SHARE_PREFIX | string | /Shares | Path prefix for shares as part of an ocis resource. Note that the path must start with '/'.|
-| FRONTEND_OCS_PERSONAL_NAMESPACE
FRONTEND_OCS_HOME_NAMESPACE | string | /users/{{.Id.OpaqueId}} | Homespace namespace identifier.|
+| FRONTEND_OCS_PERSONAL_NAMESPACE | string | /users/{{.Id.OpaqueId}} | Homespace namespace identifier.|
| FRONTEND_OCS_ADDITIONAL_INFO_ATTRIBUTE | string | {{.Mail}} | Additional information attribute for the user like {{.Mail}}.|
| OCIS_CACHE_STORE
FRONTEND_OCS_STAT_CACHE_STORE | string | noop | The type of the cache store. Supported values are: 'memory', 'ocmem', 'etcd', 'redis', 'redis-sentinel', 'nats-js', 'noop'. See the text description for details.|
| OCIS_CACHE_STORE_NODES
FRONTEND_OCS_STAT_CACHE_STORE_NODES | []string | [] | A comma separated list of nodes to access the configured store. This has no effect when 'memory' or 'ocmem' stores are configured. Note that the behaviour how nodes are used is dependent on the library of the configured store.|
diff --git a/services/_includes/gateway_configvars.md b/services/_includes/gateway_configvars.md
index f220b20cae7..023138ba6e7 100644
--- a/services/_includes/gateway_configvars.md
+++ b/services/_includes/gateway_configvars.md
@@ -17,14 +17,14 @@
| GATEWAY_GRPC_ADDR | string | 127.0.0.1:9142 | The bind address of the GRPC service.|
| GATEWAY_GRPC_PROTOCOL | string | tcp | The transport protocol of the GRPC service.|
| OCIS_JWT_SECRET
GATEWAY_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| GATEWAY_SKIP_USER_GROUPS_IN_TOKEN | bool | false | Disables the loading of user's group memberships from the reva access token.|
| GATEWAY_COMMIT_SHARE_TO_STORAGE_GRANT | bool | true | Commit shares to storage grants. This grants access to shared resources for the share receiver directly on the storage.|
| GATEWAY_SHARE_FOLDER_NAME | string | Shares | Name of the share folder in users' home space.|
| GATEWAY_DISABLE_HOME_CREATION_ON_LOGIN | bool | true | Disable creation of the home space on login.|
-| OCIS_TRANSFER_SECRET
STORAGE_TRANSFER_SECRET | string | | The storage transfer secret.|
+| OCIS_TRANSFER_SECRET | string | | The storage transfer secret.|
| GATEWAY_TRANSFER_EXPIRES | int | 86400 | Expiry for the gateway tokens.|
| OCIS_CACHE_STORE
GATEWAY_STAT_CACHE_STORE | string | noop | The type of the cache store. Supported values are: 'memory', 'ocmem', 'etcd', 'redis', 'redis-sentinel', 'nats-js', 'noop'. See the text description for details.|
| OCIS_CACHE_STORE_NODES
GATEWAY_STAT_CACHE_STORE_NODES | []string | [] | A comma separated list of nodes to access the configured store. This has no effect when 'memory' or 'ocmem' stores are configured. Note that the behaviour how nodes are used is dependent on the library of the configured store.|
diff --git a/services/_includes/graph_configvars.md b/services/_includes/graph_configvars.md
index 26a8e160933..3b9ebf75ff0 100644
--- a/services/_includes/graph_configvars.md
+++ b/services/_includes/graph_configvars.md
@@ -33,7 +33,7 @@
| GRAPH_GROUP_MEMBERS_PATCH_LIMIT | int | 20 | The amount of group members allowed to be added with a single patch request.|
| GRAPH_USERNAME_MATCH | string | default | Apply restrictions to usernames. Supported values are 'default' and 'none'. When set to 'default', user names must not start with a number and are restricted to ASCII characters. When set to 'none', no restrictions are applied. The default value is 'default'.|
| GRAPH_ASSIGN_DEFAULT_USER_ROLE | bool | true | Whether to assign newly created users the default role 'User'. Set this to 'false' if you want to assign roles manually, or if the role assignment should happen at first login. Set this to 'true' (the default) to assign the role 'User' when creating a new user.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| OCIS_JWT_SECRET
GRAPH_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
@@ -46,36 +46,36 @@
| GRAPH_SPACES_USERS_CACHE_TTL | int | 60000000000 | Max TTL in seconds for the spaces users cache.|
| GRAPH_SPACES_GROUPS_CACHE_TTL | int | 60000000000 | Max TTL in seconds for the spaces groups cache.|
| GRAPH_IDENTITY_BACKEND | string | ldap | The user identity backend to use. Supported backend types are 'ldap' and 'cs3'.|
-| OCIS_LDAP_URI
LDAP_URI
GRAPH_LDAP_URI | string | ldaps://localhost:9235 | URI of the LDAP Server to connect to. Supported URI schemes are 'ldaps://' and 'ldap://'|
-| OCIS_LDAP_CACERT
LDAP_CACERT
GRAPH_LDAP_CACERT | string | ~/.ocis/idm/ldap.crt | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idm.|
-| OCIS_LDAP_INSECURE
LDAP_INSECURE
GRAPH_LDAP_INSECURE | bool | false | Disable TLS certificate validation for the LDAP connections. Do not set this in production environments.|
-| OCIS_LDAP_BIND_DN
LDAP_BIND_DN
GRAPH_LDAP_BIND_DN | string | uid=libregraph,ou=sysusers,o=libregraph-idm | LDAP DN to use for simple bind authentication with the target LDAP server.|
+| OCIS_LDAP_URI
GRAPH_LDAP_URI | string | ldaps://localhost:9235 | URI of the LDAP Server to connect to. Supported URI schemes are 'ldaps://' and 'ldap://'|
+| OCIS_LDAP_CACERT
GRAPH_LDAP_CACERT | string | ~/.ocis/idm/ldap.crt | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idm.|
+| OCIS_LDAP_INSECURE
GRAPH_LDAP_INSECURE | bool | false | Disable TLS certificate validation for the LDAP connections. Do not set this in production environments.|
+| OCIS_LDAP_BIND_DN
GRAPH_LDAP_BIND_DN | string | uid=libregraph,ou=sysusers,o=libregraph-idm | LDAP DN to use for simple bind authentication with the target LDAP server.|
| LDAP_BIND_PASSWORD
GRAPH_LDAP_BIND_PASSWORD | string | | Password to use for authenticating the 'bind_dn'.|
| GRAPH_LDAP_SERVER_UUID | bool | false | If set to true, rely on the LDAP Server to generate a unique ID for users and groups, like when using 'entryUUID' as the user ID attribute.|
| GRAPH_LDAP_SERVER_USE_PASSWORD_MODIFY_EXOP | bool | true | Use the 'Password Modify Extended Operation' for updating user passwords.|
| OCIS_LDAP_SERVER_WRITE_ENABLED
GRAPH_LDAP_SERVER_WRITE_ENABLED | bool | true | Allow creating, modifying and deleting LDAP users via the GRAPH API. This can only be set to 'true' when keeping default settings for the LDAP user and group attribute types (the 'OCIS_LDAP_USER_SCHEMA_* and 'OCIS_LDAP_GROUP_SCHEMA_* variables).|
| GRAPH_LDAP_REFINT_ENABLED | bool | false | Signals that the server has the refint plugin enabled, which makes some actions not needed.|
-| OCIS_LDAP_USER_BASE_DN
LDAP_USER_BASE_DN
GRAPH_LDAP_USER_BASE_DN | string | ou=users,o=libregraph-idm | Search base DN for looking up LDAP users.|
-| OCIS_LDAP_USER_SCOPE
LDAP_USER_SCOPE
GRAPH_LDAP_USER_SCOPE | string | sub | LDAP search scope to use when looking up users. Supported scopes are 'base', 'one' and 'sub'.|
-| OCIS_LDAP_USER_FILTER
LDAP_USER_FILTER
GRAPH_LDAP_USER_FILTER | string | | LDAP filter to add to the default filters for user search like '(objectclass=ownCloud)'.|
-| OCIS_LDAP_USER_OBJECTCLASS
LDAP_USER_OBJECTCLASS
GRAPH_LDAP_USER_OBJECTCLASS | string | inetOrgPerson | The object class to use for users in the default user search filter ('inetOrgPerson').|
-| OCIS_LDAP_USER_SCHEMA_MAIL
LDAP_USER_SCHEMA_MAIL
GRAPH_LDAP_USER_EMAIL_ATTRIBUTE | string | mail | LDAP Attribute to use for the email address of users.|
+| OCIS_LDAP_USER_BASE_DN
GRAPH_LDAP_USER_BASE_DN | string | ou=users,o=libregraph-idm | Search base DN for looking up LDAP users.|
+| OCIS_LDAP_USER_SCOPE
GRAPH_LDAP_USER_SCOPE | string | sub | LDAP search scope to use when looking up users. Supported scopes are 'base', 'one' and 'sub'.|
+| OCIS_LDAP_USER_FILTER
GRAPH_LDAP_USER_FILTER | string | | LDAP filter to add to the default filters for user search like '(objectclass=ownCloud)'.|
+| OCIS_LDAP_USER_OBJECTCLASS
GRAPH_LDAP_USER_OBJECTCLASS | string | inetOrgPerson | The object class to use for users in the default user search filter ('inetOrgPerson').|
+| OCIS_LDAP_USER_SCHEMA_MAIL
GRAPH_LDAP_USER_EMAIL_ATTRIBUTE | string | mail | LDAP Attribute to use for the email address of users.|
| LDAP_USER_SCHEMA_DISPLAY_NAME
GRAPH_LDAP_USER_DISPLAYNAME_ATTRIBUTE | string | displayName | LDAP Attribute to use for the displayname of users.|
-| OCIS_LDAP_USER_SCHEMA_USERNAME
LDAP_USER_SCHEMA_USERNAME
GRAPH_LDAP_USER_NAME_ATTRIBUTE | string | uid | LDAP Attribute to use for username of users.|
-| OCIS_LDAP_USER_SCHEMA_ID
LDAP_USER_SCHEMA_ID
GRAPH_LDAP_USER_UID_ATTRIBUTE | string | owncloudUUID | LDAP Attribute to use as the unique ID for users. This should be a stable globally unique ID like a UUID.|
+| OCIS_LDAP_USER_SCHEMA_USERNAME
GRAPH_LDAP_USER_NAME_ATTRIBUTE | string | uid | LDAP Attribute to use for username of users.|
+| OCIS_LDAP_USER_SCHEMA_ID
GRAPH_LDAP_USER_UID_ATTRIBUTE | string | owncloudUUID | LDAP Attribute to use as the unique ID for users. This should be a stable globally unique ID like a UUID.|
| OCIS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING
GRAPH_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING | bool | false | Set this to true if the defined 'ID' attribute for users is of the 'OCTETSTRING' syntax. This is required when using the 'objectGUID' attribute of Active Directory for the user ID's.|
-| OCIS_LDAP_USER_SCHEMA_USER_TYPE
LDAP_USER_SCHEMA_USER_TYPE
GRAPH_LDAP_USER_TYPE_ATTRIBUTE | string | ownCloudUserType | LDAP Attribute to distinguish between 'Member' and 'Guest' users. Default is 'ownCloudUserType'.|
-| OCIS_LDAP_USER_ENABLED_ATTRIBUTE
LDAP_USER_ENABLED_ATTRIBUTE
GRAPH_USER_ENABLED_ATTRIBUTE | string | ownCloudUserEnabled | LDAP Attribute to use as a flag telling if the user is enabled or disabled.|
-| OCIS_LDAP_DISABLE_USER_MECHANISM
