English Angielski Japanese Japoński Korean Koreański Chinese (Simplified) Chiński Chinese (Traditional) Chiński Auto-detect Automatyczne wykrywanie Label for the auto-detect locale option in language selection dropdown Select language Wybierz język Label for the language selection dropdown () Locale option label showing the localized language name along with the native language name in parentheses. Dismiss Connection error, reconnecting... Błąd połączenia, ponowne łączenie... An unknown error occurred Please check the browser console for more details. Status messages Settings Ustawienia Stop impersonation Zatrzymaj podszywanie się Admin Admin Home authentik Logo Collapse navigation Expand navigation User interface Interfejs użytkownika Loading... Ładowanie... Application Aplikacja Logins Logowania Failed to fetch Nie udało się pobrać FIPS Status Stan FIPS OK OK FIPS compliance: passing Zgodność z FIPS: pozytywna Unverified Niezweryfikowany FIPS compliance: unverified Zgodność z FIPS: niezweryfikowana Show less Pokaż mniej Show more Pokaż więcej UID UID Name Nazwa App Aplikacja Model Name Nazwa modelu Message Wiadomość Subject Przedmiot From Z To Do Context Kontekst User Użytkownik Changes made: Wprowadzone zmiany: Key Klucz Previous value Poprzednia wartość New value Nowa wartość - - Added ID Dodano ID Removed ID Usunięto ID Cleared Wyczyszczono Affected model: Model, którego dotyczy problem: Authorized application: Autoryzowana aplikacja: Using flow Używanie przepływu Email info: Informacje e-mail: Secret: Sekret: Exception Wyjątek Open issue on GitHub... Otwórz problem w serwisie GitHub... Expression Expression  Binding Wiązanie Request Żądanie Object Obiekt Result Wynik Passing Przechodzący Messages Wiadomości New version available Nowa wersja dostępna Using source Używając źródła Attempted to log in as Próbowano zalogować się jako No additional data available. Brak dodatkowych danych. Loading Ładowanie no tabs defined bez zdefiniowanych kart Details Szczegóły : : Required Wymagany There was an error submitting the form. Close dialog Zamknij okno dialogowe API Access Dostęp API App password Hasło aplikacji Recovery Odzyskiwanie Verification Weryfikacja Unknown intent Nieznany zamiar Login Logowanie Failed login Nieudane logowanie Logout Wyloguj User was written to Użytkownik zapisał do Suspicious request Podejrzane zapytanie Password set Hasło ustawione Secret was viewed Sekret został wyświetlony Secret was rotated Sekret został obrócony Invitation used Wykorzystano zaproszenie Application authorized Aplikacja autoryzowana Source linked Źródło połączone Impersonation started Rozpoczęto podszywanie się Impersonation ended Podszywanie się zostało zakończone Flow execution Wykonanie przepływu Policy execution Wykonanie zasad Policy exception Wyjątek zasad Property Mapping exception Wyjątek mapowania właściwości System task execution Wykonywanie zadań systemowych System task exception Wyjątek zadania systemowego General system exception Ogólny wyjątek systemowy Configuration error Błąd konfiguracji Model created Utworzono model Model updated Zaktualizowano model Model deleted Model usunięty Email sent Email wysłany Update available Dostępna aktualizacja Alert Alert Notice Uwaga Warning Ostrzeżenie Unknown severity Nieznana intensywność Static tokens Tokeny statyczne TOTP Device Urządzenie TOTP A code has been sent to your address: A code has been sent to your email address. A one-time use code has been sent to you via SMS text message. Open your authenticator app to retrieve a one-time use code. Enter a one-time recovery code for this user. Enter the code from your authenticator device. Internal Wewnętrzny External Zewnętrzny Service account Konto usługowe Service account (internal) Konto usługowe (wewnętrzne) Remove item Usuń element table pagination - of - z Go to previous page Wróć do poprzedniej strony Go to next page Przejdź do następnej strony This field is required. Search... Szukaj... Search Query suggestions Query input Table Search Clear search Wyczyść wyszukiwanie Sort by "" Failed to fetch objects. Nie udało się wczytać obiektów. Select "" row Collapse row Expand row Refresh Odśwież actions Select all rows on page ( of selected) Last refreshed table Table content Column actions Anonymous user Anonimowy użytkownik On behalf of W imieniu Authenticated as Recent events Ostatnie wydarzenia Events Zdarzenia Action Akcja Creation Date Data utworzenia Client IP IP klienta No Events found. Nie znaleziono wydarzeń. No matching events could be found. Nie znaleziono pasujących zdarzeń. System Status Embedded outpost is not configured correctly. Wbudowana placówka nie jest poprawnie skonfigurowana. Check outposts. Sprawdź placówki. HTTPS is not detected correctly HTTPS nie jest poprawnie wykrywany Server and client are further than 5 seconds apart. Czas serwer i klienta różnią się o więcej niż 5 sekund. Everything is ok. Wszystko w porządku. Version Wersja Based on Na podstawie is available! jest dostępny! An outpost is on an incorrect version! Up-to-date! Aktualny! Latest version unknown Najnowsza wersja nieznana Workers Workerów No workers connected. Background tasks will not run. Brak połączonych workerów. Zadania w tle nie będą działać. Worker with incorrect version connected. Failed to fetch data. Nie udało się pobrać danych. Chart Event volume chart Authorizations Autoryzacje Successful Logins Pomyślne logowania Failed Logins Nieudane logowania Cancel Anuluj Synchronization status chart SCIM Provider Dostawca SCIM Google Workspace Provider Dostawca Google Workspace Microsoft Entra Provider Dostawca Microsoft Entra LDAP Source Źródło LDAP Kerberos Source Healthy Zdrowy Failed Niepowodzenie Unsynced / N/A Niezsynchronizowane / nd. Outpost status chart Healthy outposts Zdrowe placówki Outdated outposts Nieaktualne placówki Unhealthy outposts Niezdrowe placówki Operation failed to complete Quick actions Szybkie akcje Not found Nie znaleziono The URL "" was not found. Nie znaleziono " " adresu URL. Return home Powrót do strony głównej Skip to content Create a new application Utwórz nową aplikację Check the logs Sprawdź dzienniki Explore integrations Przeglądaj integracje Manage users Zarządzaj użytkownikami Check the release notes Zapoznaj się z informacjami o wersji Overview Przegląd Outpost status Status placówki Sync status Status synchronizacji Logins and authorizations over the last week (per 8 hours) Logowania i autoryzacje w ciągu ostatniego tygodnia (co 8 godzin) Apps with most usage Najczęściej używane aplikacje Welcome, Welcome General system status Ogólny stan systemu Objects created Utworzone obiekty Users created per day in the last month Użytkownicy stworzeni dziennie w ciągu ostatniego miesiąca Users created Utworzeni użytkownicy Logins per day in the last month Logowania dziennie w ciągu ostatniego miesiąca Failed Logins per day in the last month Nieudane logowania dziennie w ciągu ostatniego miesiąca Failed logins Nieudane logowania User Statistics Statystyki użytkowników Yes Tak No Nie No log messages. Brak dziennika wiadomości Timestamp Znacznik czasu Attributes Atrybuty Time Czas Level Poziom Event Zdarzenie Logger Rejestrator Not used by any other object. Nie używany przez żaden inny obiekt. () ( ) Delete Usuń deleted usunięty ID ID Successfully deleted Pomyślnie usunięto Delete Usuń Are you sure you want to delete ? Czy jesteś pewien, że chcesz usunąć ? No form found Nie znaleziono formularza Form actions Submit action Cancel action Successfully updated schedule. Crontab Paused Pause this schedule Failed to fetch objects: Successfully assigned permission. Pomyślnie przypisane uprawnienie. Role Rola Assign Przypisz Assign permission to role Przypisz uprawnienie do roli Permission(s) Uprawnienia(e) Permission Uprawnienie Superuser Superużytkownik Model Model Select permissions to assign Wybierz uprawnienia do przypisania Add Dodaj Permissions to add Uprawnienia do dodania Select permissions Wybierz uprawnienia Assigned to role Assign permission Przypisz uprawnienie Role doesn't have view permission so description cannot be retrieved. Rola nie ma uprawnień do wyświetlania, więc nie można pobrać opisu. Permissions set on roles which affect this object. Uprawnienia ustawione dla ról, które mają wpływ na ten obiekt. Assigned global permissions Przypisane uprawnienia globalne Assigned object permissions Przypisane uprawnienia obiektu Permissions assigned to this role which affect all object instances of a given type. Uprawnienia przypisane do tej roli, które wpływają na wszystkie instancje obiektów danego typu. Close Zamknij Permissions Uprawnienia Waiting to run Consumed Pre-processing Running Post-processing Successful Pomyślny Error Błąd Unknown Nieznany Running tasks Queued tasks Successful tasks Error tasks Task Queue Retries Planned execution time Last updated Status Status Actions Działania Row Actions Show only standalone tasks Exclude successful tasks Retry task Current execution logs Previous executions logs Schedule Next run Last status Show only standalone schedules Run scheduled task now Update Schedule Edit Edytuj Tasks Schedules System Tasks Zadania systemowe Long-running operations which authentik executes in the background. Długotrwałe operacje, które authentik wykonuje w tle. Next Dalej Back Wstecz Wizard steps Wizard navigation New application Nowa aplikacja Create a new application and configure a provider for it. Any policy must match to grant access Każda zasada musi być zgodna, aby przyznać dostęp All policies must match to grant access Wszystkie zasady muszą być zgodne, aby przyznać dostęp An application name is required Not a valid URL Not a valid slug Configure the Application Type an application name... Application Name Slug Ślimak Internal application name used in URLs. Wewnętrzna nazwa aplikacji używana w adresach URL. Group Grupa e.g. Collaboration, Communication, Internal, etc. Optionally enter a group name. Applications with identical groups are shown grouped together. Opcjonalnie wprowadź nazwę grupy. Aplikacje z identycznymi grupami są wyświetlane razem. Policy engine mode Tryb silnika zasad UI Settings Ustawienia interfejsu użytkownika Launch URL URL uruchamiania https://... If left empty, authentik will try to extract the launch URL based on the selected provider. Jeśli pozostawione puste, authentik spróbuje wyodrębnić URL uruchamiania na podstawie wybranego dostawcy. Open in new tab Otwórz w nowej karcie Select all rows Zaznacz wszystkie wiersze Bind existing policy/group/user Przypisz istniejącą politykę/grupę/użytkownika Order Kolejność Enabled Włączony Timeout Limit czasu Configure Bindings Policy Zasada Group Grupa User Użytkownik Configure Policy/User/Group Bindings These policies control which users can access this application. Te zasady kontrolują, którzy użytkownicy mogą uzyskać dostęp do tej aplikacji. No bound policies. No policies are currently bound to this object. Żadne zasady nie są obecnie powiązane z tym obiektem. Bind policy/group/user Configure Policy Bindings Pass Przepuść Don't Pass Edit Binding Edytuj powiązanie Save Binding Create a Policy/User/Group Binding Policy Zasada Negates the outcome of the binding. Messages are unaffected. Neguje wynik wiązania. Wiadomości pozostają nienaruszone. Enterprise only Tylko dla Enterprise Learn more about the enterprise license. Apply changes Zastosuj zmiany UNNAMED Wizard content Finish Zakończ Icon Ikona Choose a Provider Please choose a provider type before proceeding. Choose a Provider Type Certificate Certyfikat Select a certificate... Authentication Uwierzytelnianie Authorization Autoryzacja Enrollment Rejestracja Invalidation Unieważnienie Stage Configuration Etap konfiguracji Unenrollment Wypisanie się Unknown designation Nieznane oznaczenie Stacked Ułożone Content left Zawartość lewa Content right Zawartość prawa Sidebar left Lewy pasek boczny Sidebar right Prawy pasek boczny Unknown layout Nieznany układ Select a flow... Add All Available Dodaj wszystkie dostępne Remove All Available Usuń wszystkie dostępne Remove Usuń Remove All Usuń wszystko Pagination Paginacja Available options Dostępne opcje Selected options Wybrane opcje Search ... (Format: hours=-1;minutes=-2;seconds=-3). (Format: hours=1;minutes=2;seconds=3). The following keywords are supported: Obsługiwane są następujące słowa kluczowe: Cached binding Wiązanie z pamięci podręcznej Flow is executed and session is cached in memory. Flow is executed when session expires Przepływ jest wykonywany, a sesja zapisywana w pamięci podręcznej. Przepływ jest wykonywany po wygaśnięciu sesji Direct binding Wiązanie bezpośrednie Always execute the configured bind flow to authenticate the user Zawsze wykonuj skonfigurowany przepływ powiązań w celu uwierzytelnienia użytkownika. Cached querying Zapytania w pamięci podręcznej The outpost holds all users and groups in-memory and will refresh every 5 Minutes Placówka przechowuje wszystkich użytkowników i grupy w pamięci i będzie odświeżana co 5 minut. Direct querying Bezpośrednie odpytywanie Always returns the latest data, but slower than cached querying Zawsze zwraca najnowsze dane, ale wolniej niż zapytania z pamięci podręcznej When enabled, code-based multi-factor authentication can be used by appending a semicolon and the TOTP code to the password. This should only be enabled if all users that will bind to this provider have a TOTP device configured, as otherwise a password may incorrectly be rejected if it contains a semicolon. Gdy ta opcja jest włączona, uwierzytelnianie wieloskładnikowe oparte na kodzie może być używane poprzez dodanie średnika i kodu TOTP do hasła. Ta opcja powinna być włączona tylko wtedy, gdy wszyscy użytkownicy, którzy będą łączyć się z tym dostawcą, mają skonfigurowane urządzenie TOTP, ponieważ w przeciwnym razie hasło może zostać nieprawidłowo odrzucone, jeśli zawiera średnik. The certificate for the above configured Base DN. As a fallback, the provider uses a self-signed certificate. Certyfikat dla skonfigurowanego powyżej Base DN. Jako rozwiązanie rezerwowe, dostawca używa certyfikatu z podpisem własnym. DNS name for which the above configured certificate should be used. The certificate cannot be detected based on the base DN, as the SSL/TLS negotiation happens before such data is exchanged. Nazwa DNS, dla której powinien być używany wyżej skonfigurowany certyfikat. Certyfikatu nie można wykryć na podstawie bazowego DN, ponieważ negocjacja SSL/TLS odbywa się przed wymianą takich danych. The start for uidNumbers, this number is added to the user.Pk to make sure that the numbers aren't too low for POSIX users. Default is 2000 to