LDAP_DISABLE_USER_MECHANISM
GRAPH_DISABLE_USER_MECHANISM | string | attribute | An option to control the behavior for disabling users. Supported options are 'none', 'attribute' and 'group'. If set to 'group', disabling a user via API will add the user to the configured group for disabled users, if set to 'attribute' this will be done in the ldap user entry, if set to 'none' the disable request is not processed. Default is 'attribute'.|
-| OCIS_LDAP_DISABLED_USERS_GROUP_DN
LDAP_DISABLED_USERS_GROUP_DN
GRAPH_DISABLED_USERS_GROUP_DN | string | cn=DisabledUsersGroup,ou=groups,o=libregraph-idm | The distinguished name of the group to which added users will be classified as disabled when 'disable_user_mechanism' is set to 'group'.|
-| OCIS_LDAP_GROUP_BASE_DN
LDAP_GROUP_BASE_DN
GRAPH_LDAP_GROUP_BASE_DN | string | ou=groups,o=libregraph-idm | Search base DN for looking up LDAP groups.|
+| OCIS_LDAP_USER_SCHEMA_USER_TYPE
GRAPH_LDAP_USER_TYPE_ATTRIBUTE | string | ownCloudUserType | LDAP Attribute to distinguish between 'Member' and 'Guest' users. Default is 'ownCloudUserType'.|
+| OCIS_LDAP_USER_ENABLED_ATTRIBUTE
GRAPH_USER_ENABLED_ATTRIBUTE | string | ownCloudUserEnabled | LDAP Attribute to use as a flag telling if the user is enabled or disabled.|
+| OCIS_LDAP_DISABLE_USER_MECHANISM
GRAPH_DISABLE_USER_MECHANISM | string | attribute | An option to control the behavior for disabling users. Supported options are 'none', 'attribute' and 'group'. If set to 'group', disabling a user via API will add the user to the configured group for disabled users, if set to 'attribute' this will be done in the ldap user entry, if set to 'none' the disable request is not processed. Default is 'attribute'.|
+| OCIS_LDAP_DISABLED_USERS_GROUP_DN
GRAPH_DISABLED_USERS_GROUP_DN | string | cn=DisabledUsersGroup,ou=groups,o=libregraph-idm | The distinguished name of the group to which added users will be classified as disabled when 'disable_user_mechanism' is set to 'group'.|
+| OCIS_LDAP_GROUP_BASE_DN
GRAPH_LDAP_GROUP_BASE_DN | string | ou=groups,o=libregraph-idm | Search base DN for looking up LDAP groups.|
| GRAPH_LDAP_GROUP_CREATE_BASE_DN | string | ou=groups,o=libregraph-idm | Parent DN under which new groups are created. This DN needs to be subordinate to the 'GRAPH_LDAP_GROUP_BASE_DN'. This setting is only relevant when 'GRAPH_LDAP_SERVER_WRITE_ENABLED' is 'true'. It defaults to the value of 'GRAPH_LDAP_GROUP_BASE_DN'. All groups outside of this subtree are treated as readonly groups and cannot be updated.|
-| OCIS_LDAP_GROUP_SCOPE
LDAP_GROUP_SCOPE
GRAPH_LDAP_GROUP_SEARCH_SCOPE | string | sub | LDAP search scope to use when looking up groups. Supported scopes are 'base', 'one' and 'sub'.|
-| OCIS_LDAP_GROUP_FILTER
LDAP_GROUP_FILTER
GRAPH_LDAP_GROUP_FILTER | string | | LDAP filter to add to the default filters for group searches.|
-| OCIS_LDAP_GROUP_OBJECTCLASS
LDAP_GROUP_OBJECTCLASS
GRAPH_LDAP_GROUP_OBJECTCLASS | string | groupOfNames | The object class to use for groups in the default group search filter ('groupOfNames').|
-| OCIS_LDAP_GROUP_SCHEMA_GROUPNAME
LDAP_GROUP_SCHEMA_GROUPNAME
GRAPH_LDAP_GROUP_NAME_ATTRIBUTE | string | cn | LDAP Attribute to use for the name of groups.|
-| OCIS_LDAP_GROUP_SCHEMA_MEMBER
LDAP_GROUP_SCHEMA_MEMBER
GRAPH_LDAP_GROUP_MEMBER_ATTRIBUTE | string | member | LDAP Attribute that is used for group members.|
-| OCIS_LDAP_GROUP_SCHEMA_ID
LDAP_GROUP_SCHEMA_ID
GRAPH_LDAP_GROUP_ID_ATTRIBUTE | string | owncloudUUID | LDAP Attribute to use as the unique id for groups. This should be a stable globally unique ID like a UUID.|
+| OCIS_LDAP_GROUP_SCOPE
GRAPH_LDAP_GROUP_SEARCH_SCOPE | string | sub | LDAP search scope to use when looking up groups. Supported scopes are 'base', 'one' and 'sub'.|
+| OCIS_LDAP_GROUP_FILTER
GRAPH_LDAP_GROUP_FILTER | string | | LDAP filter to add to the default filters for group searches.|
+| OCIS_LDAP_GROUP_OBJECTCLASS
GRAPH_LDAP_GROUP_OBJECTCLASS | string | groupOfNames | The object class to use for groups in the default group search filter ('groupOfNames').|
+| OCIS_LDAP_GROUP_SCHEMA_GROUPNAME
GRAPH_LDAP_GROUP_NAME_ATTRIBUTE | string | cn | LDAP Attribute to use for the name of groups.|
+| OCIS_LDAP_GROUP_SCHEMA_MEMBER
GRAPH_LDAP_GROUP_MEMBER_ATTRIBUTE | string | member | LDAP Attribute that is used for group members.|
+| OCIS_LDAP_GROUP_SCHEMA_ID
GRAPH_LDAP_GROUP_ID_ATTRIBUTE | string | owncloudUUID | LDAP Attribute to use as the unique id for groups. This should be a stable globally unique ID like a UUID.|
| OCIS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING
GRAPH_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING | bool | false | Set this to true if the defined 'ID' attribute for groups is of the 'OCTETSTRING' syntax. This is required when using the 'objectGUID' attribute of Active Directory for the group ID's.|
| GRAPH_LDAP_EDUCATION_RESOURCES_ENABLED | bool | false | Enable LDAP support for managing education related resources.|
| GRAPH_LDAP_SCHOOL_BASE_DN | string | | Search base DN for looking up LDAP schools.|
diff --git a/services/_includes/groups_configvars.md b/services/_includes/groups_configvars.md
index 7efc26e5bfc..348d9ad6a5c 100644
--- a/services/_includes/groups_configvars.md
+++ b/services/_includes/groups_configvars.md
@@ -17,37 +17,37 @@
| GROUPS_GRPC_ADDR | string | 127.0.0.1:9160 | The bind address of the GRPC service.|
| GROUPS_GRPC_PROTOCOL | string | tcp | The transport protocol of the GRPC service.|
| OCIS_JWT_SECRET
GROUPS_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| GROUPS_SKIP_USER_GROUPS_IN_TOKEN | bool | false | Disables the loading of user's group memberships from the reva access token.|
| GROUPS_DRIVER | string | ldap | The driver which should be used by the groups service. Supported values are 'ldap' and 'owncloudsql'.|
-| OCIS_LDAP_URI
LDAP_URI
GROUPS_LDAP_URI | string | ldaps://localhost:9235 | URI of the LDAP Server to connect to. Supported URI schemes are 'ldaps://' and 'ldap://'|
-| OCIS_LDAP_CACERT
LDAP_CACERT
GROUPS_LDAP_CACERT | string | ~/.ocis/idm/ldap.crt | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idm.|
-| OCIS_LDAP_INSECURE
LDAP_INSECURE
GROUPS_LDAP_INSECURE | bool | false | Disable TLS certificate validation for the LDAP connections. Do not set this in production environments.|
-| OCIS_LDAP_BIND_DN
LDAP_BIND_DN
GROUPS_LDAP_BIND_DN | string | uid=reva,ou=sysusers,o=libregraph-idm | LDAP DN to use for simple bind authentication with the target LDAP server.|
+| OCIS_LDAP_URI
GROUPS_LDAP_URI | string | ldaps://localhost:9235 | URI of the LDAP Server to connect to. Supported URI schemes are 'ldaps://' and 'ldap://'|
+| OCIS_LDAP_CACERT
GROUPS_LDAP_CACERT | string | ~/.ocis/idm/ldap.crt | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idm.|
+| OCIS_LDAP_INSECURE
GROUPS_LDAP_INSECURE | bool | false | Disable TLS certificate validation for the LDAP connections. Do not set this in production environments.|
+| OCIS_LDAP_BIND_DN
GROUPS_LDAP_BIND_DN | string | uid=reva,ou=sysusers,o=libregraph-idm | LDAP DN to use for simple bind authentication with the target LDAP server.|
| LDAP_BIND_PASSWORD
GROUPS_LDAP_BIND_PASSWORD | string | | Password to use for authenticating the 'bind_dn'.|
-| OCIS_LDAP_USER_BASE_DN
LDAP_USER_BASE_DN
GROUPS_LDAP_USER_BASE_DN | string | ou=users,o=libregraph-idm | Search base DN for looking up LDAP users.|
-| OCIS_LDAP_GROUP_BASE_DN
LDAP_GROUP_BASE_DN
GROUPS_LDAP_GROUP_BASE_DN | string | ou=groups,o=libregraph-idm | Search base DN for looking up LDAP groups.|
-| OCIS_LDAP_USER_SCOPE
LDAP_USER_SCOPE
GROUPS_LDAP_USER_SCOPE | string | sub | LDAP search scope to use when looking up users. Supported scopes are 'base', 'one' and 'sub'.|
-| OCIS_LDAP_GROUP_SCOPE
LDAP_GROUP_SCOPE
GROUPS_LDAP_GROUP_SCOPE | string | sub | LDAP search scope to use when looking up groups. Supported scopes are 'base', 'one' and 'sub'.|
+| OCIS_LDAP_USER_BASE_DN
GROUPS_LDAP_USER_BASE_DN | string | ou=users,o=libregraph-idm | Search base DN for looking up LDAP users.|
+| OCIS_LDAP_GROUP_BASE_DN
GROUPS_LDAP_GROUP_BASE_DN | string | ou=groups,o=libregraph-idm | Search base DN for looking up LDAP groups.|
+| OCIS_LDAP_USER_SCOPE
GROUPS_LDAP_USER_SCOPE | string | sub | LDAP search scope to use when looking up users. Supported scopes are 'base', 'one' and 'sub'.|
+| OCIS_LDAP_GROUP_SCOPE
GROUPS_LDAP_GROUP_SCOPE | string | sub | LDAP search scope to use when looking up groups. Supported scopes are 'base', 'one' and 'sub'.|
| LDAP_GROUP_SUBSTRING_FILTER_TYPE
GROUPS_LDAP_GROUP_SUBSTRING_FILTER_TYPE | string | any | Type of substring search filter to use for substring searches for groups. Supported values are 'initial', 'final' and 'any'. The value 'initial' is used for doing prefix only searches, 'final' for doing suffix only searches or 'any' for doing full substring searches|
-| OCIS_LDAP_USER_FILTER
LDAP_USER_FILTER
GROUPS_LDAP_USER_FILTER | string | | LDAP filter to add to the default filters for user search like '(objectclass=ownCloud)'.|
-| OCIS_LDAP_GROUP_FILTER
LDAP_GROUP_FILTER
GROUPS_LDAP_GROUP_FILTER | string | | LDAP filter to add to the default filters for group searches.|
-| OCIS_LDAP_USER_OBJECTCLASS
LDAP_USER_OBJECTCLASS
GROUPS_LDAP_USER_OBJECTCLASS | string | inetOrgPerson | The object class to use for users in the default user search filter ('inetOrgPerson').|
-| OCIS_LDAP_GROUP_OBJECTCLASS
LDAP_GROUP_OBJECTCLASS
GROUPS_LDAP_GROUP_OBJECTCLASS | string | groupOfNames | The object class to use for groups in the default group search filter ('groupOfNames').|
+| OCIS_LDAP_USER_FILTER
GROUPS_LDAP_USER_FILTER | string | | LDAP filter to add to the default filters for user search like '(objectclass=ownCloud)'.|
+| OCIS_LDAP_GROUP_FILTER
GROUPS_LDAP_GROUP_FILTER | string | | LDAP filter to add to the default filters for group searches.|
+| OCIS_LDAP_USER_OBJECTCLASS
GROUPS_LDAP_USER_OBJECTCLASS | string | inetOrgPerson | The object class to use for users in the default user search filter ('inetOrgPerson').|
+| OCIS_LDAP_GROUP_OBJECTCLASS
GROUPS_LDAP_GROUP_OBJECTCLASS | string | groupOfNames | The object class to use for groups in the default group search filter ('groupOfNames').|
| OCIS_URL
OCIS_OIDC_ISSUER
GROUPS_IDP_URL | string | https://localhost:9200 | The identity provider value to set in the group IDs of the CS3 group objects for groups returned by this group provider.|
-| OCIS_LDAP_USER_SCHEMA_ID
LDAP_USER_SCHEMA_ID
GROUPS_LDAP_USER_SCHEMA_ID | string | ownclouduuid | LDAP Attribute to use as the unique id for users. This should be a stable globally unique id like a UUID.|
-| OCIS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING
LDAP_USER_SCHEMA_ID_IS_OCTETSTRING
GROUPS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING | bool | false | Set this to true if the defined 'ID' attribute for users is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the user ID's.|
-| OCIS_LDAP_USER_SCHEMA_MAIL
LDAP_USER_SCHEMA_MAIL
GROUPS_LDAP_USER_SCHEMA_MAIL | string | mail | LDAP Attribute to use for the email address of users.|
-| OCIS_LDAP_USER_SCHEMA_DISPLAYNAME
LDAP_USER_SCHEMA_DISPLAYNAME
GROUPS_LDAP_USER_SCHEMA_DISPLAYNAME | string | displayname | LDAP Attribute to use for the displayname of users.|
-| OCIS_LDAP_USER_SCHEMA_USERNAME
LDAP_USER_SCHEMA_USERNAME
GROUPS_LDAP_USER_SCHEMA_USERNAME | string | uid | LDAP Attribute to use for username of users.|
-| OCIS_LDAP_GROUP_SCHEMA_ID
LDAP_GROUP_SCHEMA_ID
GROUPS_LDAP_GROUP_SCHEMA_ID | string | ownclouduuid | LDAP Attribute to use as the unique id for groups. This should be a stable globally unique ID like a UUID.|
-| OCIS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING
LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING
GROUPS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING | bool | false | Set this to true if the defined 'id' attribute for groups is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the group ID's.|
-| OCIS_LDAP_GROUP_SCHEMA_MAIL
LDAP_GROUP_SCHEMA_MAIL
GROUPS_LDAP_GROUP_SCHEMA_MAIL | string | mail | LDAP Attribute to use for the email address of groups (can be empty).|
-| OCIS_LDAP_GROUP_SCHEMA_DISPLAYNAME
LDAP_GROUP_SCHEMA_DISPLAYNAME
GROUPS_LDAP_GROUP_SCHEMA_DISPLAYNAME | string | cn | LDAP Attribute to use for the displayname of groups (often the same as groupname attribute).|
-| OCIS_LDAP_GROUP_SCHEMA_GROUPNAME
LDAP_GROUP_SCHEMA_GROUPNAME
GROUPS_LDAP_GROUP_SCHEMA_GROUPNAME | string | cn | LDAP Attribute to use for the name of groups.|
-| OCIS_LDAP_GROUP_SCHEMA_MEMBER
LDAP_GROUP_SCHEMA_MEMBER
GROUPS_LDAP_GROUP_SCHEMA_MEMBER | string | member | LDAP Attribute that is used for group members.|
+| OCIS_LDAP_USER_SCHEMA_ID
GROUPS_LDAP_USER_SCHEMA_ID | string | ownclouduuid | LDAP Attribute to use as the unique id for users. This should be a stable globally unique id like a UUID.|
+| OCIS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING
GROUPS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING | bool | false | Set this to true if the defined 'ID' attribute for users is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the user ID's.|
+| OCIS_LDAP_USER_SCHEMA_MAIL
GROUPS_LDAP_USER_SCHEMA_MAIL | string | mail | LDAP Attribute to use for the email address of users.|
+| OCIS_LDAP_USER_SCHEMA_DISPLAYNAME
GROUPS_LDAP_USER_SCHEMA_DISPLAYNAME | string | displayname | LDAP Attribute to use for the displayname of users.|
+| OCIS_LDAP_USER_SCHEMA_USERNAME
GROUPS_LDAP_USER_SCHEMA_USERNAME | string | uid | LDAP Attribute to use for username of users.|
+| OCIS_LDAP_GROUP_SCHEMA_ID
GROUPS_LDAP_GROUP_SCHEMA_ID | string | ownclouduuid | LDAP Attribute to use as the unique id for groups. This should be a stable globally unique ID like a UUID.|
+| OCIS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING
GROUPS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING | bool | false | Set this to true if the defined 'id' attribute for groups is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the group ID's.|
+| OCIS_LDAP_GROUP_SCHEMA_MAIL
GROUPS_LDAP_GROUP_SCHEMA_MAIL | string | mail | LDAP Attribute to use for the email address of groups (can be empty).|
+| OCIS_LDAP_GROUP_SCHEMA_DISPLAYNAME
GROUPS_LDAP_GROUP_SCHEMA_DISPLAYNAME | string | cn | LDAP Attribute to use for the displayname of groups (often the same as groupname attribute).|
+| OCIS_LDAP_GROUP_SCHEMA_GROUPNAME
GROUPS_LDAP_GROUP_SCHEMA_GROUPNAME | string | cn | LDAP Attribute to use for the name of groups.|
+| OCIS_LDAP_GROUP_SCHEMA_MEMBER
GROUPS_LDAP_GROUP_SCHEMA_MEMBER | string | member | LDAP Attribute that is used for group members.|
| GROUPS_OWNCLOUDSQL_DB_USERNAME | string | owncloud | Database user to use for authenticating with the owncloud database.|
| GROUPS_OWNCLOUDSQL_DB_PASSWORD | string | | Password for the database user.|
| GROUPS_OWNCLOUDSQL_DB_HOST | string | mysql | Hostname of the database server.|
diff --git a/services/_includes/idp_configvars.md b/services/_includes/idp_configvars.md
index ee3dea61ee3..50627261488 100644
--- a/services/_includes/idp_configvars.md
+++ b/services/_includes/idp_configvars.md
@@ -20,7 +20,7 @@
| IDP_TRANSPORT_TLS_CERT | string | ~/.ocis/idp/server.crt | Path/File name of the TLS server certificate (in PEM format) for the IDP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idp.|
| IDP_TRANSPORT_TLS_KEY | string | ~/.ocis/idp/server.key | Path/File name for the TLS certificate key (in PEM format) for the server certificate to use for the IDP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idp.|
| IDP_TLS | bool | false | Disable or Enable HTTPS for the communication between the Proxy service and the IDP service. If set to 'true', the key and cert files need to be configured and present.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| OCIS_MACHINE_AUTH_API_KEY
IDP_MACHINE_AUTH_API_KEY | string | | Machine auth API key used to validate internal requests necessary for the access to resources from other services.|
@@ -31,7 +31,7 @@
| IDP_SIGN_IN_URI | string | | IDP sign-in url.|
| IDP_SIGN_OUT_URI | string | | IDP sign-out url.|
| IDP_ENDPOINT_URI | string | | URL of the IDP endpoint.|
-| OCIS_LDAP_INSECURE
LDAP_INSECURE
IDP_INSECURE | bool | false | Disable TLS certificate validation for the LDAP connections. Do not set this in production environments.|
+| OCIS_LDAP_INSECURE
IDP_INSECURE | bool | false | Disable TLS certificate validation for the LDAP connections. Do not set this in production environments.|
| IDP_ALLOW_CLIENT_GUESTS | bool | false | Allow guest clients to access oCIS.|
| IDP_ALLOW_DYNAMIC_CLIENT_REGISTRATION | bool | false | Allow dynamic client registration.|
| IDP_ENCRYPTION_SECRET_FILE | string | ~/.ocis/idp/encryption.key | Path to the encryption secret file, if unset, a new certificate will be autogenerated upon each restart, thus invalidating all existing sessions. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idp.|
@@ -43,17 +43,17 @@
| IDP_ID_TOKEN_EXPIRATION | uint64 | 300 | ID token lifespan in seconds (time before an ID token is expired).|
| IDP_REFRESH_TOKEN_EXPIRATION | uint64 | 2592000 | Refresh token lifespan in seconds (time before an refresh token is expired). This also limits the duration of an idle offline session.|
| IDP_DYNAMIC_CLIENT_SECRET_DURATION | uint64 | 0 | Lifespan in seconds of a dynamically registered OIDC client.|
-| OCIS_LDAP_URI
LDAP_URI
IDP_LDAP_URI | string | ldaps://localhost:9235 | Url of the LDAP service to use as IDP.|
-| OCIS_LDAP_CACERT
LDAP_CACERT
IDP_LDAP_TLS_CACERT | string | ~/.ocis/idm/ldap.crt | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idp.|
-| OCIS_LDAP_BIND_DN
LDAP_BIND_DN
IDP_LDAP_BIND_DN | string | uid=idp,ou=sysusers,o=libregraph-idm | LDAP DN to use for simple bind authentication with the target LDAP server.|
+| OCIS_LDAP_URI
IDP_LDAP_URI | string | ldaps://localhost:9235 | Url of the LDAP service to use as IDP.|
+| OCIS_LDAP_CACERT
IDP_LDAP_TLS_CACERT | string | ~/.ocis/idm/ldap.crt | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idp.|
+| OCIS_LDAP_BIND_DN
IDP_LDAP_BIND_DN | string | uid=idp,ou=sysusers,o=libregraph-idm | LDAP DN to use for simple bind authentication with the target LDAP server.|
| LDAP_BIND_PASSWORD
IDP_LDAP_BIND_PASSWORD | string | | Password to use for authenticating the 'bind_dn'.|
-| OCIS_LDAP_USER_BASE_DN
LDAP_USER_BASE_DN
IDP_LDAP_BASE_DN | string | ou=users,o=libregraph-idm | Search base DN for looking up LDAP users.|
-| OCIS_LDAP_USER_SCOPE
LDAP_USER_SCOPE
IDP_LDAP_SCOPE | string | sub | LDAP search scope to use when looking up users. Supported scopes are 'base', 'one' and 'sub'.|
+| OCIS_LDAP_USER_BASE_DN
IDP_LDAP_BASE_DN | string | ou=users,o=libregraph-idm | Search base DN for looking up LDAP users.|
+| OCIS_LDAP_USER_SCOPE
IDP_LDAP_SCOPE | string | sub | LDAP search scope to use when looking up users. Supported scopes are 'base', 'one' and 'sub'.|
| IDP_LDAP_LOGIN_ATTRIBUTE | string | uid | LDAP User attribute to use for login like 'uid'.|
-| OCIS_LDAP_USER_SCHEMA_MAIL
LDAP_USER_SCHEMA_MAIL
IDP_LDAP_EMAIL_ATTRIBUTE | string | mail | LDAP User email attribute like 'mail'.|
-| OCIS_LDAP_USER_SCHEMA_USERNAME
LDAP_USER_SCHEMA_USERNAME
IDP_LDAP_NAME_ATTRIBUTE | string | displayName | LDAP User name attribute like 'displayName'.|
-| OCIS_LDAP_USER_SCHEMA_ID
LDAP_USER_SCHEMA_ID