ensure that we don't collide with local users uidNumber Początek dla uidNumbers, ten numer jest dodawany do user.Pk, aby upewnić się, że liczby nie są zbyt niskie dla użytkowników POSIX. Wartość domyślna to 2000, aby zapewnić, że nie kolidujemy z lokalnymi użytkownikami uidNumber The start for gidNumbers, this number is added to a number generated from the group.Pk to make sure that the numbers aren't too low for POSIX groups. Default is 4000 to ensure that we don't collide with local groups or users primary groups gidNumber Początek gidNumbers, liczba ta jest dodawana do liczby wygenerowanej z group.Pk, aby upewnić się, że liczby nie są zbyt niskie dla grup POSIX. Wartość domyślna to 4000, aby upewnić się, że nie kolidujemy z lokalnymi grupami lub użytkownikami podstawowymi grupami gidNumber Provider Name Type a provider name... Configure how the outpost authenticates requests. Skonfiguruj sposób, w jaki placówka uwierzytelnia żądania. Configure how the outpost queries the core authentik server's users. Skonfiguruj sposób, w jaki placówka wysyła zapytania do użytkowników podstawowego serwera authentik. Code-based MFA Support Wsparcie wieloetapowego uwierzytelniania opartego na kodach Flow settings Ustawienia przepływu Flow used for users to authenticate. Przepływ używany do uwierzytelniania użytkowników. Flow used for unbinding users. Protocol settings Ustawienia protokołu Base DN Base DN LDAP DN under which bind requests and search requests can be made. LDAP DN, w ramach którego można tworzyć żądania powiązania i żądania wyszukiwania. Configure LDAP Provider Skonfiguruj dostawcę LDAP Show field content Hide field content Add entry Strict Regex URL URL Confidential Poufny Confidential clients are capable of maintaining the confidentiality of their credentials such as client secrets Poufni klienci są w stanie zachować poufność swoich danych uwierzytelniających, takich jak sekrety klienta Public Publiczny Public clients are incapable of maintaining the confidentiality and should use methods like PKCE. Klienci publiczni nie są w stanie zachować poufności i powinni korzystać z metod takich jak PKCE. Back-channel Server-to-server logout notifications Front-channel Browser iframe logout notifications Based on the User's hashed ID Na podstawie hashowanego ID użytkownika Based on the User's ID Na podstawie ID użytkownika Based on the User's UUID Na podstawie UUID użytkownika Based on the User's username Na podstawie nazwy użytkownika Based on the User's Email Na podstawie adresu e-mail użytkownika This is recommended over the UPN mode. Jest to zalecane zamiast trybu UPN. Based on the User's UPN Na podstawie UPN użytkownika Requires the user to have a 'upn' attribute set, and falls back to hashed user ID. Use this mode only if you have different UPN and Mail domains. Wymaga, aby użytkownik miał ustawiony atrybut „upn” i powraca do hashowanego identyfikatora użytkownika. Używaj tego trybu tylko wtedy, gdy masz różne domeny UPN i Mail. Each provider has a different issuer, based on the application slug Każdy dostawca ma innego wystawcę, w zależności od ślimaka aplikacji Same identifier is used for all providers Ten sam identyfikator jest używany dla wszystkich dostawców To allow any redirect URI, set the mode to Regex and the value to ".*". Be aware of the possible security implications this can have. Authorization flow Przepływ autoryzacji Select an authorization flow... Flow used when authorizing this provider. Przepływ używany podczas autoryzacji tego dostawcy. Client ID Client ID Client Secret Client Secret Redirect URIs/Origins (RegEx) URIs/Origins przekierowania (RegEx) Logout URI URI to send logout notifications to when users log out. Required for OpenID Connect Logout functionality. Logout Method The logout method determines how the logout URI is called — back-channel (server-to-server) or front-channel (browser iframe). Signing Key Klucz podpisujący Select a signing key... Key used to sign the tokens. Klucz używany do podpisywania tokenów. Advanced flow settings Select an authentication flow... Flow used when a user access this provider and is not authenticated. Przepływ używany, gdy użytkownik uzyskuje dostęp do tego dostawcy i nie jest uwierzytelniony. Select an invalidation flow... Flow used when logging out of this provider. Advanced protocol settings Zaawansowane ustawienia protokołu Configure how long access codes are valid for. Skonfiguruj czas ważności kodów dostępu. Configure how long access tokens are valid for. Skonfiguruj, jak długo tokeny dostępu są ważne. Configure how long refresh tokens are valid for. Konfiguracja okresu ważności tokenów odświeżania. When renewing a refresh token, if the existing refresh token's expiry is within this threshold, the refresh token will be renewed. Set to seconds=0 to always renew the refresh token. Scopes Zakresy Available Scopes Selected Scopes Select which scopes can be used by the client. The client still has to specify the scope to access the data. Wybierz zakresy, których może używać klient. Klient nadal musi określić zakres dostępu do danych. Encryption Key Select an encryption key... Key used to encrypt the tokens. Only enable this if the application using this provider supports JWE tokens. authentik only supports RSA-OAEP-256 for encryption. Configure what data should be used as unique User Identifier. For most cases, the default should be fine. Skonfiguruj, jakie dane mają być używane jako unikalny identyfikator użytkownika. W większości przypadków wartość domyślna powinna być w porządku. Include claims in id_token Uwzględnij roszczenia w id_token Include User claims from scopes in the id_token, for applications that don't access the userinfo endpoint. Uwzględnij oświadczenia użytkownika z zakresów w id_token dla aplikacji, które nie uzyskują dostępu do punktu końcowego informacji o użytkowniku. Issuer mode Tryb wystawcy Configure how the issuer field of the ID Token should be filled. Skonfiguruj jak pole wystawcy tokena ID powinien być wypełniony. Machine-to-Machine authentication settings Ustawienia uwierzytelniania typu maszyna-maszyna Federated OIDC Sources Available Sources Selected Sources JWTs signed by certificates configured in the selected sources can be used to authenticate to this provider. JWT podpisane przez certyfikaty skonfigurowane w wybranych źródłach mogą służyć do uwierzytelniania u tego dostawcy. Available Providers Selected Providers JWTs signed by the selected providers can be used to authenticate to this provider. Configure OAuth2 Provider Successfully updated provider. Pomyślnie zaktualizowano dostawcę. Successfully created provider. Pomyślnie utworzono dostawcę. An error occurred while updating the provider. An error occurred while creating the provider. HTTP-Basic Username Key Klucz nazwy użytkownika HTTP-Basic User/Group Attribute used for the user part of the HTTP-Basic Header. If not set, the user's Email address is used. Atrybut użytkownika/grupy używany w części użytkownika nagłówka HTTP-Basic. Jeśli nie jest ustawiony, używany jest adres e-mail użytkownika. HTTP-Basic Password Key Klucz hasła HTTP-Basic User/Group Attribute used for the password part of the HTTP-Basic Header. Atrybut użytkownika/grupy używany w części hasła nagłówka HTTP-Basic. Proxy Proxy Forward auth (single application) Forward auth (pojedyncza aplikacja) Forward auth (domain level) Forward auth (na poziomie domeny) This provider will behave like a transparent reverse-proxy, except requests must be authenticated. If your upstream application uses HTTPS, make sure to connect to the outpost using HTTPS as well. Ten dostawca będzie zachowywał się jak przezroczysty odwrotny serwer proxy, z wyjątkiem tego, że żądania muszą być uwierzytelnione. Jeśli Twoja aplikacja nadrzędna korzysta z protokołu HTTPS, upewnij się, że łączysz się z placówką również za pomocą protokołu HTTPS. External host Zewnętrzny host The external URL you'll access the application at. Include any non-standard port. Zewnętrzny adres URL, pod którym uzyskasz dostęp do aplikacji. Uwzględnij dowolny niestandardowy port. Internal host Wewnętrzny host http(s)://... Upstream host that the requests are forwarded to. Host nadrzędny, do którego przekazywane są żądania. Internal host SSL Validation Weryfikacja SSL hosta wewnętrznego Validate SSL Certificates of upstream servers. Sprawdź poprawność certyfikatów SSL serwerów nadrzędnych. Use this provider with nginx's auth_request or traefik's forwardAuth. Each application/domain needs its own provider. Additionally, on each domain, /outpost.goauthentik.io must be routed to the outpost (when using a managed outpost, this is done for you). Użyj tego dostawcy z nginx's auth_request lub traefik's forwardAuth. Każda aplikacja/domena potrzebuje własnego dostawcy. Dodatkowo, w każdej domenie, /outpost.goauthentik.io musi być kierowane do placówki (w przypadku korzystania z zarządzanej placówki, jest to wykonywane za Ciebie). Use this provider with nginx's auth_request or traefik's forwardAuth. Only a single provider is required per root domain. You can't do per-application authorization, but you don't have to create a provider for each application. Użyj tego dostawcy z auth_request nginx lub forwardAuth traefik. Tylko jeden dostawca jest wymagany na domenę główną. Nie możesz wykonać autoryzacji dla aplikacji, ale nie musisz tworzyć dostawcy dla każdej aplikacji. An example setup can look like this: Przykładowa konfiguracja może wyglądać tak: authentik running on auth.example.com authentik działa na auth.example.com app1 running on app1.example.com app1 działająca na app1.example.com In this case, you'd set the Authentication URL to auth.example.com and Cookie domain to example.com. W takim przypadku ustawisz adres URL uwierzytelniania na auth.example.com, a domenę plików cookie na example.com. Authentication URL URL uwierzytelniania The external URL you'll authenticate at. The authentik core server should be reachable under this URL. Zewnętrzny adres URL, pod którym będziesz się uwierzytelniać. Jądro serwera authentik powinien być dostępny pod tym adresem URL. Cookie domain Domena plików cookie domain.tld Set this to the domain you wish the authentication to be valid for. Must be a parent domain of the URL above. If you're running applications as app1.domain.tld, app2.domain.tld, set this to 'domain.tld'. Ustaw to na domenę, dla której chcesz, aby uwierzytelnianie było ważne. Musi być domeną nadrzędną powyższego adresu URL. Jeśli używasz aplikacji jako app1.domain.tld, app2.domain.tld, ustaw to na „domain.tld”. Token validity Ważność tokena Configure how long tokens are valid for. Skonfiguruj, jak długo tokeny są ważne. Additional scopes Dodatkowe zakresy Additional scope mappings, which are passed to the proxy. Dodatkowe mapowania zakresu, które są przekazywane do serwera proxy. Unauthenticated URLs Nieuwierzytelnione adresy URL Unauthenticated Paths Nieuwierzytelnione ścieżki Regular expressions for which authentication is not required. Each new line is interpreted as a new expression. Wyrażenia regularne, dla których uwierzytelnianie nie jest wymagane. Każda nowa linia jest interpretowana jako nowe wyrażenie. When using proxy or forward auth (single application) mode, the requested URL Path is checked against the regular expressions. When using forward auth (domain mode), the full requested URL including scheme and host is matched against the regular expressions. Podczas korzystania z trybu proxy lub uwierzytelniania do przodu (pojedyncza aplikacja) żądana ścieżka URL jest porównywana z wyrażeniami regularnymi. Podczas korzystania z uwierzytelniania do przodu (tryb domeny) pełny żądany adres URL, w tym schemat i host, jest dopasowywany do wyrażeń regularnych. Authentication settings Ustawienia uwierzytelniania Intercept header authentication Przechwytywanie uwierzytelniania nagłówka When enabled, authentik will intercept the Authorization header to authenticate the request. Po włączeniu, authentik przechwyci nagłówek Authorization w celu uwierzytelnienia żądania. Send HTTP-Basic Authentication Wysyłanie uwierzytelniania HTTP-Basic Send a custom HTTP-Basic Authentication header based on values from authentik. Wysyła niestandardowy nagłówek uwierzytelniania HTTP-Basic na podstawie wartości z authentik. Configure Proxy Provider Skonfiguruj dostawcę proxy Configure Remote Access Provider Connection expiry Wygasanie połączenia Determines how long a session lasts before being disconnected and requiring re-authorization. Określa czas trwania sesji przed jej rozłączeniem i koniecznością ponownej autoryzacji. Property mappings Mapowanie właściwości Available Property Mappings Selected Property Mappings Shared secret Współdzielony sekret Client Networks Sieci klienckie Certificate used for EAP-TLS. Requires Mutual TLS Stage in authentication flow. Configure Radius Provider Skonfiguruj dostawcę usługi Radius Redirect Przekierowanie Post Post Sign assertions When enabled, the assertion element of the SAML response will be signed. Sign responses When enabled, the SAML response will be signed. Sign logout requests When enabled, SAML logout requests will be signed. Front-channel (Iframe) Front-channel (Native) Back-channel (POST) SLS Binding Determines how authentik sends the logout response back to the Service Provider. Method to use for logout when SLS URL is configured. ACS URL ACS URL Service Provider Binding Wiązanie usługodawcy Determines how authentik sends the response back to the Service Provider. Określa, w jaki sposób authentik przesyła odpowiedź z powrotem do Usługodawcy. Issuer Wystawca Audience Odbiorcy SLS URL Optional Single Logout Service URL to send logout responses to. If not set, no logout response will be sent. Signing Certificate Certyfikat podpisujący Certificate used to sign outgoing Responses going to the Service Provider. Certyfikat używany do podpisywania Odpowiedzi wychodzących kierowanych do Usługodawcy. Verification Certificate Certyfikat weryfikacji When selected, incoming assertion's Signatures will be validated against this certificate. To allow unsigned Requests, leave on default. Po wybraniu, przychodzące podpisy asercji będą sprawdzane względem tego certyfikatu. Aby zezwolić na niepodpisane żądania, pozostaw domyślnie. Encryption Certificate Certyfikat szyfrowania When selected, assertions will be encrypted using this keypair. Available User Property Mappings Selected User Property Mappings NameID Property Mapping Mapowanie właściwości NameID Configure how the NameID value will be created. When left empty, the NameIDPolicy of the incoming request will be respected. Skonfiguruj sposób tworzenia wartości NameID. Gdy puste, NameIDPolicy przychodzącego żądania będzie przestrzegany. AuthnContextClassRef Property Mapping Configure how the AuthnContextClassRef value will be created. When left empty, the AuthnContextClassRef will be set based on which authentication methods the user used to authenticate. Assertion valid not before Asercja ważna nie wcześniej Configure the maximum allowed time drift for an assertion. Skonfiguruj maksymalny dozwolony dryft czasu dla asercji. Assertion valid not on or after Asercja ważna nie w lub później Assertion not valid on or after current time + this value. Asercja nieważna w bieżącym czasie lub później + ta wartość. Session valid not on or after Sesja ważna nie w lub później Session not valid on or after current time + this value. Sesja nieważna w bieżącym czasie lub później + ta wartość. Default relay state Domyślny stan przekaźnika When using IDP-initiated logins, the relay state will be set to this value. Podczas korzystania z logowania inicjowanego przez IDP stan przekaźnika zostanie ustawiony na tę wartość. Default NameID Policy Persistent Trwały Email address Adres e-mail Windows Windows X509 Subject Temat X509 Transient przejściowy Configure the default NameID Policy used by IDP-initiated logins and when an incoming assertion doesn't specify a NameID Policy (also applies when using a custom NameID Mapping). Digest algorithm Algorytm skrótu Signature algorithm Algorytm sygnatury Configure SAML Provider Skonfiguruj dostawcę SAML Token Token Token to authenticate with. OAuth Source Specify OAuth source used for authentication. OAuth Parameters Additional OAuth parameters, such as grant_type. SCIM base url, usually ends in /v2. Podstawowy adres url SCIM, zwykle kończy się na /v2. Verify SCIM server's certificates Authentication Mode Authenticate SCIM requests using a static token. Authenticate SCIM requests using OAuth. Compatibility Mode Default Domyślny Default behavior. AWS Altered behavior for usage with Amazon Web Services. Slack Altered behavior for usage with Slack. Salesforce Altered behavior for usage with Salesforce. Alter authentik's behavior for vendor-specific SCIM implementations. Enable dry-run mode When enabled, mutating requests will be dropped and logged instead. User filtering Filtrowanie użytkowników Exclude service accounts Wyklucz konta usługowe Only sync users within the selected group. Synchronizuje tylko użytkowników z wybranej grupy. Attribute mapping Mapowanie atrybutów User Property Mappings Mapowania właściwości użytkownika Property mappings used to user mapping. Mapowania właściwości używane do mapowania użytkownika. Group Property Mappings Mapowanie właściwości grupy Available Group Property Mappings Selected Group Property Mappings Property mappings used to group creation. Mapowania właściwości używane do tworzenia grup. Sync settings Page size Controls the number of objects synced in a single task. Page timeout Timeout for synchronization of a single page. Configure SCIM Provider Skonfiguruj dostawcę SCIM Configure Provider Type Typ None strict regexp Forward auth (domain-level) Forward auth (na poziomie domeny) Unknown proxy mode Nieznany tryb proxy Mode Tryb Internal Host Wewnętrzny host External Host Zewnętrzny host Basic-Auth Basic-Auth Unknown type Nieznany typ Redirect URIs URI przekierowania Review and Submit Application There was an error in the application. W aplikacji wystąpił błąd. Review the application. Przejrzyj aplikację. There was an error in the provider. Wystąpił błąd u dostawcy. Review the provider. Sprawdź dostawcę. There was an error. Please go back and review the application. There was an error: Please go back and review the application. There was an error creating the application, but no error message was sent. Please review the server logs. Wystąpił błąd podczas tworzenia aplikacji, ale nie został wysłany żaden komunikat o błędzie. Przejrzyj dzienniki serwera. Review the Application and Provider Provider Dostawca Your application has been saved Aplikacja została zapisana Saving application... authentik was unable to complete this process. Don't show this message again. Nie pokazuj więcej tego komunikatu. Successfully imported provider. Pomyślnie zaimportowano dostawcę. Metadata Metadane Create Utwórz New Provider Open the wizard to create a new provider. Credentials Poświadczenia Google Cloud credentials file. Plik poświadczeń Google Cloud. Delegated Subject Przedmiot delegowany Email address of the user the actions of authentik will be delegated to. Adres e-mail użytkownika, któremu zostaną przekazane działania authentik. Default group email domain Domyślna domena grupowej poczty e-mail Default domain that is used to generate a group's email address. Can be customized using property mappings. Domyślna domena używana do generowania adresu e-mail grupy. Można dostosować za pomocą mapowania właściwości. User deletion action Akcja usunięcia użytkownika User is deleted Użytkownik został usunięty Suspend Zawieś User is suspended, and connection to user in authentik is removed. Użytkownik jest zawieszony, a połączenie z użytkownikiem w authentik zostaje usunięte. Do Nothing Nie rób nic The connection is removed but the user is not modified Połączenie jest usunięte, ale użytkownik nie jest modyfikowany Determines what authentik will do when a User is deleted. Określa, co authentik zrobi, gdy użytkownik zostanie usunięty. Group deletion action Akcja usunięcia grupy Group is deleted Grupa została usunięta The connection is removed but the group is not modified Połączenie jest usunięte, ale grupa nie jest modyfikowana Determines what authentik will do when a Group is deleted. Określa, co zrobi authentik, gdy grupa zostanie usunięta. Client ID for the app registration. ID klienta dla rejestracji aplikacji. Client secret for the app registration. Sekret klienta do rejestracji aplikacji. Tenant ID ID najemcy ID of the tenant accounts will be synced into. Identyfikator kont najemców, z którymi będą synchronizowane. Delete authorization on disconnect Usuwanie autoryzacji przy rozłączeniu When enabled, connection authorizations will be deleted when a client disconnects. This will force clients with flaky internet connections to re-authorize the endpoint. Po włączeniu tej opcji autoryzacje połączeń będą usuwane, gdy klient się rozłączy. Zmusi to klientów ze słabymi połączeniami internetowymi do ponownej autoryzacji punktu końcowego. Connection settings. Ustawienia połączenia. Key used to sign the events. Event Retention Determines how long events are stored for. If an event could not be sent correctly, its expiration is also increased by this duration. Providers Dostawcy Provide support for protocols like SAML and OAuth to assigned applications. Zapewniają obsługę protokołów takich jak SAML i OAuth przypisanym aplikacjom. Provider Search Provider(s) Dostawca(y) Assigned to application Przypisany do aplikacji Assigned to application (backchannel) Przypisany do aplikacji (backchannel) Provider not assigned to any application. Successfully triggered sync. Log messages Dziennik wiadomości Override dry-run mode When enabled, this sync will still execute mutating requests regardless of the dry-run mode in the provider. Sync Sync Group Google Workspace Group(s) Grupa(y) Google Workspace Sync User Google Workspace User(s) Użytkownik(cy) Google Workspace Username Nazwa użytkownika Current status Sync is currently running. Sync is not currently running. Last successful sync No successful sync found. Last sync status Changelog Lista zmian Provisioned Users Dostarczeni użytkownicy Provisioned Groups Dostarczone grupy Warning: Provider is not assigned to an application as backchannel provider. Ostrzeżenie: Dostawca nie jest przypisany do aplikacji jako dostawca backchannel. Dry-run Update Google Workspace Provider Aktualizuj dostawcę Google Workspace Either input a full URL, a relative path, or use 'fa://fa-test' to use the Font Awesome icon "fa-test". Wprowadź pełny adres URL, ścieżkę względną lub użyj „fa://fa-test”, aby użyć ikony Font Awesome „fa-test”. Path template for users created. Use placeholders like `%(slug)s` to insert the source slug. Szablon ścieżki dla utworzonych użytkowników. Użyj symboli zastępczych, takich jak `%(slug)s` aby wstawić źródłowego ślimaka. Successfully updated application. Pomyślnie zaktualizowano aplikację. Successfully created application. Pomyślnie utworzono aplikacje. Using this form will only create an Application. In order to authenticate with the application, you will have to manually pair it with a Provider. Select a provider that this application should use. Wybierz dostawcę, z którego ma korzystać aplikacja. Backchannel Providers Dostawcy usług backchannel Select backchannel providers which augment the functionality of the main provider. Wybierz dostawców backchannel, którzy rozszerzają funkcjonalność głównego dostawcy. Add provider Dodaj dostawcę UI settings Ustawienia interfejsu użytkownika Icon Ikona Publisher Wydawca Description Opis Create Application Utwórz aplikację Warning: Provider is not used by any Outpost. Ostrzeżenie: Dostawca nie jest używany przez żadną placówkę. Assigned to application Przypisany do aplikacji Update LDAP Provider Aktualizuj dostawcę LDAP How to connect Jak się połączyć Connect to the LDAP Server on port 389: Połącz się z serwerem LDAP na porcie 389: Check the IP of the Kubernetes service, or Sprawdź adres IP usługi Kubernetes lub The Host IP of the docker host Adres IP hosta dockera Bind DN Wiąż DN Bind Password Powiąż hasło Your authentik password Search base Baza wyszukiwania Microsoft Entra Group(s) Grupa(y) Microsoft Entra Microsoft Entra User(s) Użytkownik(cy) Microsoft Entra Update Microsoft Entra Provider Aktualizuj dostawcę Microsoft Entra Preview Podgląd Warning: Provider is not used by an Application. Ostrzeżenie: Dostawca nie jest używany przez aplikację. OpenID Configuration URL URL konfiguracji OpenID OpenID Configuration Issuer Wystawca konfiguracji OpenID Authorize URL URL autoryzacji Token URL URL tokena Userinfo URL URL Userinfo Logout URL URL wylogowania JWKS URL URL JWKS JWT payload Ładunek JWT Preview for user Podgląd dla użytkownika Nginx (Ingress) Nginx (Ingress) Nginx (Proxy Manager) Nginx (Proxy Manager) Nginx (standalone) Nginx (standalone) Traefik (Ingress) Traefik (Ingress) Traefik (Compose) Traefik (Compose) Traefik (Standalone) Traefik (Standalone) Caddy (Standalone) Caddy (Standalone) Update Proxy Provider Aktualizuj dostawcę proxy Protocol Settings Ustawienia protokołu Allowed Redirect URIs Dozwolone URI przekierowania Setup Instalacja No additional setup is required. Nie jest wymagana żadna dodatkowa konfiguracja. Connection Token(s) Token(y) połączenia Endpoint Punkt końcowy Successfully updated endpoint. Pomyślnie zaktualizowano punkt końcowy. Successfully created endpoint. Pomyślnie utworzono punkt końcowy. Protocol Protokół RDP RDP SSH SSH VNC VNC Host Host Hostname/IP to connect to. Optionally specify the port. Maximum concurrent connections Maksymalna liczba jednoczesnych połączeń Maximum concurrent allowed connections to this endpoint. Can be set to -1 to disable the limit. Maksymalne dozwolone jednoczesne połączenia z tym punktem końcowym. Może być ustawiony na -1, aby wyłączyć limit. Advanced settings Zaawansowane ustawienia Search for users by username or display name... Search Users Select Users Active Aktywny Last login Ostatnie logowanie Select users Confirm Successfully updated group. Pomyślnie zaktualizowano grupę. Successfully created group. Pomyślnie utworzono grupę. Type a group name... Group Name Superuser Privileges Whether users added to this group will have superuser privileges. Roles Role Available Roles Dostępne role Selected Roles Wybrane role Select roles to grant this groups' users' permissions from the selected roles. Wybierz role, aby przyznać użytkownikom tej grupy uprawnienia z wybranych ról. Set custom attributes using YAML or JSON. Ustaw atrybuty niestandardowe za pomocą YAML lub JSON. Successfully updated binding. Pomyślnie zaktualizowano powiązanie. Successfully created binding. Pomyślnie utworzono powiązanie. Result used when policy execution fails. Wynik używany, gdy wykonanie zasady się nie powiedzie. Successfully updated policy. Pomyślnie zaktualizowano zasadę. Successfully created policy. Pomyślnie utworzono zasadę. A policy used for testing. Always returns the same result as specified below after waiting a random duration. Zasada używana do testowania. Zawsze zwraca ten sam wynik, jak określono poniżej, po odczekaniu losowego czasu trwania. Execution logging Rejestrowanie wykonania When this option is enabled, all executions of this policy will be logged. By default, only execution errors are logged. Gdy ta opcja jest włączona, wszystkie wykonania tej zasady będą rejestrowane. Domyślnie rejestrowane są tylko błędy wykonania. Policy-specific settings Ustawienia specyficzne zasady Pass policy? Przechodzi zasadę? Wait (min) Czekaj (min) The policy takes a random time to execute. This controls the minimum time it will take. Wykonanie zasady zajmuje losowy czas. Kontroluje to minimalny czas, jaki zajmie. Wait (max) Czekaj (max) Matches an event against a set of criteria. If any of the configured values match, the policy passes. Dopasowuje zdarzenie do zestawu kryteriów. Jeśli którakolwiek ze skonfigurowanych wartości jest zgodna, zasada przechodzi. Match created events with this action type. When left empty, all action types will be matched. Dopasuj utworzone zdarzenia do tego typu akcji. Jeśli pozostawisz to puste, wszystkie typy akcji zostaną dopasowane. Matches Event's Client IP (strict matching, for network matching use an Expression Policy). Match events created by selected application. When left empty, all applications are matched. Dopasuj wydarzenia utworzone przez wybraną aplikację. Jeśli pozostanie pusty, wszystkie aplikacje zostaną dopasowane. Match events created by selected model. When left empty, all models are matched. Dopasowanie zdarzeń utworzonych przez wybrany model. Pozostawienie pustego pola powoduje dopasowanie wszystkich modeli. Checks if the request's user's password has been changed in the last x days, and denys based on settings. Sprawdza, czy żądanego użytkownika hasło zostało zmienione w ciągu ostatnich x dni, i odmawia na podstawie ustawień. Maximum age (in days) Maksymalny wiek (w dniach) Only fail the policy, don't invalidate user's password Tylko nie spełniaj zasad, nie unieważniaj hasła użytkownika. Executes the python snippet to determine whether to allow or deny a request. Wykonuje fragment kodu Pythona, aby określić, czy