IDP_LDAP_UUID_ATTRIBUTE | string | ownCloudUUID | LDAP User UUID attribute like 'uid'.|
+| OCIS_LDAP_USER_SCHEMA_MAIL
IDP_LDAP_EMAIL_ATTRIBUTE | string | mail | LDAP User email attribute like 'mail'.|
+| OCIS_LDAP_USER_SCHEMA_USERNAME
IDP_LDAP_NAME_ATTRIBUTE | string | displayName | LDAP User name attribute like 'displayName'.|
+| OCIS_LDAP_USER_SCHEMA_ID
IDP_LDAP_UUID_ATTRIBUTE | string | ownCloudUUID | LDAP User UUID attribute like 'uid'.|
| IDP_LDAP_UUID_ATTRIBUTE_TYPE | string | text | LDAP User uuid attribute type like 'text'.|
-| OCIS_LDAP_USER_ENABLED_ATTRIBUTE
LDAP_USER_ENABLED_ATTRIBUTE
IDP_USER_ENABLED_ATTRIBUTE | string | ownCloudUserEnabled | LDAP Attribute to use as a flag telling if the user is enabled or disabled.|
-| OCIS_LDAP_USER_FILTER
LDAP_USER_FILTER
IDP_LDAP_FILTER | string | | LDAP filter to add to the default filters for user search like '(objectclass=ownCloud)'.|
-| OCIS_LDAP_USER_OBJECTCLASS
LDAP_USER_OBJECTCLASS
IDP_LDAP_OBJECTCLASS | string | inetOrgPerson | LDAP User ObjectClass like 'inetOrgPerson'.|
\ No newline at end of file
+| OCIS_LDAP_USER_ENABLED_ATTRIBUTE
IDP_USER_ENABLED_ATTRIBUTE | string | ownCloudUserEnabled | LDAP Attribute to use as a flag telling if the user is enabled or disabled.|
+| OCIS_LDAP_USER_FILTER
IDP_LDAP_FILTER | string | | LDAP filter to add to the default filters for user search like '(objectclass=ownCloud)'.|
+| OCIS_LDAP_USER_OBJECTCLASS
IDP_LDAP_OBJECTCLASS | string | inetOrgPerson | LDAP User ObjectClass like 'inetOrgPerson'.|
\ No newline at end of file
diff --git a/services/_includes/notifications_configvars.md b/services/_includes/notifications_configvars.md
index 5219410ae62..eb5aa441ef1 100644
--- a/services/_includes/notifications_configvars.md
+++ b/services/_includes/notifications_configvars.md
@@ -31,6 +31,6 @@
| OCIS_MACHINE_AUTH_API_KEY
NOTIFICATIONS_MACHINE_AUTH_API_KEY | string | | Machine auth API key used to validate internal requests necessary to access resources from other services.|
| OCIS_EMAIL_TEMPLATE_PATH
NOTIFICATIONS_EMAIL_TEMPLATE_PATH | string | | Path to Email notification templates overriding embedded ones.|
| OCIS_TRANSLATION_PATH,NOTIFICATIONS_TRANSLATION_PATH | string | | (optional) Set this to a path with custom translations to overwrite the builtin translations. Note that file and folder naming rules apply, see the documentation for more details.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | CS3 gateway used to look up user metadata|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | CS3 gateway used to look up user metadata|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
\ No newline at end of file
diff --git a/services/_includes/ocdav_configvars.md b/services/_includes/ocdav_configvars.md
index fba6bed69fb..90e2c76fae5 100644
--- a/services/_includes/ocdav_configvars.md
+++ b/services/_includes/ocdav_configvars.md
@@ -22,7 +22,7 @@
| OCIS_CORS_ALLOW_HEADERS
OCDAV_CORS_ALLOW_HEADERS | []string | [Origin Accept Content-Type Depth Authorization Ocs-Apirequest If-None-Match If-Match Destination Overwrite X-Request-Id X-Requested-With Tus-Resumable Tus-Checksum-Algorithm Upload-Concat Upload-Length Upload-Metadata Upload-Defer-Length Upload-Expires Upload-Checksum Upload-Offset X-HTTP-Method-Override Cache-Control] | A blank or comma-separated list of allowed CORS headers. See following chapter for more details: *Access-Control-Request-Headers* at https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Request-Headers.|
| OCIS_CORS_ALLOW_CREDENTIALS
OCDAV_CORS_ALLOW_CREDENTIALS | bool | true | Allow credentials for CORS.See following chapter for more details: *Access-Control-Allow-Credentials* at https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Allow-Credentials.|
| OCIS_JWT_SECRET
OCDAV_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| OCDAV_SKIP_USER_GROUPS_IN_TOKEN | bool | false | Disables the loading of user's group memberships from the reva access token.|
diff --git a/services/_includes/policies_configvars.md b/services/_includes/policies_configvars.md
index 406323501ed..65412fdcd8b 100644
--- a/services/_includes/policies_configvars.md
+++ b/services/_includes/policies_configvars.md
@@ -13,7 +13,7 @@
| OCIS_INSECURE
POLICIES_EVENTS_TLS_INSECURE | bool | false | Whether the server should skip the client certificate verification during the TLS handshake.|
| OCIS_EVENTS_TLS_ROOT_CA_CERTIFICATE
POLICIES_EVENTS_TLS_ROOT_CA_CERTIFICATE | string | | The root CA certificate used to validate the server's TLS certificate. If provided POLICIES_EVENTS_TLS_INSECURE will be seen as false.|
| OCIS_EVENTS_ENABLE_TLS
POLICIES_EVENTS_ENABLE_TLS | bool | false | Enable TLS for the connection to the events broker. The events broker is the ocis service which receives and delivers events between the services.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| OCIS_MACHINE_AUTH_API_KEY
POLICIES_MACHINE_AUTH_API_KEY | string | | Machine auth API key used to validate internal requests necessary for the access to resources from other services.|
diff --git a/services/_includes/postprocessing-config-example.yaml b/services/_includes/postprocessing-config-example.yaml
index aa5db35e623..c63e4a9eec6 100644
--- a/services/_includes/postprocessing-config-example.yaml
+++ b/services/_includes/postprocessing-config-example.yaml
@@ -31,5 +31,4 @@ postprocessing:
tls_root_ca_certificate: ""
enable_tls: false
steps: []
- virusscan: false
delayprocessing: 0s
diff --git a/services/_includes/postprocessing_configvars.md b/services/_includes/postprocessing_configvars.md
index 79e867690db..b4f4156d71c 100644
--- a/services/_includes/postprocessing_configvars.md
+++ b/services/_includes/postprocessing_configvars.md
@@ -26,5 +26,4 @@
| OCIS_EVENTS_TLS_ROOT_CA_CERTIFICATE
POSTPROCESSING_EVENTS_TLS_ROOT_CA_CERTIFICATE | string | | The root CA certificate used to validate the server's TLS certificate. If provided POSTPROCESSING_EVENTS_TLS_INSECURE will be seen as false.|
| OCIS_EVENTS_ENABLE_TLS
POSTPROCESSING_EVENTS_ENABLE_TLS | bool | false | Enable TLS for the connection to the events broker. The events broker is the ocis service which receives and delivers events between the services.|
| POSTPROCESSING_STEPS | []string | [] | A comma separated list of postprocessing steps, processed in order of their appearance. Currently supported values by the system are: 'virusscan', 'policies' and 'delay'. Custom steps are allowed. See the documentation for instructions.|
-| POSTPROCESSING_VIRUSSCAN | bool | false | After uploading a file but before making it available for download, virus scanning the file can be enabled. Needs as prerequisite the antivirus service to be enabled and configured.|
| POSTPROCESSING_DELAY | Duration | 0s | After uploading a file but before making it available for download, a delay step can be added. Intended for developing purposes only. The duration can be set as number followed by a unit identifier like s, m or h. If a duration is set but the keyword 'delay' is not explicitely added to 'POSTPROCESSING_STEPS', the delay step will be processed as last step. In such a case, a log entry will be written on service startup to remind the admin about that situation.|
\ No newline at end of file
diff --git a/services/_includes/proxy_configvars.md b/services/_includes/proxy_configvars.md
index 23b2a2aee00..bc4c69534ec 100644
--- a/services/_includes/proxy_configvars.md
+++ b/services/_includes/proxy_configvars.md
@@ -19,7 +19,7 @@
| PROXY_TRANSPORT_TLS_CERT | string | ~/.ocis/proxy/server.crt | Path/File name of the TLS server certificate (in PEM format) for the external http services. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/proxy.|
| PROXY_TRANSPORT_TLS_KEY | string | ~/.ocis/proxy/server.key | Path/File name for the TLS certificate key (in PEM format) for the server certificate to use for the external http services. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/proxy.|
| PROXY_TLS | bool | true | Enable/Disable HTTPS for external HTTP services. Must be set to 'true' if the built-in IDP service an no reverse proxy is used. See the text description for details.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| OCIS_URL
OCIS_OIDC_ISSUER
PROXY_OIDC_ISSUER | string | https://localhost:9200 | URL of the OIDC issuer. It defaults to URL of the builtin IDP.|
diff --git a/services/_includes/search_configvars.md b/services/_includes/search_configvars.md
index 2e6cb98237b..4dd441959e6 100644
--- a/services/_includes/search_configvars.md
+++ b/services/_includes/search_configvars.md
@@ -16,12 +16,12 @@
| SEARCH_DEBUG_ZPAGES | bool | false | Enables zpages, which can be used for collecting and viewing in-memory traces.|
| SEARCH_GRPC_ADDR | string | 127.0.0.1:9220 | The bind address of the GRPC service.|
| OCIS_JWT_SECRET
SEARCH_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| OCIS_EVENTS_ENDPOINT
SEARCH_EVENTS_ENDPOINT | string | 127.0.0.1:9233 | The address of the event system. The event system is the message queuing service. It is used as message broker for the microservice architecture.|
| OCIS_EVENTS_CLUSTER
SEARCH_EVENTS_CLUSTER | string | ocis-cluster | The clusterID of the event system. The event system is the message queuing service. It is used as message broker for the microservice architecture. Mandatory when using NATS as event system.|
-| OCIS_ASYNC_UPLOADS
STORAGE_USERS_OCIS_ASYNC_UPLOADS
SEARCH_EVENTS_ASYNC_UPLOADS | bool | false | Enable asynchronous file uploads.|
+| OCIS_ASYNC_UPLOADS
SEARCH_EVENTS_ASYNC_UPLOADS | bool | false | Enable asynchronous file uploads.|