zezwolić, czy odrzucić żądanie. Expression using Python. Wyrażenie za pomocą Pythona. See documentation for a list of all variables. Zobacz dokumentację, aby zobaczyć listę wszystkich zmiennych. Ensure the user satisfies requirements of geography or network topology, based on IP address. If any of the configured values match, the policy passes. Distance settings Check historical distance of logins When this option enabled, the GeoIP data of the policy request is compared to the specified number of historical logins. Maximum distance Maximum distance a login attempt is allowed from in kilometers. Distance tolerance Tolerance in checking for distances in kilometers. Historical Login Count Amount of previous login events to check against. Check impossible travel When this option enabled, the GeoIP data of the policy request is compared to the specified number of historical logins and if the travel would have been possible in the amount of time since the previous event. Impossible travel tolerance Static rule settings ASNs List of autonomous system numbers. Comma separated. E.g. 13335, 15169, 20940 Countries Kraje Available Countries Dostępne kraje Selected Countries Wybrane kraje Static rules Reguły statyczne Minimum length Minimalna długość Minimum amount of Uppercase Characters Minimalna liczba wielkich liter Minimum amount of Lowercase Characters Minimalna liczba małych liter Minimum amount of Digits Minimalna ilość cyfr Minimum amount of Symbols Characters Minimalna liczba symboli Error message Komunikat o błędzie Symbol charset Zestaw znaków symboli Characters which are considered as symbols. Znaki uważane za symbole. HaveIBeenPwned settings Ustawienia HaveIBeenPwned Allowed count Dozwolona liczba Allow up to N occurrences in the HIBP database. Dopuść do N wystąpień w bazie danych HIBP. zxcvbn settings ustawienia zxcvbn Score threshold Próg wyniku If the password's score is less than or equal this value, the policy will fail. Jeśli wynik hasła jest równy lub mniejszy od tej wartości, zasada zakończy się niepowodzeniem. Checks the value from the policy request against several rules, mostly used to ensure password strength. Sprawdza wartość z żądania zasad pod kątem kilku reguł, używanych głównie w celu zapewnienia siły hasła. Password field Pole hasła Field key to check, field keys defined in Prompt stages are available. Klucz pola do sprawdzenia, dostępne są klucze pola zdefiniowane w etapach monitu. Check static rules Sprawdź reguły statyczne Check haveibeenpwned.com Sprawdź haveibeenpwned.com For more info see: Aby uzyskać więcej informacji, zobacz: Check zxcvbn Sprawdź zxcvbn Password strength estimator created by Dropbox, see: Narzędzie do szacowania siły hasła stworzone przez Dropbox, zobacz: Allows/denys requests based on the users and/or the IPs reputation. Zezwala/odrzuca żądania na podstawie reputacji użytkowników i/lub adresów IP. Invalid login attempts will decrease the score for the client's IP, and the username they are attempting to login as, by one. Nieprawidłowe próby logowania zmniejszą wynik dla adresu IP klienta, i nazwa użytkownika, pod którą próbują się zalogować, przez jeden. The policy passes when the reputation score is below the threshold, and doesn't pass when either or both of the selected options are equal or above the threshold. Zasada przechodzi, gdy punkty reputacji spadną poniżej progu i nie przechodzi, gdy jedna lub obie wybrane opcje są równe lub wyższe od progu. Check IP Sprawdź IP Check Username Sprawdź nazwę użytkownika Threshold Próg Ensure that the user's new password is different from their previous passwords. The number of past passwords to check is configurable. Number of previous passwords to check Create Binding Utwórz powiązanie Members Członkowie Warning: Adding the user to the selected group(s) will give them superuser permissions. Ostrzeżenie: Dodanie użytkownika do wybranych grup spowoduje nadanie mu uprawnień superużytkownika. Company employees with access to the full enterprise feature set. External consultants or B2C customers without access to enterprise features. Machine-to-machine authentication or other automations. Successfully created user and added to group Pomyślnie utworzono użytkownika i dodano go do grupy Successfully created user. Pomyślnie utworzono użytkownika. The user's primary identifier used for authentication. 150 characters or fewer. Display Name Type an optional display name... The user's display name. User type Typ użytkownika Internal Service account Managed by authentik and cannot be assigned manually. Email Address Type an optional email address... Whether this user is active and allowed to authenticate. Setting this to inactive can be used to temporarily disable a user without deleting their account. Path Ścieżka Type a path for the user... Paths can be used to organize users into folders depending on which source created them or organizational structure. Paths may not start or end with a slash, but they can contain any other character as path segments. The paths are currently purely used for organization, it does not affect their permissions, group memberships, or anything else. Edit Policy Edytuj zasady Edit Group Edytuj grupę Edit User Edytuj użytkownika Policy binding(s) Wiązanie(a) zasady No Policies bound. Żadne zasady nie są związane. Policy actions The currently selected policy engine mode is : Endpoint(s) Punkt(y) końcowy(e) These bindings control which users will have access to this endpoint. Users must also have access to the application. Te powiązania kontrolują, którzy użytkownicy będą mieli dostęp do tego punktu końcowego. Użytkownicy muszą mieć również dostęp do aplikacji. Connections Połączenia Update RAC Provider Aktualizuj dostawcę RAC Endpoints Punkty końcowe Update Radius Provider Aktualizuj dostawcę Radius Download Pobierz Copy download URL Skopiuj URL pobierania Download signing certificate Pobierz certyfikat podpisywania Related objects Powiązane obiekty Update SAML Provider Aktualizuj dostawcę SAML SAML Configuration Konfiguracja SAML EntityID/Issuer EntityID/Issuer SSO URL (IdP-initiated Login) URL SSO (logowanie inicjowane przez IdP) SAML Metadata Metadane SAML Example SAML attributes Przykładowe atrybuty SAML NameID attribute Atrybut NameID SCIM Group(s) Grupa(y) SCIM SCIM User(s) Użytkowni(k/cy) SCIM Update SCIM Provider Aktualizuj dostawcę SCIM Send us feedback! Prześlij nam opinię! SSF URL No assigned application Streams Applications Aplikacje External applications that use as an identity provider via protocols like OAuth2 and SAML. All applications are shown here, even ones you cannot access. Application Icon Ikona aplikacji Provider Type Typ dostawcy Applications Documentation Application(s) Aplikacja(e) Application icon for "" Update Application Aktualizuj aplikację Edit "" Open "" Open Otwarty Successfully cleared application cache Failed to delete application cache Clear cache Wyczyść pamięć podręczną Clear Application cache Are you sure you want to clear the application cache? This will cause all policies to be re-evaluated on their next usage. Successfully sent test-request. Pomyślnie wysłano zapytanie testowe. Successfully updated entitlement. Successfully created entitlement. Application entitlement(s) Update Entitlement These bindings control which users have access to this entitlement. No app entitlements created. This application does currently not have any application entitlements defined. Create Entitlement Create entitlement Failed to fetch application "". Warning: Application is not used by any Outpost. Related Związane z Check access Sprawdź dostęp Check Sprawdź Test Test Launch Uruchom Logins over the last week (per 8 hours) Logowania w ciągu ostatniego tygodnia (co 8 godzin) Application entitlements These entitlements can be used to configure user access in this application. Policy / Group / User Bindings Zasada / Grupa / Wiązania użytkownika Loading application... Successfully updated device. Pomyślnie zaktualizowano urządzenie. Device name... Device name Device Group Connector setup Copy Kopiuj Download the latest package from here: Afterwards, select the enrollment token you want to use: macOS Linux Configured connector does not support setup. No connectors configured. Navigate to connectors in the sidebar and create a connector. Unix BSD Android iOS Devices OS Endpoint Devices are in preview. Total devices Total count of devices across all groups Unreachable devices Devices that authentik hasn't received information about in 24h. Outdated agents Devices running an outdated version of an agent Update Device Aktualizuj urządzenie Endpoint Device(s) Device Loading device... Device details Hostname Hostname Serial number Operating system Firewall enabled Hardware Manufacturer CPU x Memory Disk encryption Users / Groups Processes Connector name Flow used for users to authorize. Certificate used for signing device compliance challenges. Session duration Długość sesji Configure how long an authenticated session is valid for. Terminate authenticated sessions on token expiry Refresh interval Interval how frequently the agent tries to update its config. Unix settings NSS User ID offset NSS Group ID offset Connectors are required to create devices. Depending on connector type, agents either directly talk to them or they talk to and external API to create devices. Connectors Connector(s) Successfully updated token. Pomyślnie zaktualizowano token. Successfully created token. Pomyślnie utworzono token. Expires on Wygasa dnia Token name Expiring Wygasa Expires? Wygasa? Expiry date Data wygaśnięcia Enrollment Token(s) Copy token Kopiuj token Enrollment Tokens Device access groups Create groups of devices to manage access. Device Group(s) Successfully updated source. Pomyślnie zaktualizowano źródło. Successfully created source. Pomyślnie utworzono źródło. Link users on unique identifier Łącz użytkowników za pomocą unikalnego identyfikatora Link to a user with identical email address. Can have security implications when a source doesn't validate email addresses Łącz użytkownika z identycznym adresem e-mail. Może mieć wpływ na bezpieczeństwo, gdy źródło nie weryfikuje adresów e-mail Use the user's email address, but deny enrollment when the email address already exists Użyj adresu e-mail użytkownika, ale odmów rejestracji, gdy adres e-mail już istnieje. Link to a user with identical username. Can have security implications when a username is used with another source Połącz z użytkownikiem o identycznej nazwie użytkownika. Może mieć wpływ na bezpieczeństwo, gdy nazwa użytkownika jest używana z innym źródłem Use the user's username, but deny enrollment when the username already exists Użyj nazwy użytkownika, ale odmów rejestracji, gdy nazwa użytkownika już istnieje. Unknown user matching mode Nieznany tryb dopasowania użytkownika Link to a group with identical name. Can have security implications when a group is used with another source Połącz z grupą o identycznej nazwie. Może mieć implikacje bezpieczeństwa, gdy grupa jest używana z innym źródłem Use the group's name, but deny enrollment when the name already exists Użyj nazwy grupy, ale odmów rejestracji, gdy nazwa już istnieje Promoted When enabled, this source will be displayed as a prominent button on the login page, instead of a small icon. Update internal password on login Zaktualizuj hasło wewnętrzne przy logowaniu When the user logs in to authentik using this source password backend, update their credentials in authentik. Gdy użytkownik zaloguje się do authentik przy użyciu tego źródłowego zaplecza haseł, zaktualizuje swoje poświadczenia w authentik. Sync users Synchronizuj użytkowników User password writeback Zapis zwrotny hasła użytkownika Enable this option to write password changes made in authentik back to Kerberos. Ignored if sync is disabled. Realm settings Realm Kerberos 5 configuration Kerberos 5 configuration. See man krb5.conf(5) for configuration format. If left empty, a default krb5.conf will be used. User matching mode Tryb dopasowania użytkownika Group matching mode Tryb dopasowywania grup Sync connection settings KAdmin type MIT krb5 kadmin Heimdal kadmin Sync principal Principal used to authenticate to the KDC for syncing. Sync password Password used to authenticate to the KDC for syncing. Optional if Sync keytab or Sync credentials cache is provided. Sync keytab Keytab used to authenticate to the KDC for syncing. Optional if Sync password or Sync credentials cache is provided. Must be base64 encoded or in the form TYPE:residual. Sync credentials cache Credentials cache used to authenticate to the KDC for syncing. Optional if Sync password or Sync keytab is provided. Must be in the form TYPE:residual. SPNEGO settings SPNEGO server name Force the use of a specific server name for SPNEGO. Must be in the form HTTP@domain SPNEGO keytab Keytab used for SPNEGO. Optional if SPNEGO credentials cache is provided. Must be base64 encoded or in the form TYPE:residual. SPNEGO credentials cache Credentials cache used for SPNEGO. Optional if SPNEGO keytab is provided. Must be in the form TYPE:residual. Kerberos Attribute mapping Property mappings for user creation. Mapowania właściwości dla tworzenia użytkownika. Property mappings for group creation. Mapowania właściwości dla tworzenia grupy. Flow to use when authenticating existing users. Przepływ używany podczas uwierzytelniania istniejących użytkowników. Enrollment flow Przepływ rejestracji Flow to use when enrolling new users. Przepływ do wykorzystania podczas rejestrowania nowych użytkowników. Additional settings Dodatkowe ustawienia User path Ścieżka użytkownika Login password is synced from LDAP into authentik automatically. Enable this option only to write password changes in authentik back to LDAP. Hasło logowania jest automatycznie synchronizowane z LDAP do authentik. Włącz tę opcję tylko w celu zapisania zmian hasła w authentik z powrotem do LDAP. Sync groups Synchronizuj grupy Delete Not Found Objects Delete authentik users and groups which were previously supplied by this source, but are now missing from it. Connection settings Ustawienia połączenia Server URI URI serwera Specify multiple server URIs by separating them with a comma. Określ wiele identyfikatorów URI serwera, oddzielając je przecinkami. Enable StartTLS Włącz StartTLS To use SSL instead, use 'ldaps://' and disable this option. Aby zamiast tego używać SSL, użyj „ldaps://” i wyłącz tę opcję. Use Server URI for SNI verification Użyj URI serwera do weryfikacji SNI Required for servers using TLS 1.3+ Wymagane dla serwerów korzystających z TLS 1.3+ TLS Verification Certificate Certyfikat weryfikacji TLS TLS Client authentication certificate Certyfikat uwierzytelniania klienta TLS Client certificate keypair to authenticate against the LDAP Server's Certificate. Para kluczy certyfikatu klienta do uwierzytelniania w oparciu o certyfikat serwera LDAP. Bind CN Wiąż CN LDAP Attribute mapping Mapowanie atrybutów LDAP Parent group for all the groups imported from LDAP. Grupa nadrzędna dla wszystkich grup importowanych z LDAP. Additional User DN Additional user DN, prepended to the Base DN. Dodatkowa nazwa wyróżniająca użytkownika poprzedzona podstawową nazwą wyróżniającą. Additional Group DN Additional group DN, prepended to the Base DN. Dodatkowa DN grupy, poprzedzona podstawową DN. User object filter Filtr obiektów użytkownika Consider Objects matching this filter to be Users. Rozważ obiekty pasujące do tego filtra jako Użytkownicy. Group object filter Filtr obiektów grupowych Consider Objects matching this filter to be Groups. Rozważ obiekty pasujące do tego filtra jako grupy. Group membership field Pole członkostwa w grupie Field which contains members of a group. The value of this field is matched against User membership attribute. User membership attribute Attribute which matches the value of Group membership field. Lookup using user attribute Field which contains DNs of groups the user is a member of. This field is used to lookup groups from users, e.g. 