| SEARCH_EVENTS_NUM_CONSUMERS | int | 0 | The amount of concurrent event consumers to start. Event consumers are used for searching files. Multiple consumers increase parallelisation, but will also increase CPU and memory demands. The default value is 0.|
| SEARCH_EVENTS_REINDEX_DEBOUNCE_DURATION | int | 1000 | The duration in milliseconds the reindex debouncer waits before triggering a reindex of a space that was modified.|
| OCIS_INSECURE
SEARCH_EVENTS_TLS_INSECURE | bool | false | Whether to verify the server TLS certificates.|
diff --git a/services/_includes/sharing_configvars.md b/services/_includes/sharing_configvars.md
index 397ad619cd0..3e761d04915 100644
--- a/services/_includes/sharing_configvars.md
+++ b/services/_includes/sharing_configvars.md
@@ -17,13 +17,13 @@
| SHARING_GRPC_ADDR | string | 127.0.0.1:9150 | The bind address of the GRPC service.|
| SHARING_GRPC_PROTOCOL | string | tcp | The transport protocol of the GRPC service.|
| OCIS_JWT_SECRET
SHARING_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| OCIS_EVENTS_ENDPOINT
SHARING_EVENTS_ENDPOINT | string | 127.0.0.1:9233 | The address of the event system. The event system is the message queuing service. It is used as message broker for the microservice architecture.|
| OCIS_EVENTS_CLUSTER
SHARING_EVENTS_CLUSTER | string | ocis-cluster | The clusterID of the event system. The event system is the message queuing service. It is used as message broker for the microservice architecture. Mandatory when using NATS as event system.|
| OCIS_INSECURE
SHARING_EVENTS_TLS_INSECURE | bool | false | Whether to verify the server TLS certificates.|
-| OCIS_EVENTS_TLS_ROOT_CA_CERTIFICATE
SHARING_EVENTS_TLS_ROOT_CA_CERTIFICATE
SHARING_EVENTS_TLS_ROOT_CA_CERT | string | | The root CA certificate used to validate the server's TLS certificate. If provided SHARING_EVENTS_TLS_INSECURE will be seen as false.|
+| OCIS_EVENTS_TLS_ROOT_CA_CERTIFICATE
SHARING_EVENTS_TLS_ROOT_CA_CERT | string | | The root CA certificate used to validate the server's TLS certificate. If provided SHARING_EVENTS_TLS_INSECURE will be seen as false.|
| OCIS_EVENTS_ENABLE_TLS
SHARING_EVENTS_ENABLE_TLS | bool | false | Enable TLS for the connection to the events broker. The events broker is the ocis service which receives and delivers events between the services..|
| SHARING_SKIP_USER_GROUPS_IN_TOKEN | bool | false | Disables the loading of user's group memberships from the reva access token.|
| SHARING_USER_DRIVER | string | jsoncs3 | Driver to be used to persist shares. Supported values are 'jsoncs3', 'json', 'cs3' and 'owncloudsql'.|
diff --git a/services/_includes/storage-publiclink_configvars.md b/services/_includes/storage-publiclink_configvars.md
index 9f387a07d8d..0fa7a33e6e3 100644
--- a/services/_includes/storage-publiclink_configvars.md
+++ b/services/_includes/storage-publiclink_configvars.md
@@ -17,7 +17,7 @@
| STORAGE_PUBLICLINK_GRPC_ADDR | string | 127.0.0.1:9178 | The bind address of the GRPC service.|
| STORAGE_PUBLICLINK_GRPC_PROTOCOL | string | tcp | The transport protocol of the GRPC service.|
| OCIS_JWT_SECRET
STORAGE_PUBLICLINK_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| STORAGE_PUBLICLINK_SKIP_USER_GROUPS_IN_TOKEN | bool | false | Disables the loading of user's group memberships from the reva access token.|
diff --git a/services/_includes/storage-shares_configvars.md b/services/_includes/storage-shares_configvars.md
index 8dd034cd139..282fd7b6d13 100644
--- a/services/_includes/storage-shares_configvars.md
+++ b/services/_includes/storage-shares_configvars.md
@@ -17,7 +17,7 @@
| STORAGE_SHARES_GRPC_ADDR | string | 127.0.0.1:9154 | The bind address of the GRPC service.|
| STORAGE_SHARES_GRPC_PROTOCOL | string | tcp | The transport protocol of the GRPC service.|
| OCIS_JWT_SECRET
STORAGE_SHARES_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| STORAGE_SHARES_SKIP_USER_GROUPS_IN_TOKEN | bool | false | Disables the loading of user's group memberships from the reva access token.|
diff --git a/services/_includes/storage-system_configvars.md b/services/_includes/storage-system_configvars.md
index f33e7b15900..332f6ef71e5 100644
--- a/services/_includes/storage-system_configvars.md
+++ b/services/_includes/storage-system_configvars.md
@@ -19,7 +19,7 @@
| STORAGE_SYSTEM_HTTP_ADDR | string | 127.0.0.1:9216 | The bind address of the HTTP service.|
| STORAGE_SYSTEM_HTTP_PROTOCOL | string | tcp | The transport protocol of the HTTP service.|
| OCIS_JWT_SECRET
STORAGE_SYSTEM_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| OCIS_SYSTEM_USER_ID | string | | ID of the oCIS storage-system system user. Admins need to set the ID for the STORAGE-SYSTEM system user in this config option which is then used to reference the user. Any reasonable long string is possible, preferably this would be an UUIDv4 format.|
diff --git a/services/_includes/storage-users_configvars.md b/services/_includes/storage-users_configvars.md
index bd70332ad69..ade48d770b1 100644
--- a/services/_includes/storage-users_configvars.md
+++ b/services/_includes/storage-users_configvars.md
@@ -19,7 +19,7 @@
| STORAGE_USERS_HTTP_ADDR | string | 127.0.0.1:9158 | The bind address of the HTTP service.|
| STORAGE_USERS_HTTP_PROTOCOL | string | tcp | The transport protocol of the HTTP service.|
| OCIS_JWT_SECRET
STORAGE_USERS_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| STORAGE_USERS_SKIP_USER_GROUPS_IN_TOKEN | bool | false | Disables the loading of user's group memberships from the reva access token.|
@@ -37,7 +37,7 @@
| STORAGE_USERS_OCIS_MAX_ACQUIRE_LOCK_CYCLES | int | 20 | When trying to lock files, ocis will try this amount of times to acquire the lock before failing. After each try it will wait for an increasing amount of time. Values of 0 or below will be ignored and the default value of 20 will be used.|
| STORAGE_USERS_OCIS_LOCK_CYCLE_DURATION_FACTOR | int | 30 | When trying to lock files, ocis will multiply the cycle with this factor and use it as a millisecond timeout. Values of 0 or below will be ignored and the default value of 30 will be used.|
| STORAGE_USERS_OCIS_MAX_CONCURRENCY | int | 0 | Maximum number of concurrent go-routines. Higher values can potentially get work done faster but will also cause more load on the system. Values of 0 or below will be ignored and the default value of 100 will be used.|
-| OCIS_ASYNC_UPLOADS
STORAGE_USERS_OCIS_ASYNC_UPLOADS | bool | false | Enable asynchronous file uploads.|
+| OCIS_ASYNC_UPLOADS
| bool | false | Enable asynchronous file uploads.|
| OCIS_SPACES_MAX_QUOTA
STORAGE_USERS_OCIS_MAX_QUOTA | uint64 | 0 | Set a global max quota for spaces in bytes. A value of 0 equals unlimited. If not using the global OCIS_SPACES_MAX_QUOTA, you must define the FRONTEND_MAX_QUOTA in the frontend service.|
| STORAGE_USERS_S3NG_METADATA_BACKEND | string | messagepack | The backend to use for storing metadata. Supported values are 'xattrs' and 'messagepack'. The setting 'xattrs' uses extended attributes to store file metadata while 'messagepack' uses a dedicated file to store file metadata. Defaults to 'xattrs'.|
| OCIS_DECOMPOSEDFS_PROPAGATOR
STORAGE_USERS_S3NG_PROPAGATOR | string | sync | The propagator used for decomposedfs. At the moment, only 'sync' is fully supported, 'async' is available as an experimental option.|
@@ -72,9 +72,9 @@
| OCIS_EVENTS_ENDPOINT
STORAGE_USERS_EVENTS_ENDPOINT | string | 127.0.0.1:9233 | The address of the event system. The event system is the message queuing service. It is used as message broker for the microservice architecture.|
| OCIS_EVENTS_CLUSTER
STORAGE_USERS_EVENTS_CLUSTER | string | ocis-cluster | The clusterID of the event system. The event system is the message queuing service. It is used as message broker for the microservice architecture. Mandatory when using NATS as event system.|
| OCIS_INSECURE
STORAGE_USERS_EVENTS_TLS_INSECURE | bool | false | Whether to verify the server TLS certificates.|
-| OCIS_EVENTS_TLS_ROOT_CA_CERTIFICATE
STORAGE_USERS_EVENTS_TLS_ROOT_CA_CERTIFICATE
STORAGE_USERS_EVENTS_TLS_ROOT_CA_CERT | string | | The root CA certificate used to validate the server's TLS certificate. If provided STORAGE_USERS_EVENTS_TLS_INSECURE will be seen as false.|
+| OCIS_EVENTS_TLS_ROOT_CA_CERTIFICATE
STORAGE_USERS_EVENTS_TLS_ROOT_CA_CERTIFICATE | string | | The root CA certificate used to validate the server's TLS certificate. If provided STORAGE_USERS_EVENTS_TLS_INSECURE will be seen as false.|
| OCIS_EVENTS_ENABLE_TLS
STORAGE_USERS_EVENTS_ENABLE_TLS | bool | false | Enable TLS for the connection to the events broker. The events broker is the ocis service which receives and delivers events between the services..|
-| STORAGE_USERS_EVENTS_NUM_CONSUMERS | int | 0 | The amount of concurrent event consumers to start. Event consumers are used for post-processing files. Multiple consumers increase parallelisation, but will also increase CPU and memory demands. The setting has no effect when the STORAGE_USERS_OCIS_ASYNC_UPLOADS is set to false. The default and minimum value is 1.|
+| STORAGE_USERS_EVENTS_NUM_CONSUMERS | int | 0 | The amount of concurrent event consumers to start. Event consumers are used for post-processing files. Multiple consumers increase parallelisation, but will also increase CPU and memory demands. The setting has no effect when the OCIS_ASYNC_UPLOADS is set to false. The default and minimum value is 1.|
| OCIS_CACHE_STORE
STORAGE_USERS_STAT_CACHE_STORE | string | noop | The type of the cache store. Supported values are: 'memory', 'ocmem', 'etcd', 'redis', 'redis-sentinel', 'nats-js', 'noop'. See the text description for details.|
| OCIS_CACHE_STORE_NODES