'memberOf'. To lookup nested groups in an Active Directory environment use 'memberOf:1.2.840.113556.1.4.1941:'. Object uniqueness field Pole unikatowości obiektu Field which contains a unique Identifier. Pole zawierające unikalny identyfikator. HTTP Basic Auth Include the client ID and secret as request parameters Plain S256 URL settings Ustawienia URL Authorization URL URL autoryzacji URL the user is redirect to to consent the authorization. URL, do którego użytkownik jest przekierowywany, aby wyrazić zgodę na autoryzację. Access token URL URL tokena dostępu URL used by authentik to retrieve tokens. URL używany przez authentik do pobierania tokenów. Profile URL URL profilu URL used by authentik to get user information. URL używany przez authentik do uzyskania informacji o użytkowniku. Request token URL URL żądania tokena URL used to request the initial token. This URL is only required for OAuth 1. URL używany do żądania początkowego tokena. Ten adres URL jest wymagany tylko w przypadku protokołu OAuth 1. OIDC Well-known URL OIDC Well-known URL OIDC well-known configuration URL. Can be used to automatically configure the URLs above. OIDC well-known configuration URL. Może służyć do automatycznej konfiguracji powyższych adresów URL. OIDC JWKS URL OIDC JWKS URL JSON Web Key URL. Keys from the URL will be used to validate JWTs from this source. JSON Web Key URL. Klucze z adresu URL będą używane do walidacji tokenów JWT z tego źródła. OIDC JWKS OIDC JWKS Raw JWKS data. Surowe dane JWKS. PKCE Method Configure Proof Key for Code Exchange for this source. Authorization code authentication method How to perform authentication during an authorization_code token request flow Consumer key Klucz klienta Also known as Client ID. Znany również jako ID klienta. Consumer secret Sekret klienta Also known as Client Secret. Znany również jako sekret klienta. Additional scopes to be passed to the OAuth Provider, separated by space. To replace existing scopes, prefix with *. Dodatkowe zakresy przekazywane do dostawcy OAuth, oddzielone spacją. Aby zastąpić istniejące zakresy, należy poprzedzić je *. OAuth Attribute mapping Mapowanie atrybutów OAuth Load servers Załaduj serwery Re-authenticate with Plex Allow friends to authenticate via Plex, even if you don't share any servers Zezwalaj znajomym na uwierzytelnianie przez Plex, nawet jeśli nie udostępniasz żadnych serwerów Allowed servers Dozwolone serwery Select which server a user has to be a member of to be allowed to authenticate. Wybierz serwer, którego członkiem musi być użytkownik, aby mógł się uwierzytelniać. Plex Attribute mapping Mapowanie atrybutów Plex Verify Assertion Signature When enabled, authentik will look for a Signature inside of the Assertion element. Verify Response Signature When enabled, authentik will look for a Signature inside of the Response element. SSO URL SSO URL URL that the initial Login request is sent to. URL, do którego wysyłane jest początkowe żądanie logowania. SLO URL SLO URL Optional URL if the IDP supports Single-Logout. Opcjonalny URL, jeśli dostawca tożsamości obsługuje pojedyncze wylogowanie. Binding Type Typ wiązania Redirect binding Wiązanie przekierowania Post-auto binding Wiązanie post-auto Post binding but the request is automatically sent and the user doesn't have to confirm. Wiązanie Post, ale żądanie jest wysyłane automatycznie i użytkownik nie musi potwierdzać. Post binding Wiązanie Post Signing keypair Podpisująca pary kluczy Keypair which is used to sign outgoing requests. Leave empty to disable signing. Para kluczy służąca do podpisywania żądań wychodzących. Pozostaw puste, aby wyłączyć podpisywanie. Allow IDP-initiated logins Zezwalaj na logowanie inicjowane przez IDP Allows authentication flows initiated by the IdP. This can be a security risk, as no validation of the request ID is done. Umożliwia przepływy uwierzytelniania zainicjowane przez dostawcę tożsamości. Może to stanowić zagrożenie bezpieczeństwa, ponieważ nie przeprowadza się weryfikacji identyfikatora żądania. NameID Policy Zasada NameID Delete temporary users after Usuń tymczasowych użytkowników po Time offset when temporary users should be deleted. This only applies if your IDP uses the NameID Format 'transient', and the user doesn't log out manually. Przesunięcie czasowe, kiedy użytkownicy tymczasowi powinni zostać usunięci. Ma to zastosowanie tylko wtedy, gdy IDP używa „przejściowego” formatu NameID, a użytkownik nie wylogowuje się ręcznie. When selected, encrypted assertions will be decrypted using this keypair. SAML Attribute mapping Pre-authentication flow Przepływ wstępnego uwierzytelniania Flow used before authentication. Przepływ używany przed uwierzytelnieniem. SCIM Attribute mapping Bot username Bot token Request access to send messages from your bot Telegram Attribute mapping Federation and Social login Logowanie federacyjne i społecznościowe Sources of identities, which can either be synced into authentik's database, or can be used by users to authenticate and enroll themselves. Źródła tożsamości, które mogą być zsynchronizowane z bazą danych authentik lub mogą być używane przez użytkowników do uwierzytelniania i rejestracji. Source(s) Źródło(a) Disabled Wyłączone Built-in Wbudowany Kerberos Source is in preview. Update Kerberos Source Connectivity Łączność Global status Status globalny Vendor Dostawca OAuth Source Źródło OAuth Group mappings can only be checked if a user is already logged in when trying to access this source. Mapowania grup można sprawdzić tylko wtedy, gdy użytkownik jest już zalogowany podczas próby uzyskania dostępu do tego źródła. User mappings can only be checked if a user is already logged in when trying to access this source. Mapowania użytkowników można sprawdzić tylko wtedy, gdy użytkownik jest już zalogowany podczas próby uzyskania dostępu do tego źródła. Generic OpenID Connect Ogólny OpenID Connect Unknown provider type Nieznany typ dostawcy Callback URL URL wywołania zwrotnego Access Key Klucz dostępu Diagram Diagram Policy Bindings Wiązania zasady These bindings control which users can access this source. You can only use policies here as access is checked before the user is authenticated. Te powiązania kontrolują, którzy użytkownicy mogą uzyskać dostęp do tego źródła. Można tu używać tylko zasad, ponieważ dostęp jest sprawdzany przed uwierzytelnieniem użytkownika. Update Plex Source Aktualizuj źródło Plex Update SAML Source Aktualizuj źródło SAML Update SCIM Source Aktualizuj źródło SCIM SCIM Base URL Bazowy adres URL SCIM Telegram bot Update Telegram Source Successfully updated mapping. Pomyślnie zaktualizowano mapowanie. Successfully created mapping. Pomyślnie utworzono mapowanie. Unconfigured Nieskonfigurowany This option will not be changed by this mapping. Ta opcja nie zostanie zmieniona przez to mapowanie. General settings Ustawienia ogólne Password Hasło RDP settings Ustawienia RDP Ignore server certificate Ignoruj certyfikat serwera Enable wallpaper Włącz tapetę Enable font-smoothing Włącz wygładzanie czcionek Enable full window dragging Włącz przeciąganie całego okna SAML Attribute Name Nazwa atrybutu SAML Attribute name used for SAML Assertions. Can be a URN OID, a schema reference, or a any other string. If this property mapping is used for NameID Property, this field is discarded. Nazwa atrybutu używana w asercjach SAML. Może być identyfikatorem URN OID, odwołaniem do schematu lub dowolnym innym ciągiem. Jeśli to mapowanie właściwości jest używane dla właściwości NameID, to te pole jest odrzucane. Friendly Name Przyjazna nazwa Optionally set the 'FriendlyName' value of the Assertion attribute. Opcjonalnie ustaw wartość „FriendlyName” atrybutu asercji. Scope name Nazwa zakresu Scope which the client can specify to access these properties. Zakres, który klient może określić, aby uzyskać dostęp do tych właściwości. Description shown to the user when consenting. If left empty, the user won't be informed. Opis wyświetlany użytkownikowi podczas wyrażania zgody. Jeśli pozostanie pusty, użytkownik nie zostanie o tym poinformowany. Active Directory User Użytkownik Active Directory Active Directory Group Grupa Active Directory Property Mappings Mapowanie właściwości Control how authentik exposes and interprets information. Kontroluj sposób, w jaki authentik ujawnia i interpretuje informacje. Property Mapping(s) Mapowanie(a) właściwości Identifier Identyfikator Unique identifier the token is referenced by. Unikalny identyfikator, do którego odwołuje się token. Intent Przeznaczenie API Token Token API Used to access the API programmatically Służy do programistycznego dostępu do interfejsu API App password. Hasło aplikacji Used to login using a flow executor Służy do logowania przy użyciu executora przepływu Tokens Tokeny Tokens are used throughout authentik for Email validation stages, Recovery keys and API access. Tokeny są używane przez authentik do etapów weryfikacji poczty e-mail, kluczy odzyskiwania i dostępu do interfejsu API. Token(s) Token(y) Create Token Utwórz token Token is managed by authentik. Token jest zarządzany przez authentik. Update Token Aktualizuj token Editing is disabled for managed tokens Edycja jest wyłączona dla zarządzanych tokenów Successfully updated brand. Pomyślnie zaktualizowana markę. Successfully created brand. Pomyślnie stworzono markę. Domain Domena Matching is done based on domain suffix, so if you enter domain.tld, foo.domain.tld will still match. Dopasowanie odbywa się na podstawie sufiksu domeny, więc jeśli wpiszesz domain.tld, foo.domain.tld nadal będzie pasować. Use this brand for each domain that doesn't have a dedicated brand. Użyj tej marki dla każdej domeny, która nie ma dedykowanej marki. Branding settings Ustawienia brandingowe Title Tytuł Branding shown in page title and several other places. Branding widoczny w tytule strony i kilku innych miejscach. Logo Logo Logo shown in sidebar/header and flow executor. Favicon Favicon Icon shown in the browser tab. Ikona pokazana w karcie przeglądarki. Default flow background Default background used during flow execution. Can be overridden per flow. Custom CSS Custom CSS to apply to pages when this brand is active. External user settings Default application Select an application... When configured, external users will automatically be redirected to this application when not attempting to access a different application Default flows Domyślny przepływ Flow used to authenticate users. If left empty, the first applicable flow sorted by the slug is used. Przepływ używany do uwierzytelniania użytkowników. Jeśli pozostanie pusty, używany jest pierwszy odpowiedni przepływ posortowany według ślimaka. Flow used to logout. If left empty, the first applicable flow sorted by the slug is used. Przepływ używany do wylogowania. Jeśli pozostanie pusty, używany jest pierwszy odpowiedni przepływ posortowany według ślimaka. Recovery flow Przepływ odzyskiwania Select a recovery flow... Unenrollment flow Przepływ wypisywania się Select an unenrollment flow... If set, users are able to unenroll themselves using this flow. If no flow is set, option is not shown. Jeśli ta opcja jest ustawiona, użytkownicy mogą się wyrejestrować za pomocą tego przepływu. Jeśli nie ustawiono przepływu, opcja nie jest wyświetlana. User settings flow Przepływ ustawień użytkownika Select a user settings flow... If set, users are able to configure details of their profile. Jeśli ta opcja jest ustawiona, użytkownicy mogą konfigurować szczegóły swojego profilu. Device code flow Przepływ kodu urządzenia Select a device code flow... If set, the OAuth Device Code profile can be used, and the selected flow will be used to enter the code. Jeśli jest ustawiony, można użyć profilu kodu urządzenia OAuth, a wybrany przepływ zostanie użyty do wprowadzenia kodu. Other global settings Inne ustawienia globalne Web Certificate Certyfikat sieciowy Client Certificates Available Certificates Selected Certificates Set custom attributes using YAML or JSON. Any attributes set here will be inherited by users, if the request is handled by this brand. Ustaw atrybuty niestandardowe za pomocą YAML lub JSON. Wszystkie ustawione tutaj atrybuty będą dziedziczone przez użytkowników, jeśli żądanie jest obsługiwane przez tą markę. Search by domain or brand name... Brands Marki Configure visual settings and defaults for different domains. Skonfiguruj ustawienia wizualne i domyślne dla różnych domen. Brand name Nazwa marki Default? Domyślny? Brand(s) Marka(i) Policies Zasady Allow users to use Applications based on properties, enforce Password Criteria and selectively apply Stages. Zezwalaj użytkownikom na korzystanie z aplikacji na podstawie właściwości, wymuszaj kryteria haseł i selektywnie stosuj etapy. Assigned to object(s). Przypisany do obiektu(ów). Warning: Policy is not assigned. Ostrzeżenie: zasada nie jest przypisana. Policy / Policies Zasada / Zasady Successfully cleared policy cache Pamięć podręczna zasad została wyczyszczona Failed to delete policy cache Nie udało się usunąć pamięci podręcznej zasad Clear Policy cache Wyczyść pamięć podręczną zasad Are you sure you want to clear the policy cache? This will cause all policies to be re-evaluated on their next usage. Czy na pewno chcesz wyczyścić