STORAGE_USERS_STAT_CACHE_STORE_NODES | []string | [] | A comma separated list of nodes to access the configured store. This has no effect when 'memory' or 'ocmem' stores are configured. Note that the behaviour how nodes are used is dependent on the library of the configured store.|
| OCIS_CACHE_DATABASE | string | ocis | The database name the configured store should use.|
diff --git a/services/_includes/thumbnails_configvars.md b/services/_includes/thumbnails_configvars.md
index 0b51716b577..8e163581ffd 100644
--- a/services/_includes/thumbnails_configvars.md
+++ b/services/_includes/thumbnails_configvars.md
@@ -24,7 +24,7 @@
| THUMBNAILS_FILESYSTEMSTORAGE_ROOT | string | ~/.ocis/thumbnails | The directory where the filesystem storage will store the thumbnails. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/thumbnails.|
| OCIS_INSECURE
THUMBNAILS_WEBDAVSOURCE_INSECURE | bool | false | Ignore untrusted SSL certificates when connecting to the webdav source.|
| OCIS_INSECURE
THUMBNAILS_CS3SOURCE_INSECURE | bool | false | Ignore untrusted SSL certificates when connecting to the CS3 source.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | CS3 gateway used to look up user metadata|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | CS3 gateway used to look up user metadata|
| THUMBNAILS_TXT_FONTMAP_FILE | string | | The path to a font file for txt thumbnails.|
| THUMBNAILS_TRANSFER_TOKEN | string | | The secret to sign JWT to download the actual thumbnail file.|
| THUMBNAILS_DATA_ENDPOINT | string | http://127.0.0.1:9186/thumbnails/data | The HTTP endpoint where the actual thumbnail file can be downloaded.|
\ No newline at end of file
diff --git a/services/_includes/userlog_configvars.md b/services/_includes/userlog_configvars.md
index b638ae8a9fa..12bc8d1464d 100644
--- a/services/_includes/userlog_configvars.md
+++ b/services/_includes/userlog_configvars.md
@@ -25,7 +25,7 @@
| OCIS_HTTP_TLS_KEY | string | | Path/File name for the TLS certificate key (in PEM format) for the server certificate to use for the http services.|
| OCIS_JWT_SECRET
USERLOG_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
| OCIS_MACHINE_AUTH_API_KEY
USERLOG_MACHINE_AUTH_API_KEY | string | | Machine auth API key used to validate internal requests necessary to access resources from other services.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | CS3 gateway used to look up user metadata|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | CS3 gateway used to look up user metadata|
| OCIS_TRANSLATION_PATH
USERLOG_TRANSLATION_PATH | string | | (optional) Set this to a path with custom translations to overwrite the builtin translations. Note that file and folder naming rules apply, see the documentation for more details.|
| OCIS_EVENTS_ENDPOINT
USERLOG_EVENTS_ENDPOINT | string | 127.0.0.1:9233 | The address of the event system. The event system is the message queuing service. It is used as message broker for the microservice architecture.|
| OCIS_EVENTS_CLUSTER
USERLOG_EVENTS_CLUSTER | string | ocis-cluster | The clusterID of the event system. The event system is the message queuing service. It is used as message broker for the microservice architecture. Mandatory when using NATS as event system.|
diff --git a/services/_includes/users_configvars.md b/services/_includes/users_configvars.md
index 9f8862340e7..d0171aa808c 100644
--- a/services/_includes/users_configvars.md
+++ b/services/_includes/users_configvars.md
@@ -17,41 +17,41 @@
| USERS_GRPC_ADDR | string | 127.0.0.1:9144 | The bind address of the GRPC service.|
| USERS_GRPC_PROTOCOL | string | tcp | The transport protocol of the GPRC service.|
| OCIS_JWT_SECRET
USERS_JWT_SECRET | string | | The secret to mint and validate jwt tokens.|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | The CS3 gateway endpoint.|
| OCIS_GRPC_CLIENT_TLS_MODE | string | | TLS mode for grpc connection to the go-micro based grpc services. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
| OCIS_GRPC_CLIENT_TLS_CACERT | string | | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the go-micro based grpc services.|
| USERS_SKIP_USER_GROUPS_IN_TOKEN | bool | false | Disables the loading of user's group memberships from the reva access token.|
| USERS_DRIVER | string | ldap | The driver which should be used by the users service. Supported values are 'ldap' and 'owncloudsql'.|
-| OCIS_LDAP_URI
LDAP_URI
USERS_LDAP_URI | string | ldaps://localhost:9235 | URI of the LDAP Server to connect to. Supported URI schemes are 'ldaps://' and 'ldap://'|
-| OCIS_LDAP_CACERT
LDAP_CACERT
USERS_LDAP_CACERT | string | ~/.ocis/idm/ldap.crt | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idm.|
-| OCIS_LDAP_INSECURE
LDAP_INSECURE
USERS_LDAP_INSECURE | bool | false | Disable TLS certificate validation for the LDAP connections. Do not set this in production environments.|
-| OCIS_LDAP_BIND_DN
LDAP_BIND_DN
USERS_LDAP_BIND_DN | string | uid=reva,ou=sysusers,o=libregraph-idm | LDAP DN to use for simple bind authentication with the target LDAP server.|
+| OCIS_LDAP_URI
USERS_LDAP_URI | string | ldaps://localhost:9235 | URI of the LDAP Server to connect to. Supported URI schemes are 'ldaps://' and 'ldap://'|
+| OCIS_LDAP_CACERT
USERS_LDAP_CACERT | string | ~/.ocis/idm/ldap.crt | Path/File name for the root CA certificate (in PEM format) used to validate TLS server certificates of the LDAP service. If not defined, the root directory derives from $OCIS_BASE_DATA_PATH:/idm.|
+| OCIS_LDAP_INSECURE
USERS_LDAP_INSECURE | bool | false | Disable TLS certificate validation for the LDAP connections. Do not set this in production environments.|
+| OCIS_LDAP_BIND_DN
USERS_LDAP_BIND_DN | string | uid=reva,ou=sysusers,o=libregraph-idm | LDAP DN to use for simple bind authentication with the target LDAP server.|
| LDAP_BIND_PASSWORD
USERS_LDAP_BIND_PASSWORD | string | | Password to use for authenticating the 'bind_dn'.|
-| OCIS_LDAP_USER_BASE_DN
LDAP_USER_BASE_DN
USERS_LDAP_USER_BASE_DN | string | ou=users,o=libregraph-idm | Search base DN for looking up LDAP users.|
-| OCIS_LDAP_GROUP_BASE_DN
LDAP_GROUP_BASE_DN
USERS_LDAP_GROUP_BASE_DN | string | ou=groups,o=libregraph-idm | Search base DN for looking up LDAP groups.|
-| OCIS_LDAP_USER_SCOPE
LDAP_USER_SCOPE
USERS_LDAP_USER_SCOPE | string | sub | LDAP search scope to use when looking up users. Supported values are 'base', 'one' and 'sub'.|
-| OCIS_LDAP_GROUP_SCOPE
LDAP_GROUP_SCOPE
USERS_LDAP_GROUP_SCOPE | string | sub | LDAP search scope to use when looking up groups. Supported values are 'base', 'one' and 'sub'.|
+| OCIS_LDAP_USER_BASE_DN
USERS_LDAP_USER_BASE_DN | string | ou=users,o=libregraph-idm | Search base DN for looking up LDAP users.|
+| OCIS_LDAP_GROUP_BASE_DN
USERS_LDAP_GROUP_BASE_DN | string | ou=groups,o=libregraph-idm | Search base DN for looking up LDAP groups.|
+| OCIS_LDAP_USER_SCOPE
USERS_LDAP_USER_SCOPE | string | sub | LDAP search scope to use when looking up users. Supported values are 'base', 'one' and 'sub'.|
+| OCIS_LDAP_GROUP_SCOPE
USERS_LDAP_GROUP_SCOPE | string | sub | LDAP search scope to use when looking up groups. Supported values are 'base', 'one' and 'sub'.|
| LDAP_USER_SUBSTRING_FILTER_TYPE
USERS_LDAP_USER_SUBSTRING_FILTER_TYPE | string | any | Type of substring search filter to use for substring searches for users. Possible values: 'initial' for doing prefix only searches, 'final' for doing suffix only searches or 'any' for doing full substring searches|
-| OCIS_LDAP_USER_FILTER
LDAP_USER_FILTER
USERS_LDAP_USER_FILTER | string | | LDAP filter to add to the default filters for user search like '(objectclass=ownCloud)'.|
-| OCIS_LDAP_GROUP_FILTER
LDAP_GROUP_FILTER
USERS_LDAP_GROUP_FILTER | string | | LDAP filter to add to the default filters for group searches.|
-| OCIS_LDAP_USER_OBJECTCLASS
LDAP_USER_OBJECTCLASS
USERS_LDAP_USER_OBJECTCLASS | string | inetOrgPerson | The object class to use for users in the default user search filter like 'inetOrgPerson'.|
-| OCIS_LDAP_GROUP_OBJECTCLASS
LDAP_GROUP_OBJECTCLASS
USERS_LDAP_GROUP_OBJECTCLASS | string | groupOfNames | The object class to use for groups in the default group search filter like 'groupOfNames'.|
+| OCIS_LDAP_USER_FILTER
USERS_LDAP_USER_FILTER | string | | LDAP filter to add to the default filters for user search like '(objectclass=ownCloud)'.|
+| OCIS_LDAP_GROUP_FILTER
USERS_LDAP_GROUP_FILTER | string | | LDAP filter to add to the default filters for group searches.|
+| OCIS_LDAP_USER_OBJECTCLASS
USERS_LDAP_USER_OBJECTCLASS | string | inetOrgPerson | The object class to use for users in the default user search filter like 'inetOrgPerson'.|
+| OCIS_LDAP_GROUP_OBJECTCLASS
USERS_LDAP_GROUP_OBJECTCLASS | string | groupOfNames | The object class to use for groups in the default group search filter like 'groupOfNames'.|
| OCIS_URL
OCIS_OIDC_ISSUER
USERS_IDP_URL | string | https://localhost:9200 | The identity provider value to set in the userids of the CS3 user objects for users returned by this user provider.|
-| OCIS_LDAP_DISABLE_USER_MECHANISM
LDAP_DISABLE_USER_MECHANISM
USERS_LDAP_DISABLE_USER_MECHANISM | string | attribute | An option to control the behavior for disabling users. Valid options are 'none', 'attribute' and 'group'. If set to 'group', disabling a user via API will add the user to the configured group for disabled users, if set to 'attribute' this will be done in the ldap user entry, if set to 'none' the disable request is not processed.|
-| OCIS_LDAP_USER_SCHEMA_USER_TYPE
LDAP_USER_SCHEMA_USER_TYPE
USERS_LDAP_USER_TYPE_ATTRIBUTE | string | ownCloudUserType | LDAP Attribute to distinguish between 'Member' and 'Guest' users. Default is 'ownCloudUserType'.|
-| OCIS_LDAP_DISABLED_USERS_GROUP_DN