pamięć podręczną zasad? Spowoduje to ponowną ocenę wszystkich zasad przy następnym użyciu. Reputation scores Punkty reputacji Reputation for IP and user identifiers. Scores are decreased for each failed login and increased for each successful login. Reputacja dla adresów IP i użytkowników. Wyniki są zmniejszane za każde nieudane logowanie i zwiększane za każde udane logowanie. IP IP Score Punkty Updated Zaktualizowano Reputation Reputacja Search for a group by name… Group Search Groups Grupy Group users together and give them permissions based on the membership. Grupuj użytkowników i nadaj im uprawnienia na podstawie członkostwa. Superuser privileges? Uprawnienia superużytkownika? Group(s) Grupa(y) View details of group "" Create group Utwórz grupę Create and assign a group with the same name as the user. Whether the token will expire. Upon expiration, the token will be rotated. Use the username and password below to authenticate. The password can be retrieved later on the Tokens page. Użyj poniższej nazwy użytkownika i hasła do uwierzytelnienia. Hasło można później odzyskać na stronie Tokeny. Valid for 360 days, after which the password will automatically rotate. You can copy the password from the Token List. Ważne przez 360 dni, po czym hasło zostanie automatycznie zmienione. Możesz skopiować hasło z listy tokenów. Impersonating user... This may take a few seconds. Reason Reason for impersonating the user A brief explanation of why you are impersonating the user. This will be included in audit logs. New Password Successfully updated password. Pomyślnie zaktualizowano hasło. Email stage Etap e-mail Successfully added user(s). Pomyślnie dodano użytkownika(ów). Users Użytkownicy Open user selection dialog Add users Dodaj użytkowników User(s) Użytkownik(cy) removed usunięty Impersonate Podszywaj się Temporarily assume the identity of this user Tymczasowo przejmij tożsamość tego użytkownika User status Status użytkownika Inactive Nieaktywny Regular user Zwykły użytkownik Change status Zmień status Deactivate Dezaktywuj Activate Aktywuj Update 's password Set password Ustaw hasło Send link Wyślij link Send recovery link to user Wyślij link odzyskiwania do użytkownika Email recovery link Wyślij link odzyskiwania Assign Additional Users Warning: This group is configured with superuser access. Added users will have superuser access. Ostrzeżenie: Ta grupa jest skonfigurowana z dostępem superużytkownika. Dodani użytkownicy będą mieli dostęp superużytkownika. New User This user will be added to the group "". Ten użytkownik zostanie dodany do grupy &quot;&quot;. Hide service-accounts Ukryj konta usługowe Group Info Informacje o grupie Notes Notatki Edit the notes attribute of this group to add notes here. Edytuj atrybut notatek tej grupy, aby dodać tutaj notatki. Unnamed Collapse "" Expand "" Select "" Items of "" Root Korzeń Search by username, email, etc... User Search No name set Create recovery link Utwórz link odzyskiwania User folders Foldery użytkownika User paths Successfully added user to group(s). Pomyślnie dodano użytkownika do grup. Groups to add Grupy do dodania Add group Dodaj grupę Remove from Group(s) Usuń z grup(y) Are you sure you want to remove user from the following groups? Czy na pewno chcesz usunąć użytkownika z następujących grup? Add to existing group Dodaj do istniejącej grupy Add new group Dodaj nową grupę Application authorizations Autoryzacje aplikacji Revoked? Unieważniono? Expires Wygasa ID Token ID Token Access Tokens(s) Refresh Tokens(s) Token(y) odświeżania Last IP Ostatni adres IP Last used Ostatnio używany Session(s) Sesja(e) Expiry Wygasa (Current session) (Obecna sesja) Consent(s) Zgoda(y) Reputation score(s) Punkt(y) reputacji Disconnect Rozłącz Successfully disconnected source Pomyślnie odłączono źródło Failed to disconnected source: Nie udało się odłączyć źródła: Connect Połącz Error: unsupported source settings: Błąd: nieobsługiwane ustawienia źródła: "" source No services available. Brak dostępnych usług. Source Settings Confirmed Potwierdzono Created at Utworzono o Last updated at Ostatnia aktualizacja o Last used at Ostatnio używane o Device type cannot be deleted Device(s) Urządzenie(a) Email E-mail Last password change User Info Informacje użytkownika Lock the user out of this system Zablokuj użytkownikowi dostęp do systemu Allow the user to log in and use this system Zezwól użytkownikowi na zalogowanie się i korzystanie z systemu. Sessions Sesje Explicit Consent Wyraźna zgoda OAuth Access Tokens Tokeny dostępu OAuth OAuth Refresh Tokens Tokeny odświeżania OAuth MFA Authenticators Uwierzytelniacze MFA Connected services Połączone usługi RAC Connections Połączenia RAC Actions over the last week (per 8 hours) Działania w ciągu ostatniego tygodnia (co 8 godzin) User events Zdarzenia użytkownika Credentials / Tokens Poświadczenia / tokeny Successfully updated role. Pomyślnie zaktualizowano rolę. Successfully created role. Pomyślnie utworzono rolę. Manage roles which grant permissions to objects within authentik. Zarządzaj rolami, które przyznają uprawnienia do obiektów w authentik. Role(s) Rola(e) Successfully updated initial permissions. Successfully created initial permissions. When a user with the selected Role creates an object, the Initial Permissions will be applied to that object. Available Permissions Selected Permissions Permissions to grant when a new object is created. Initial Permissions Set initial permissions for newly created objects. Role Info Informacje o roli Role Successfully updated invitation. Pomyślnie zaktualizowano zaproszenie. Successfully created invitation. Pomyślnie utworzono zaproszenie. The name of an invitation must be a slug: only lower case letters, numbers, and the hyphen are permitted here. Flow Przepływ Custom attributes Atrybuty niestandardowe Optional data which is loaded into the flow's 'prompt_data' context variable. YAML or JSON. Opcjonalne dane, które są ładowane do zmiennej kontekstowej „prompt_data” przepływu. YAML lub JSON. Single use Jednorazowego użytku When enabled, the invitation will be deleted after usage. Po włączeniu zaproszenie zostanie usunięte po użyciu. Select an enrollment flow Wybierz przepływ rejestracji Link to use the invitation. Link do korzystania z zaproszenia. Invitations Zaproszenia Create Invitation Links to enroll Users, and optionally force specific attributes of their account. Utwórz Linki Zaproszeniowe, aby zarejestrować Użytkowników i opcjonalnie wymusić określone atrybuty ich konta. Created by Utworzono przez Invitation(s) Zaproszenie(a) Invitation not limited to any flow, and can be used with any enrollment flow. Zaproszenie nie jest ograniczone do żadnego przepływu i może być używane z dowolnym przepływem rejestracji. Warning: No invitation stage is bound to any flow. Invitations will not work as expected. Ostrzeżenie: żaden etap zaproszenia nie jest powiązany z żadnym przepływem. Zaproszenia nie będą działać zgodnie z oczekiwaniami. Not you? Nie ty? Required. Wymagany. Continue Kontynuuj Successfully updated prompt. Pomyślnie zaktualizowano monit. Successfully created prompt. Pomyślnie utworzono monit. Text: Simple Text input Tekst: proste wprowadzanie tekstu Text Area: Multiline text input Tekst: Proste wprowadzanie tekstu. Text (read-only): Simple Text input, but cannot be edited. Tekst (tylko do odczytu): Proste wprowadzanie tekstu, ale nie można go edytować. Text Area (read-only): Multiline text input, but cannot be edited. Tekst (tylko do odczytu): Proste wprowadzanie tekstu, ale nie można go edytować. Username: Same as Text input, but checks for and prevents duplicate usernames. Nazwa użytkownika: to samo, co wprowadzanie tekstu, ale sprawdza i zapobiega duplikowaniu nazw użytkowników. Email: Text field with Email type. Email: Pole tekstowe z typem Email. Password: Masked input, multiple inputs of this type on the same prompt need to be identical. Hasło: Maskowane dane wejściowe, wszystkie wystąpienia tego typu w tym samym zapytaniu muszą być identyczne. Number Numer Checkbox Pole wyboru Radio Button Group (fixed choice) Grupa przełączników (stały wybór) Dropdown (fixed choice) Lista rozwijana (stały wybór) Date Data Date Time Data Czas File Plik Separator: Static Separator Line Separator: Statyczna linia separatora Hidden: Hidden field, can be used to insert data into form. Ukryte: Ukryte pole, może służyć do wstawiania danych do formularza. Static: Static value, displayed as-is. Statyczny: wartość statyczna, wyświetlana w stanie, w jakim jest. authentik: Locale: Displays a list of locales authentik supports. authentik: Języki: Wyświetla listę języków obsługiwanych przez authentik. Preview errors Podgląd błędów Data preview Podgląd danych Unique name of this field, used for selecting fields in prompt stages. Unikalna nazwa tego pola, używana do wybierania pól w etapach podpowiedzi. Field Key Klucz pola Name of the form field, also used to store the value. Nazwa pola formularza, używana również do przechowywania wartości. When used in conjunction with a User Write stage, use attributes.foo to write attributes. W przypadku użycia w połączeniu z etapem zapisu użytkownika, użyj attribute.foo do zapisania atrybutów. Label Etykieta Label shown next to/above the prompt. Etykieta pokazana obok/nad monitem. Interpret placeholder as expression Interpretuj symbol zastępczy jako wyrażenie When checked, the placeholder will be evaluated in the same way a property mapping is. If the evaluation fails, the placeholder itself is returned. Po sprawdzeniu, symbol zastępczy zostanie oceniony w taki sam sposób, jak mapowanie właściwości. Jeśli ocena nie powiedzie się, zwracany jest sam symbol zastępczy. Placeholder Symbol zastępczy Optionally provide a short hint that describes the expected input value. When creating a fixed choice field, enable interpreting as expression and return a list to return multiple choices. Opcjonalnie podaj krótką wskazówkę opisującą oczekiwaną wartość wejściową. Podczas tworzenia stałego pola wyboru włącz interpretację jako wyrażenie i zwróć listę, aby zwrócić wiele opcji do wyboru. Interpret initial value as expression Interpretuj wartość początkową jako wyrażenie When checked, the initial value will be evaluated in the same way a property mapping is. If the evaluation fails, the initial value itself is returned. Po sprawdzeniu, wartość początkowa zostanie oceniona w taki sam sposób, jak mapowanie właściwości. Jeśli ocena nie powiedzie się, zwracany jest sama wartość początkowa. Initial value Początkowa wartość Optionally pre-fill the input with an initial value. When creating a fixed choice field, enable interpreting as expression and return a list to return multiple default choices. Opcjonalnie wstępnie wypełnij dane wejściowe wartością początkową. Podczas tworzenia stałego pola wyboru włącz interpretację jako wyrażenie i zwróć listę, aby zwrócić wiele domyślnych wyborów. Help text Tekst pomocy Any HTML can be used. Można użyć dowolnego kodu HTML. Prompts Monity Single Prompts that can be used for Prompt Stages. Pojedyncze monity, których można używać dla etapów monitów. Field Pole Stages Etapy Prompt(s) Monit(y) Create Prompt Utwórz monit Successfully updated stage. Pomyślnie zaktualizowano etap. Successfully created stage. Pomyślnie utworzono etap. Stage used to configure a duo-based authenticator. This stage should be used for configuration flows. Etap używany do konfiguracji uwierzytelniania opartego na duo. Ten etap powinien być używany do przepływów konfiguracji. Authenticator type name Nazwa typu uwierzytelniacza Display name of this authenticator, used by users when they enroll an authenticator. Wyświetlana nazwa tego urządzenia uwierzytelniającego, używana przez użytkowników podczas rejestrowania urządzenia uwierzytelniającego. API Hostname API Hostname Duo Auth API Duo Auth API Integration key Klucz integracji Secret key Sekretny klucz Duo Admin API (optional) Duo Admin API (opcjonalnie) When using a Duo MFA, Access or Beyond plan, an Admin API application can be created. This will allow authentik to import devices automatically. Stage-specific settings Ustawienia specyficzne dla etapu Configuration flow Przepływ konfiguracji Flow used by an authenticated user to configure this Stage. If empty, user will not be able to configure this stage. Przepływ używany przez uwierzytelnionego użytkownika do konfigurowania tego etapu. Jeśli jest pusty, użytkownik nie będzie mógł skonfigurować tego etapu. SMTP Host Host SMTP SMTP Port Port SMTP SMTP Username Nazwa użytkownika SMTP SMTP Password Hasło SMTP Use TLS Użyj TLS Use SSL Użyj SSL From address Z adresu Email address the verification email will be sent from. Stage used to configure an email-based authenticator. Use global connection settings When enabled, global email connection settings will be used and connection settings below will be ignored. Subject of the verification email. Token expiration Time the token sent is valid (Format: hours=3,minutes=17,seconds=300). Template Szablon Loading templates... Template used for the verification email. Twilio Account SID Twilio Account SID Get this value from https://console.twilio.com Pobierz tę wartość z https://console.twilio.com Twilio Auth Token Twilio Auth Token Authentication Type Typ uwierzytelnienia Basic Auth Basic Auth Bearer Token Bearer Token External API URL URL zewnętrznego API This is the full endpoint to send POST requests to. To jest pełny punkt końcowy, do którego wysyłane są żądania POST. API Auth Username API Auth Username This is the username to be used with basic auth or the token when used with bearer token To jest nazwa użytkownika, która ma być używana z podstawowym uwierzytelnianiem lub tokenem, gdy jest używany z tokenem okaziciela API Auth password API Auth password This is the password to be used with basic auth To jest hasło używane z podstawowym uwierzytelnianiem Stage used to configure an SMS-based TOTP authenticator. Etap używany do konfigurowania uwierzytelniania opartego na wiadomościach SMS TOTP. Twilio Twilio Generic Ogólny From number Z numeru Number the SMS will be sent from. Numer, z którego zostanie wysłana wiadomość SMS. Mapping Mapowanie Modify the payload sent to the provider. Hash phone number Zahaszuj numer telefonu If enabled, only a hash of the phone number will be saved. This can be done for data-protection reasons. Devices created from a stage with this enabled cannot be used with the authenticator validation stage. Jeśli ta opcja jest włączona, zapisywany będzie tylko hash numeru telefonu. Można to zrobić ze względu na ochronę danych. Urządzenia utworzone z etapu z włączoną tą opcją nie mogą być