LDAP_DISABLED_USERS_GROUP_DN
USERS_LDAP_DISABLED_USERS_GROUP_DN | string | cn=DisabledUsersGroup,ou=groups,o=libregraph-idm | The distinguished name of the group to which added users will be classified as disabled when 'disable_user_mechanism' is set to 'group'.|
-| OCIS_LDAP_USER_SCHEMA_ID
LDAP_USER_SCHEMA_ID
USERS_LDAP_USER_SCHEMA_ID | string | ownclouduuid | LDAP Attribute to use as the unique ID for users. This should be a stable globally unique ID like a UUID.|
+| OCIS_LDAP_DISABLE_USER_MECHANISM
USERS_LDAP_DISABLE_USER_MECHANISM | string | attribute | An option to control the behavior for disabling users. Valid options are 'none', 'attribute' and 'group'. If set to 'group', disabling a user via API will add the user to the configured group for disabled users, if set to 'attribute' this will be done in the ldap user entry, if set to 'none' the disable request is not processed.|
+| OCIS_LDAP_USER_SCHEMA_USER_TYPE
USERS_LDAP_USER_TYPE_ATTRIBUTE | string | ownCloudUserType | LDAP Attribute to distinguish between 'Member' and 'Guest' users. Default is 'ownCloudUserType'.|
+| OCIS_LDAP_DISABLED_USERS_GROUP_DN
USERS_LDAP_DISABLED_USERS_GROUP_DN | string | cn=DisabledUsersGroup,ou=groups,o=libregraph-idm | The distinguished name of the group to which added users will be classified as disabled when 'disable_user_mechanism' is set to 'group'.|
+| OCIS_LDAP_USER_SCHEMA_ID | string | ownclouduuid | LDAP Attribute to use as the unique ID for users. This should be a stable globally unique ID like a UUID.|
| OCIS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING
LDAP_USER_SCHEMA_ID_IS_OCTETSTRING
USERS_LDAP_USER_SCHEMA_ID_IS_OCTETSTRING | bool | false | Set this to true if the defined 'ID' attribute for users is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the user ID's.|
-| OCIS_LDAP_USER_SCHEMA_MAIL
LDAP_USER_SCHEMA_MAIL
USERS_LDAP_USER_SCHEMA_MAIL | string | mail | LDAP Attribute to use for the email address of users.|
-| OCIS_LDAP_USER_SCHEMA_DISPLAYNAME
LDAP_USER_SCHEMA_DISPLAYNAME
USERS_LDAP_USER_SCHEMA_DISPLAYNAME | string | displayname | LDAP Attribute to use for the displayname of users.|
-| OCIS_LDAP_USER_SCHEMA_USERNAME
LDAP_USER_SCHEMA_USERNAME
USERS_LDAP_USER_SCHEMA_USERNAME | string | uid | LDAP Attribute to use for username of users.|
-| OCIS_LDAP_USER_ENABLED_ATTRIBUTE
LDAP_USER_ENABLED_ATTRIBUTE
USERS_LDAP_USER_ENABLED_ATTRIBUTE | string | ownCloudUserEnabled | LDAP attribute to use as a flag telling if the user is enabled or disabled.|
-| OCIS_LDAP_GROUP_SCHEMA_ID
LDAP_GROUP_SCHEMA_ID
USERS_LDAP_GROUP_SCHEMA_ID | string | ownclouduuid | LDAP Attribute to use as the unique ID for groups. This should be a stable globally unique ID like a UUID.|
-| OCIS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING
LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING
USERS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING | bool | false | Set this to true if the defined 'id' attribute for groups is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the group ID's.|
-| OCIS_LDAP_GROUP_SCHEMA_MAIL
LDAP_GROUP_SCHEMA_MAIL
USERS_LDAP_GROUP_SCHEMA_MAIL | string | mail | LDAP Attribute to use for the email address of groups (can be empty).|
-| OCIS_LDAP_GROUP_SCHEMA_DISPLAYNAME
LDAP_GROUP_SCHEMA_DISPLAYNAME
USERS_LDAP_GROUP_SCHEMA_DISPLAYNAME | string | cn | LDAP Attribute to use for the displayname of groups (often the same as groupname attribute).|
-| OCIS_LDAP_GROUP_SCHEMA_GROUPNAME
LDAP_GROUP_SCHEMA_GROUPNAME
USERS_LDAP_GROUP_SCHEMA_GROUPNAME | string | cn | LDAP Attribute to use for the name of groups.|
-| OCIS_LDAP_GROUP_SCHEMA_MEMBER
LDAP_GROUP_SCHEMA_MEMBER
USERS_LDAP_GROUP_SCHEMA_MEMBER | string | member | LDAP Attribute that is used for group members.|
+| OCIS_LDAP_USER_SCHEMA_MAIL
USERS_LDAP_USER_SCHEMA_MAIL | string | mail | LDAP Attribute to use for the email address of users.|
+| OCIS_LDAP_USER_SCHEMA_DISPLAYNAME
USERS_LDAP_USER_SCHEMA_DISPLAYNAME | string | displayname | LDAP Attribute to use for the displayname of users.|
+| OCIS_LDAP_USER_SCHEMA_USERNAME
USERS_LDAP_USER_SCHEMA_USERNAME | string | uid | LDAP Attribute to use for username of users.|
+| OCIS_LDAP_USER_ENABLED_ATTRIBUTE
USERS_LDAP_USER_ENABLED_ATTRIBUTE | string | ownCloudUserEnabled | LDAP attribute to use as a flag telling if the user is enabled or disabled.|
+| OCIS_LDAP_GROUP_SCHEMA_ID
USERS_LDAP_GROUP_SCHEMA_ID | string | ownclouduuid | LDAP Attribute to use as the unique ID for groups. This should be a stable globally unique ID like a UUID.|
+| OCIS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING
USERS_LDAP_GROUP_SCHEMA_ID_IS_OCTETSTRING | bool | false | Set this to true if the defined 'id' attribute for groups is of the 'OCTETSTRING' syntax. This is e.g. required when using the 'objectGUID' attribute of Active Directory for the group ID's.|
+| OCIS_LDAP_GROUP_SCHEMA_MAIL
USERS_LDAP_GROUP_SCHEMA_MAIL | string | mail | LDAP Attribute to use for the email address of groups (can be empty).|
+| OCIS_LDAP_GROUP_SCHEMA_DISPLAYNAME
USERS_LDAP_GROUP_SCHEMA_DISPLAYNAME | string | cn | LDAP Attribute to use for the displayname of groups (often the same as groupname attribute).|
+| OCIS_LDAP_GROUP_SCHEMA_GROUPNAME
USERS_LDAP_GROUP_SCHEMA_GROUPNAME | string | cn | LDAP Attribute to use for the name of groups.|
+| OCIS_LDAP_GROUP_SCHEMA_MEMBER
USERS_LDAP_GROUP_SCHEMA_MEMBER | string | member | LDAP Attribute that is used for group members.|
| USERS_OWNCLOUDSQL_DB_USERNAME | string | owncloud | Database user to use for authenticating with the owncloud database.|
| USERS_OWNCLOUDSQL_DB_PASSWORD | string | secret | Password for the database user.|
| USERS_OWNCLOUDSQL_DB_HOST | string | mysql | Hostname of the database server.|
diff --git a/services/_includes/web_configvars.md b/services/_includes/web_configvars.md
index 166feeac2a3..3db197abe8e 100644
--- a/services/_includes/web_configvars.md
+++ b/services/_includes/web_configvars.md
@@ -25,8 +25,8 @@
| OCIS_CORS_ALLOW_HEADERS
WEB_CORS_ALLOW_HEADERS | []string | [Origin Accept Content-Type Depth Authorization Ocs-Apirequest If-None-Match If-Match Destination Overwrite X-Request-Id X-Requested-With Tus-Resumable Tus-Checksum-Algorithm Upload-Concat Upload-Length Upload-Metadata Upload-Defer-Length Upload-Expires Upload-Checksum Upload-Offset X-HTTP-Method-Override] | A blank or comma-separated list of allowed CORS headers. See following chapter for more details: *Access-Control-Request-Headers* at https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Request-Headers.|
| OCIS_CORS_ALLOW_CREDENTIALS
WEB_CORS_ALLOW_CREDENTIALS | bool | true | Allow credentials for CORS. See following chapter for more details: *Access-Control-Allow-Credentials* at https://developer.mozilla.org/en-US/docs/Web/HTTP/Headers/Access-Control-Allow-Credentials.|
| WEB_ASSET_PATH | string | ~/.ocis/web/assets | Serve ownCloud Web assets from a path on the filesystem instead of the builtin assets.|
-| WEB_UI_CONFIG_FILE
WEB_UI_CONFIG | string | | Read the ownCloud Web json based configuration from this path/file. The config file takes precedence over WEB_OPTION_xxx environment variables. See the text description for more details.|
-| WEB_UI_CONFIG_FILE
WEB_UI_PATH | string | | Read the ownCloud Web configuration from this file path.|
+| WEB_UI_CONFIG_FILE | string | | Read the ownCloud Web json based configuration from this path/file. The config file takes precedence over WEB_OPTION_xxx environment variables. See the text description for more details.|
+| WEB_UI_CONFIG_FILE | string | | Read the ownCloud Web configuration from this file path.|
| OCIS_URL
WEB_UI_THEME_SERVER | string | https://localhost:9200 | Base URL to load themes from. Will be prepended to the theme path.|
| WEB_UI_THEME_PATH | string | /themes/owncloud/theme.json | Subpath/file to load the theme. Will be appended to the URL of the theme server.|
| OCIS_URL
WEB_UI_CONFIG_SERVER | string | https://localhost:9200 | URL, where the oCIS APIs are reachable for ownCloud Web.|
diff --git a/services/_includes/webdav_configvars.md b/services/_includes/webdav_configvars.md
index 7d5c2d88daa..5e4440c7fcc 100644
--- a/services/_includes/webdav_configvars.md
+++ b/services/_includes/webdav_configvars.md
@@ -26,6 +26,6 @@
| OCIS_DISABLE_PREVIEWS
WEBDAV_DISABLE_PREVIEWS | bool | false | Set this option to 'true' to disable rendering of thumbnails triggered via webdav access. Note that when disabled, all access to preview related webdav paths will return a 404.|
| OCIS_URL
OCIS_PUBLIC_URL | string | https://127.0.0.1:9200 | URL, where oCIS is reachable for users.|
| WEBDAV_WEBDAV_NAMESPACE | string | /users/{{.Id.OpaqueId}} | CS3 path layout to use when forwarding /webdav requests|
-| OCIS_REVA_GATEWAY
REVA_GATEWAY | string | com.owncloud.api.gateway | CS3 gateway used to look up user metadata|
-| OCIS_REVA_GATEWAY_TLS_MODE
REVA_GATEWAY_TLS_MODE | string | | TLS mode for grpc connection to the CS3 gateway endpoint. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
-| OCIS_REVA_GATEWAY_TLS_CACERT
REVA_GATEWAY_TLS_CACERT | string | | The root CA certificate used to validate the gateway's TLS certificate.|
\ No newline at end of file
+| OCIS_REVA_GATEWAY | string | com.owncloud.api.gateway | CS3 gateway used to look up user metadata|
+| OCIS_REVA_GATEWAY_TLS_MODE | string | | TLS mode for grpc connection to the CS3 gateway endpoint. Possible values are 'off', 'insecure' and 'on'. 'off': disables transport security for the clients. 'insecure' allows using transport security, but disables certificate verification (to be used with the autogenerated self-signed certificates). 'on' enables transport security, including server certificate verification.|