używane z etapem sprawdzania autentyczności. Stage used to configure a static authenticator (i.e. static tokens). This stage should be used for configuration flows. Stage używany do konfigurowania statycznego tokena uwierzytelniającego (tj. statycznych tokenów). Ten etap powinien być używany do przepływów konfiguracji. Token count Liczba tokenów The number of tokens generated whenever this stage is used. Every token generated per stage execution will be attached to a single static device. Liczba tokenów generowanych za każdym razem, gdy używany jest ten etap. Każdy token wygenerowany podczas wykonywania etapu zostanie dołączony do pojedynczego urządzenia statycznego. Token length Długość tokena Stage used to configure a TOTP authenticator (i.e. Authy/Google Authenticator). Etap używany do konfiguracji tokena uwierzytelniającego TOTP (tj. Authy/Google Authenticator). Digits Cyfry 6 digits, widely compatible 6 cyfr, szeroko kompatybilne 8 digits, not compatible with apps like Google Authenticator 8 cyfr, niekompatybilne z aplikacjami takimi jak Google Authenticator Static Tokens Tokeny statyczne TOTP Authenticators Uwierzytelniacze TOTP WebAuthn Authenticators Uwierzytelniacze WebAuthn Duo Authenticators Uwierzytelniacze Duo SMS-based Authenticators Uwierzytelniacze oparte na SMS Email-based Authenticators Stage used to validate any authenticator. This stage should be used during authentication or authorization flows. Etap używany do walidacji dowolnego uwierzytelniacza. Ten etap powinien być używany podczas przepływów uwierzytelniania lub autoryzacji. Device classes which can be used to authenticate. Klasy urządzeń, których można użyć do uwierzytelniania. Last validation threshold Próg ostatniej walidacji If the user has successfully authenticated with a device in the classes listed above within this configured duration, this stage will be skipped. Jeśli użytkownik pomyślnie uwierzytelnił się za pomocą urządzenia w klasach wymienionych powyżej w tym skonfigurowanym czasie, etap ten zostanie pominięty. Not configured action Nie skonfigurowana akcja Force the user to configure an authenticator Zmuś użytkownika do skonfigurowania uwierzytelniacza Deny the user access Odmów użytkownikowi dostępu Configuration stages Etapy konfiguracji Available Stages Selected Stages Stages used to configure Authenticator when user doesn't have any compatible devices. After this configuration Stage passes, the user is not prompted again. Etapy używany do konfiguracji uwierzytelniacza, gdy użytkownik nie ma żadnych kompatybilnych urządzeń. Po zakończeniu tego etapu konfiguracji użytkownik nie jest ponownie pytany. When multiple stages are selected, the user can choose which one they want to enroll. W przypadku wybrania wielu etapów użytkownik może wybrać, na który chce się zapisać. WebAuthn-specific settings Ustawienia specyficzne dla WebAuthn WebAuthn User verification Weryfikacja użytkownika WebAuthn User verification must occur. Musi nastąpić weryfikacja użytkownika. User verification is preferred if available, but not required. Preferowana jest weryfikacja użytkownika, jeśli jest dostępna, ale nie jest wymagana. User verification should not occur. Weryfikacja użytkownika nie powinna nastąpić. WebAuthn Device type restrictions Ograniczenia typu urządzenia WebAuthn Available Device types Dostępne typy urządzeń Selected Device types Wybrane typy urządzeń Optionally restrict which WebAuthn device types may be used. When no device types are selected, all devices are allowed. Opcjonalnie ogranicza, które typy urządzeń WebAuthn mogą być używane. Jeśli nie wybrano żadnego typu urządzenia, wszystkie urządzenia są dozwolone. Stage used to configure a WebAuthn authenticator (i.e. Yubikey, FaceID/Windows Hello). Etap używany do konfiguracji uwierzytelniacza WebAuthn (np. Yubikey, FaceID/Windows Hello). User verification Weryfikacja użytkownika Required: User verification must occur. Wymagane: Musi nastąpić weryfikacja użytkownika. Preferred: User verification is preferred if available, but not required. Preferowane: Weryfikacja użytkownika jest preferowana, jeśli jest dostępna, ale nie jest wymagana. Discouraged: User verification should not occur. Odradzane: Weryfikacja użytkownika nie powinna mieć miejsca. Resident key requirement Wymagania dotyczące klucza rezydenta Required: The authenticator MUST create a dedicated credential. If it cannot, the RP is prepared for an error to occur Wymagane: Uwierzytelniacz MUSI utworzyć dedykowane dane uwierzytelniające. Jeśli nie może, RP jest przygotowany na wystąpienie błędu Preferred: The authenticator can create and store a dedicated credential, but if it doesn't that's alright too Preferowane: Uwierzytelniacz może tworzyć i przechowywać dedykowane dane uwierzytelniające, ale jeśli tego nie robi, to też jest w porządku. Discouraged: The authenticator should not create a dedicated credential Odradzane: Uwierzytelniacz nie powinien tworzyć dedykowanych poświadczeń Authenticator Attachment Załącznik uwierzytelniający Maximum registration attempts Maximum allowed registration attempts. When set to 0 attempts, attempts are not limited. Device type restrictions Ograniczenia typu urządzenia Public Key Klucz publiczny Private Key Klucz prywatny Interactive Prompt for the user's consent. The consent can either be permanent or expire in a defined amount of time. Pytaj o zgodę użytkownika. Zgoda może być trwała lub wygasać w określonym czasie. Always require consent Zawsze wymagaj zgody Consent given lasts indefinitely Consent expires Consent expires in Zgoda wygasa Offset after which consent expires. Przesunięcie, po którym zgoda wygasa. Statically deny the flow. To use this stage effectively, disable *Evaluate when flow is planned* on the respective binding. Statyczne odrzucenie przepływu. Aby efektywnie korzystać z tego etapu, należy wyłączyć opcję *Oceń, kiedy planowany jest przepływ* dla odpowiedniego powiązania. Deny message Komunikat odmowy Message shown when this stage is run. Komunikat wyświetlany po uruchomieniu tego etapu. Dummy stage used for testing. Shows a simple continue button and always passes. Atrapa etapu używana do testowania. Pokazuje prosty przycisk kontynuuj i zawsze przechodzi. Throw error? Wyrzucić błąd? Verify the user's email address by sending them a one-time-link. Can also be used for recovery to verify the user's authenticity. Zweryfikuj adres e-mail użytkownika, wysyłając mu jednorazowy link. Może być również używany do odzyskiwania w celu weryfikacji autentyczności użytkownika. Activate pending user on success Aktywuj oczekującego użytkownika po sukcesie When a user returns from the email successfully, their account will be activated. Gdy użytkownik pomyślnie wróci z wiadomości e-mail, jego konto zostanie aktywowane. Time the token sent is valid. Account Recovery Max Attempts Account Recovery Cache Timeout The time window used to count recent account recovery attempts. A selection is required Wybór jest wymagany UPN UPN Let the user identify themselves with their username or Email address. Pozwól użytkownikowi identyfikować się za pomocą swojej nazwy użytkownika lub adresu e-mail. Fields a user can identify themselves with. If no fields are selected, the user will only be able to use sources. Pola, z którymi użytkownik może się identyfikować. Jeśli żadne pola nie zostaną wybrane, użytkownik będzie mógł korzystać tylko ze źródeł. Password stage Etap hasła When selected, a password field is shown on the same page instead of a separate page. This prevents username enumeration attacks. Po wybraniu pole hasła jest wyświetlane na tej samej stronie zamiast na osobnej stronie. Zapobiega to atakom polegającym na wyliczaniu nazw użytkowników. Captcha stage When set, adds functionality exactly like a Captcha stage, but baked into the Identification stage. Case insensitive matching Bez rozróżniania wielkości liter When enabled, user fields are matched regardless of their casing. Po włączeniu pola użytkownika są dopasowywane niezależnie od wielkości liter. Pretend user exists Udawaj, że użytkownik istnieje When enabled, the stage will always accept the given user identifier and continue. Gdy opcja ta jest włączona, etap zawsze akceptuje podany identyfikator użytkownika i kontynuuje. Show matched user Pokaż dopasowanego użytkownika When a valid username/email has been entered, and this option is enabled, the user's username and avatar will be shown. Otherwise, the text that the user entered will be shown. Po wprowadzeniu prawidłowej nazwy użytkownika/adresu e-mail i włączeniu tej opcji zostanie wyświetlona nazwa użytkownika i awatar użytkownika. W przeciwnym razie zostanie wyświetlony tekst wprowadzony przez użytkownika. Enable "Remember me on this device" When enabled, the user can save their username in a cookie, allowing them to skip directly to entering their password. Source settings Ustawienia źródła Sources Źródła Select sources should be shown for users to authenticate with. This only affects web-based sources, not LDAP. Powinny być wyświetlane wybrane źródła, za pomocą których użytkownicy mogą się uwierzytelniać. Dotyczy to tylko źródeł internetowych, a nie LDAP. Show sources' labels Pokaż etykiety źródeł By default, only icons are shown for sources. Enable this to show their full names. Domyślnie dla źródeł wyświetlane są tylko ikony. Włącz tę opcję, aby wyświetlić ich pełne nazwy. Passwordless flow Przepływ bezhasłowy Optional passwordless flow, which is linked at the bottom of the page. When configured, users can use this flow to authenticate with a WebAuthn authenticator, without entering any details. Opcjonalny przepływ bez hasła, do którego link znajduje się na dole strony. Po skonfigurowaniu użytkownicy mogą używać tego przepływu do uwierzytelniania za pomocą modułu uwierzytelniającego WebAuthn bez wprowadzania żadnych szczegółów. Optional enrollment flow, which is linked at the bottom of the page. Opcjonalny przepływ rejestracji, do którego link będzie znajdował się na dole strony. Optional recovery flow, which is linked at the bottom of the page. Opcjonalny przepływ odzyskiwania, do którego link znajduje się na dole strony. This stage can be included in enrollment flows to accept invitations. Ten etap można uwzględnić w przepływach rejestracji, aby akceptować zaproszenia. Continue flow without invitation Kontynuuj przepływ bez zaproszenia If this flag is set, this Stage will jump to the next Stage when no Invitation is given. By default this Stage will cancel the Flow when no invitation is given. Jeśli ta flaga jest ustawiona, ten etap przejdzie do następnego etapu, gdy nie zostanie wysłane żadne zaproszenie. Domyślnie ten etap anuluje przepływ, gdy nie zostanie wysłane żadne zaproszenie. Client-certificate/mTLS authentication/enrollment. Certificate optional If no certificate was provided, this stage will succeed and continue to the next stage. Certificate required If no certificate was provided, this stage will stop flow execution. Certificate authorities Configure the certificate authority client certificates are validated against. The certificate authority can also be configured on a brand, which allows for different certificate authorities for different domains. Certificate attribute Common Name Nazwa pospolita Configure the attribute of the certificate used to look for a user. User attribute Configure the attribute of the user used to look for a user. User database + standard password Baza użytkowników + standardowe hasło User database + app passwords Baza użytkowników + hasła aplikacji User database + LDAP password Baza użytkowników + hasło LDAP User database + Kerberos password Validate the user's password against the selected backend(s). Zweryfikuj hasło użytkownika w wybranym(ch) zapleczu(ach). Backends Zaplecza Selection of backends to test the password against. Wybór zapleczy do testowania hasła. Flow used by an authenticated user to configure their password. If empty, user will not be able to change their password. Failed attempts before cancel Nieudane próby przed anulowaniem How many attempts a user has before the flow is canceled. To lock the user out, use a reputation policy and a user_write stage. Ile prób ma użytkownik przed anulowaniem przepływu. Aby zablokować użytkownika, użyj zasad reputacji i etapu user_write. Provide users with a 'show password' button. Udostępnij użytkownikom przycisk "pokaż hasło". ("", of type ) Fields Pola Available Fields Selected Fields Validation Policies Zasady weryfikacji Available Policies Selected Policies Selected policies are executed when the stage is submitted to validate the data. Wybrane zasady są wykonywane po przesłaniu etapu w celu weryfikacji danych. Static Target URL Redirect the user to a static URL. Target Flow Redirect the user to a Flow. Keep flow context Inject an OAuth or SAML Source into the flow execution. This allows for additional user verification, or to dynamically access different sources for different user identifiers (username, email address, etc). Wstrzyknięcie źródła OAuth lub SAML do wykonania przepływu. Pozwala to na dodatkową weryfikację użytkownika lub dynamiczny dostęp do różnych źródeł dla różnych identyfikatorów użytkownika (nazwa użytkownika, adres e-mail itp.). Source Źródło Resume timeout Limit czasu wznowienia Amount of time a user can take to return from the source to continue the flow. Czas, jaki użytkownik może poświęcić na powrót ze źródła w celu kontynuowania przepływu. Delete the currently pending user. CAUTION, this stage does not ask for confirmation. Use a consent stage to ensure the user is aware of their actions. Usuń aktualnie oczekującego użytkownika. UWAGA, ten etap nie wymaga potwierdzenia. Użyj etapu zgody, aby upewnić się, że użytkownik jest świadomy swoich działań. Log the currently pending user in. Loguj aktualnie oczekującego użytkownika. Determines how long a session lasts. Default of 0 seconds means that the sessions lasts until the browser is closed. Określa, jak długo trwa sesja. Domyślna wartość 0 sekund oznacza, że sesje trwają do zamknięcia przeglądarki. Different browsers handle session cookies differently, and might not remove them even when the browser is closed. Różne przeglądarki obsługują sesyjne pliki cookie w różny sposób i mogą nie usuwać ich nawet po zamknięciu przeglądarki. See here. Zobacz tutaj. Stay signed in offset Przesunięcie, pozostania zalogowanym If set to a duration above 0, the user will have the option to choose to "stay signed in", which will extend their session by the time specified here. W przypadku ustawienia czasu trwania powyżej 0, użytkownik będzie mógł wybrać opcję „pozostania