+| OCIS_REVA_GATEWAY_TLS_CACERT | string | | The root CA certificate used to validate the gateway's TLS certificate.|
\ No newline at end of file
diff --git a/services/antivirus/_index.md b/services/antivirus/_index.md
index b3107818fce..6a13d345917 100644
--- a/services/antivirus/_index.md
+++ b/services/antivirus/_index.md
@@ -1,6 +1,6 @@
---
title: Antivirus
-date: 2023-08-23T00:45:58.75439597Z
+date: 2023-08-23T08:25:18.801623079Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/antivirus
diff --git a/services/audit/_index.md b/services/audit/_index.md
index 0c0d0be9013..42b541136e3 100644
--- a/services/audit/_index.md
+++ b/services/audit/_index.md
@@ -1,6 +1,6 @@
---
title: Audit
-date: 2023-08-23T00:45:58.754639357Z
+date: 2023-08-23T08:25:18.801791253Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/audit
diff --git a/services/auth-basic/_index.md b/services/auth-basic/_index.md
index 7e61e63b0e7..91c2e6ddea9 100644
--- a/services/auth-basic/_index.md
+++ b/services/auth-basic/_index.md
@@ -1,6 +1,6 @@
---
title: Auth-Basic
-date: 2023-08-23T00:45:58.754760815Z
+date: 2023-08-23T08:25:18.801870131Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/auth-basic
diff --git a/services/auth-bearer/_index.md b/services/auth-bearer/_index.md
index 9399005f05c..4efdb53d914 100644
--- a/services/auth-bearer/_index.md
+++ b/services/auth-bearer/_index.md
@@ -1,6 +1,6 @@
---
title: Auth-Bearer
-date: 2023-08-23T00:45:58.754875991Z
+date: 2023-08-23T08:25:18.801947105Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/auth-bearer
diff --git a/services/eventhistory/_index.md b/services/eventhistory/_index.md
index e46c8bd5493..9d7fd3c01b2 100644
--- a/services/eventhistory/_index.md
+++ b/services/eventhistory/_index.md
@@ -1,6 +1,6 @@
---
title: Eventhistory
-date: 2023-08-23T00:45:58.754984895Z
+date: 2023-08-23T08:25:18.802019782Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/eventhistory
diff --git a/services/frontend/_index.md b/services/frontend/_index.md
index 8fd60f9d3bc..67ae01085f1 100644
--- a/services/frontend/_index.md
+++ b/services/frontend/_index.md
@@ -1,6 +1,6 @@
---
title: Frontend
-date: 2023-08-23T00:45:58.75511499Z
+date: 2023-08-23T08:25:18.802100483Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/frontend
diff --git a/services/gateway/_index.md b/services/gateway/_index.md
index 044656bb208..d81a50db533 100644
--- a/services/gateway/_index.md
+++ b/services/gateway/_index.md
@@ -1,6 +1,6 @@
---
title: Gateway
-date: 2023-08-23T00:45:58.755279989Z
+date: 2023-08-23T08:25:18.802400346Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/gateway
diff --git a/services/graph/_index.md b/services/graph/_index.md
index 81f65ab51cc..17ce2e3ee9f 100644
--- a/services/graph/_index.md
+++ b/services/graph/_index.md
@@ -1,6 +1,6 @@
---
title: Graph
-date: 2023-08-23T00:45:58.755390888Z
+date: 2023-08-23T08:25:18.802484303Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/graph
diff --git a/services/idm/_index.md b/services/idm/_index.md
index 743e5457711..3426de98938 100644
--- a/services/idm/_index.md
+++ b/services/idm/_index.md
@@ -1,6 +1,6 @@
---
title: IDM
-date: 2023-08-23T00:45:58.755543695Z
+date: 2023-08-23T08:25:18.802581365Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/idm
diff --git a/services/idp/_index.md b/services/idp/_index.md
index 53495a01435..c4def389908 100644
--- a/services/idp/_index.md
+++ b/services/idp/_index.md
@@ -1,6 +1,6 @@
---
title: IDP
-date: 2023-08-23T00:45:58.755640807Z
+date: 2023-08-23T08:25:18.802645385Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/idp
diff --git a/services/invitations/_index.md b/services/invitations/_index.md
index 1584f5646af..3693bd2a491 100644
--- a/services/invitations/_index.md
+++ b/services/invitations/_index.md
@@ -1,6 +1,6 @@
---
title: Invitations
-date: 2023-08-23T00:45:58.755732719Z
+date: 2023-08-23T08:25:18.802711228Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/invitations
diff --git a/services/nats/_index.md b/services/nats/_index.md
index 4555890af76..b8170e16250 100644
--- a/services/nats/_index.md
+++ b/services/nats/_index.md
@@ -1,6 +1,6 @@
---
title: Nats
-date: 2023-08-23T00:45:58.75585583Z
+date: 2023-08-23T08:25:18.80280324Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/nats
diff --git a/services/notifications/_index.md b/services/notifications/_index.md
index e42a781e51f..025b5a805fa 100644
--- a/services/notifications/_index.md
+++ b/services/notifications/_index.md
@@ -1,6 +1,6 @@
---
title: Notification
-date: 2023-08-23T00:45:58.755987116Z
+date: 2023-08-23T08:25:18.802900873Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/notifications
diff --git a/services/ocdav/_index.md b/services/ocdav/_index.md
index 49d2c11f7cd..d77a89cd4d8 100644
--- a/services/ocdav/_index.md
+++ b/services/ocdav/_index.md
@@ -1,6 +1,6 @@
---
title: ocDAV
-date: 2023-08-23T00:45:58.756412495Z
+date: 2023-08-23T08:25:18.802986493Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/ocdav
diff --git a/services/ocs/_index.md b/services/ocs/_index.md
index d619148c23c..a221bfa9865 100644
--- a/services/ocs/_index.md
+++ b/services/ocs/_index.md
@@ -1,6 +1,6 @@
---
title: OCS
-date: 2023-08-23T00:45:58.756588365Z
+date: 2023-08-23T08:25:18.803087603Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/ocs
diff --git a/services/policies/_index.md b/services/policies/_index.md
index 066367ca93c..c548d602991 100644
--- a/services/policies/_index.md
+++ b/services/policies/_index.md
@@ -1,6 +1,6 @@
---
title: Policies
-date: 2023-08-23T00:45:58.756716616Z
+date: 2023-08-23T08:25:18.80317111Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/policies
diff --git a/services/postprocessing/_index.md b/services/postprocessing/_index.md
index 20b1a920e08..3defa31afa9 100644
--- a/services/postprocessing/_index.md
+++ b/services/postprocessing/_index.md
@@ -1,6 +1,6 @@
---
title: Postprocessing
-date: 2023-08-23T00:45:58.756929415Z
+date: 2023-08-23T08:25:18.803299881Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/postprocessing
diff --git a/services/proxy/_index.md b/services/proxy/_index.md
index b10bfee9204..a2fd787da2e 100644
--- a/services/proxy/_index.md
+++ b/services/proxy/_index.md
@@ -1,6 +1,6 @@
---
title: Proxy
-date: 2023-08-23T00:45:58.757100887Z
+date: 2023-08-23T08:25:18.803456846Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/proxy
diff --git a/services/search/_index.md b/services/search/_index.md
index af880f8c4cb..8e6284d9c8f 100644
--- a/services/search/_index.md
+++ b/services/search/_index.md
@@ -1,6 +1,6 @@
---
title: Search
-date: 2023-08-23T00:45:58.757326611Z
+date: 2023-08-23T08:25:18.803631924Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/search
diff --git a/services/settings/_index.md b/services/settings/_index.md
index ee029ed1853..c4b3bfa4a04 100644
--- a/services/settings/_index.md
+++ b/services/settings/_index.md
@@ -1,6 +1,6 @@
---
title: Settings
-date: 2023-08-23T00:45:58.757562193Z
+date: 2023-08-23T08:25:18.803778889Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/settings
diff --git a/services/storage-system/_index.md b/services/storage-system/_index.md
index d880facb784..8216701f17c 100644
--- a/services/storage-system/_index.md
+++ b/services/storage-system/_index.md
@@ -1,6 +1,6 @@
---
title: Storage-System
-date: 2023-08-23T00:45:58.757706515Z
+date: 2023-08-23T08:25:18.803878475Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/storage-system
diff --git a/services/storage-users/_index.md b/services/storage-users/_index.md
index c7d692f40b6..fdae485e736 100644
--- a/services/storage-users/_index.md
+++ b/services/storage-users/_index.md
@@ -1,6 +1,6 @@
---
title: Storage-Users
-date: 2023-08-23T00:45:58.757851937Z
+date: 2023-08-23T08:25:18.803972481Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/storage-users
diff --git a/services/thumbnails/_index.md b/services/thumbnails/_index.md
index 4dd6d19433d..ff4c588d095 100644
--- a/services/thumbnails/_index.md
+++ b/services/thumbnails/_index.md
@@ -1,6 +1,6 @@
---
title: Thumbnails
-date: 2023-08-23T00:45:58.758070478Z
+date: 2023-08-23T08:25:18.804081957Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/thumbnails
diff --git a/services/userlog/_index.md b/services/userlog/_index.md
index 530518ffef1..890cae7bb75 100644
--- a/services/userlog/_index.md
+++ b/services/userlog/_index.md
@@ -1,6 +1,6 @@
---
title: Userlog
-date: 2023-08-23T00:45:58.758226781Z
+date: 2023-08-23T08:25:18.804192654Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/userlog
diff --git a/services/web/_index.md b/services/web/_index.md
index 1d6ba46a524..d991ff7512f 100644
--- a/services/web/_index.md
+++ b/services/web/_index.md
@@ -1,6 +1,6 @@
---
title: Web
-date: 2023-08-23T00:45:58.758411467Z
+date: 2023-08-23T08:25:18.804297241Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/web
diff --git a/services/webdav/_index.md b/services/webdav/_index.md
index 8ead8d66ba7..eed3c5e009f 100644
--- a/services/webdav/_index.md
+++ b/services/webdav/_index.md
@@ -1,6 +1,6 @@
---
title: Webdav
-date: 2023-08-23T00:45:58.758537654Z
+date: 2023-08-23T08:25:18.804370307Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/webdav
diff --git a/services/webfinger/_index.md b/services/webfinger/_index.md
index a1672adc56f..629b3b6bfb3 100644
--- a/services/webfinger/_index.md
+++ b/services/webfinger/_index.md
@@ -1,6 +1,6 @@
---
title: Webfinger
-date: 2023-08-23T00:45:58.758669121Z
+date: 2023-08-23T08:25:18.804464735Z
weight: 20
geekdocRepo: https://github.com/owncloud/ocis
geekdocEditPath: edit/master/services/webfinger