zalogowanym”, co spowoduje przedłużenie jego sesji o określony tutaj czas. Remember device If set to a duration above 0, a cookie will be stored for the duration specified which will allow authentik to know if the user is signing in from a new device. Network binding Wiązanie sieciowe No binding Bez wiązania Bind ASN Wiąż ASN Bind ASN and Network Wiąż ASN i Sieć Bind ASN, Network and IP Wiąż ASN, Sieć i IP Configure if sessions created by this stage should be bound to the Networks they were created in. Skonfiguruj, czy sesje utworzone przez ten etap powinny być powiązane z sieciami, w których zostały utworzone. GeoIP binding Wiązanie GeoIP Bind Continent Wiąż kontynent Bind Continent and Country Wiąż kontynent i kraj Bind Continent, Country and City Wiąż kontynent, kraj i miasto Configure if sessions created by this stage should be bound to their GeoIP-based location Skonfiguruj, czy sesje utworzone przez ten etap powinny być wiązane z ich lokalizacją opartą na GeoIP Terminate other sessions Zakończ inne sesje When enabled, all previous sessions of the user will be terminated. Po włączeniu tej opcji wszystkie poprzednie sesje użytkownika zostaną zakończone. Remove the user from the current session. Usuń użytkownika z bieżącej sesji. Write any data from the flow's context's 'prompt_data' to the currently pending user. If no user is pending, a new user is created, and data is written to them. Zapisz dowolne dane z kontekstu „prompt_data” dla aktualnie oczekującego użytkownika. Jeśli nie ma użytkownika w toku, tworzony jest nowy użytkownik i zapisywane są do niego dane. Never create users Nigdy nie twórz użytkowników When no user is present in the flow context, the stage will fail. Jeśli żaden użytkownik nie jest obecny w kontekście przepływu, etap zakończy się niepowodzeniem. Create users when required Twórz użytkowników, gdy jest to wymagane When no user is present in the the flow context, a new user is created. Jeśli w kontekście przepływu nie ma żadnego użytkownika, tworzony jest nowy użytkownik. Always create new users Zawsze twórz nowych użytkowników Create a new user even if a user is in the flow context. Utworzenie nowego użytkownika, nawet jeśli użytkownik znajduje się w kontekście przepływu. Create users as inactive Utwórz użytkowników jako nieaktywnych Mark newly created users as inactive. Oznacz nowo utworzonych użytkowników jako nieaktywnych. Internal users might be users such as company employees, which will get access to the full Enterprise feature set. Użytkownicy wewnętrzni mogą być użytkownikami, takimi jak pracownicy firmy, którzy uzyskają dostęp do pełnego zestawu funkcji Enterprise. External users might be external consultants or B2C customers. These users don't get access to enterprise features. Użytkownicy zewnętrzni mogą być zewnętrznymi konsultantami lub klientami B2C. Użytkownicy ci nie mają dostępu do funkcji korporacyjnych. Service accounts should be used for machine-to-machine authentication or other automations. Konta usług powinny być używane do uwierzytelniania maszyna-maszyna lub innych automatyzacji. User type used for newly created users. Typ użytkownika używany dla nowo utworzonych użytkowników. User path template Szablon ścieżki użytkownika Path new users will be created under. If left blank, the default path will be used. Ścieżka, w której zostaną utworzeni nowi użytkownicy. Jeśli pozostawisz puste, zostanie użyta ścieżka domyślna. Newly created users are added to this group, if a group is selected. Nowo utworzeni użytkownicy są dodawani do tej grupy, jeśli grupa jest zaznaczona. Target Cel Stage Etap Evaluate when flow is planned Oceń, kiedy planowany jest przepływ Evaluate policies during the Flow planning process. Oceniaj zasady podczas procesu planowania Przepływu. Evaluate when stage is run Oceń, kiedy etap jest uruchomiony Evaluate policies before the Stage is presented to the user. Invalid response behavior Nieprawidłowe zachowanie odpowiedzi Returns the error message and a similar challenge to the executor Zwraca komunikat o błędzie i podobne wezwanie do executora Restarts the flow from the beginning Ponownie uruchamia przepływ od początku Restarts the flow from the beginning, while keeping the flow context Ponownie uruchamia przepływ od początku, zachowując kontekst przepływu Configure how the flow executor should handle an invalid response to a challenge given by this bound stage. Konfiguruje sposób, w jaki wykonawca przepływu powinien obsługiwać nieprawidłową odpowiedź na wyzwanie podane przez ten etap związany. Successfully imported device. Pomyślnie zaimportowano urządzenie. The user in authentik this device will be assigned to. Użytkownik w authentik, do którego zostanie przypisane to urządzenie. Duo User ID Duo User ID The user ID in Duo, can be found in the URL after clicking on a user. ID użytkownika w Duo można znaleźć w adresie URL po kliknięciu na użytkownika. Automatic import Automatyczne importowanie Successfully imported devices. Pomyślnie zaimportowano urządzenia. Start automatic import Rozpocznij automatyczny import Or manually import Lub ręcznie importuj Endpoint Google Chrome Device Trust is in preview. Stage used to verify users' browsers using Google Chrome Device Trust. This stage can be used in authentication/authorization flows. Google Verified Access API Stages are single steps of a Flow that a user is guided through. A stage can only be executed from within a flow. Etapy to pojedyncze kroki przepływu, przez które prowadzony jest użytkownik. Etap można wykonać tylko z przepływu. Flows Przepływ(y) Stage(s) Etap(y) Import Importuj Import devices Importuj urządzenia Shown as the Title in Flow pages. Wyświetlany jako tytuł na stronach przepływu. Visible in the URL. Widoczne w adresie URL. Designation Przeznaczenie Decides what this Flow is used for. For example, the Authentication flow is redirect to when an un-authenticated user visits authentik. Decyduje, do czego służy ten przepływ. Na przykład przepływ uwierzytelniania służy do przekierowania nieuwierzytelnionego użytkownika który odwiedza authentik. No requirement Brak wymagań Require authentication Wymagaj uwierzytelnienia Require no authentication Require superuser Require being redirected from another flow Require Outpost (flow can only be executed from an outpost) Required authentication level for this flow. Wymagany poziom uwierzytelniania dla tego przepływu. Behavior settings Ustawienia zachowania Compatibility mode Tryb zgodności Increases compatibility with password managers and mobile devices. Zwiększa kompatybilność z menedżerami haseł i urządzeniami mobilnymi. Denied action Działanie odrzucone Will follow the ?next parameter if set, otherwise show a message Będzie podążać za parametrem ?next, jeśli jest ustawiony, w przeciwnym razie wyświetli komunikat Will either follow the ?next parameter or redirect to the default interface Będzie podążać za parametrem ?next lub przekieruje do domyślnego interfejsu. Will notify the user the flow isn't applicable Powiadomi użytkownika, że przepływ nie ma zastosowania Decides the response when a policy denies access to this flow for a user. Decyduje o odpowiedzi, gdy zasada odmawia użytkownikowi dostępu do tego przepływu. Appearance settings Ustawienia wyglądu Layout Układ Background Tło Background shown during execution. Tło pokazywane podczas wykonywania. .yaml files, which can be found in the Example Flows documentation Flows describe a chain of Stages to authenticate, enroll or recover a user. Stages are chosen based on policies applied to them. Przepływy opisują łańcuch etapów do uwierzytelniania, rejestracji lub odzyskiwania użytkownika. Etapy są wybierane na podstawie stosowanych do nich zasad. Flow(s) Przepływ(y) Execute "" Execute Wykonaj Export "" Export Eksportuj Successfully cleared flow cache Pamięć podręczna przepływu została wyczyszczona Failed to delete flow cache Nie udało się usunąć pamięci podręcznej przepływu Clear Flow cache Wyczyść pamięć podręczną przepływu Are you sure you want to clear the flow cache? This will cause all flows to be re-evaluated on their next usage. Czy na pewno chcesz wyczyścić pamięć podręczną przepływów? Spowoduje to ponowną ocenę wszystkich przepływów przy ich następnym użyciu. Stage binding(s) Wiązania(a) etapu Stage type Typ etapu Edit Stage Edytuj etap These bindings control if this stage will be applied to the flow. Te powiązania kontrolują, czy ten etap zostanie zastosowany do przepływu. No Stages bound Żadne etapy nie są związane. No stages are currently bound to this flow. Żadne etapy nie są obecnie związane z tym przepływem. Flow Overview Przegląd przepływu Flow Info Informacje o przepływie Related actions Powiązane działania Execute flow Wykonaj przepływ Execute "" normally Normal Normalny Execute "" as current user Current user Execute "" with inspector Use inspector Stage Bindings Wiązania etapu These bindings control which users can access this flow. Te powiązania kontrolują, którzy użytkownicy mogą uzyskać dostęp do tego przepływu. Event Log Dziennik zdarzeń Brand Marka Show details Pokaż szczegóły Event info Informacje o zdarzeniu Created Utworzony Raw event info Surowe informacje o wydarzeniu Event Zdarzenie Successfully updated transport. Pomyślnie zaktualizowano transport. Successfully created transport. Pomyślnie utworzono transport. Send once Wyślij raz Only send notification once, for example when sending a webhook into a chat channel. Wyślij powiadomienie tylko raz, na przykład podczas wysyłania webhooka na kanał czatu. Local (notifications will be created within authentik) Lokalny (powiadomienia będą tworzone w ramach authentik) Webhook (generic) Webhook (ogólny) Webhook (Slack/Discord) Webhook (Slack/Discord) Webhook URL URL webhooka Webhook Body Mapping Webhook Header Mapping Email Subject Prefix Email Template Notification Transports Transporty powiadomień Define how notifications are sent to users, like Email or Webhook. Określ sposób wysyłania powiadomień do użytkowników, takich jak e-mail lub webhook. Notification transport(s) Transport(y) powiadomień Successfully updated rule. Pomyślnie zaktualizowano regułę. Successfully created rule. Pomyślnie utworzono regułę. Select the group of users which the alerts are sent to. Send notification to event user Transports Transporty Available Transports Selected Transports Select which transports should be used to notify the user. If none are selected, the notification will only be shown in the authentik UI. Wybierz transporty, które mają być używane do powiadamiania użytkownika. Jeśli nie wybierzesz żadnego, powiadomienie będzie wyświetlane tylko w interfejsie użytkownika authentik. Severity Poziom błędu Notification Rules Zasady powiadamiania Send notifications whenever a specific Event is created and matched by policies. Wysyłaj powiadomienia za każdym razem, gdy określone zdarzenie zostanie utworzone i dopasowane do zasad. Sent to group Wysłane do grup Notification rule(s) Reguła(y) powiadamiania These bindings control upon which events this rule triggers. Bindings to groups/users are checked against the user of the event. Te powiązania kontrolują, które zdarzenia są wyzwalane przez tę regułę. Powiązania z grupami/użytkownikami są sprawdzane względem użytkownika zdarzenia. Outpost Deployment Info Informacje o wdrożeniu placówki View deployment documentation Wyświetl dokumentację wdrożenia If your authentik Instance is using a self-signed certificate, set this value. Jeśli twoja instancja authentik korzysta z certyfikatu z podpisem własnym, ustaw tę wartość. If your authentik_host setting does not match the URL you want to login with, add this setting. Jeśli ustawienie authentik_host nie odpowiada adresowi URL, pod którym chcesz się zalogować, dodaj to ustawienie. Successfully updated outpost. Pomyślnie zaktualizowano placówkę. Successfully created outpost. Pomyślnie utworzono placówkę. LDAP LDAP Radius Radius RAC RAC Integration Integracja Selecting an integration enables the management of the outpost by authentik. Wybranie integracji umożliwia zarządzanie placówką przez authentik. Available Applications Dostępne aplikacje Selected Applications Wybrane aplikacje Configuration Konfiguracja (build ) (build ) (FIPS) (FIPS) Last seen Ostatnio widziany , should be , powinno być Not available Niedostępny Last seen: () Outposts Placówki Outposts are deployments of authentik components to support different environments and protocols, like reverse proxies. Placówki (Outposts) to wdrożenia komponentów uwierzytelniających do obsługi różnych środowisk i protokołów, takich jak odwrotne serwery proxy. Health and Version Zdrowie i wersja Warning: authentik Domain is not configured, authentication will not work. Ostrzeżenie: domena authentik nie jest skonfigurowana, uwierzytelnianie nie będzie działać. Logging in via . Logowanie przez . No integration active Brak aktywnej integracji Outpost(s) Placówka(i) Successfully updated integration. Pomyślnie zaktualizowano integrację. Successfully created integration. Pomyślnie utworzono integracje. Local Lokalny Docker URL URL Dockera Can be in the format of unix:// when connecting to a local docker daemon, using ssh:// to connect via SSH, or https://:2376 when connecting to a remote system. CA which the endpoint's Certificate is verified against. Can be left empty for no validation. CA względem którego weryfikowany jest certyfikat. Można pozostawić puste, aby nie sprawdzać poprawności. TLS Authentication Certificate/SSH Keypair Certyfikat uwierzytelniania TLS/para kluczy SSH Certificate/Key used for authentication. Can be left empty for no authentication. Certyfikat/klucz używany do uwierzytelniania. Można pozostawić puste, aby nie uwierzytelniać. When connecting via SSH, this keypair is used for authentication. Podczas łączenia przez SSH ta para kluczy jest używana do uwierzytelniania. Kubeconfig Kubeconfig Verify Kubernetes API SSL Certificate Weryfikacja certyfikatu SSL Kubernetes API Outpost integrations Outpost integrations define how authentik connects to external platforms to manage and deploy Outposts. State Stan Unhealthy Niezdrowy Outpost integration(s) Integracja(e) z placówkami Successfully generated certificate-key pair. Pomyślnie wygenerowana para certyfikat-klucz. Subject-alt name Alternatywna nazwa tematu Optional, comma-separated SubjectAlt Names. Opcjonalne, rozdzielone przecinkami nazwy SubjectAlt. Validity days Dni ważności Private key Algorithm Algorytm klucza prywatnego RSA RSA ECDSA ECDSA Algorithm used to generate the private key. Algorytm używany do generowania klucza prywatnego. Successfully updated certificate-key pair. Pomyślnie zaktualizowano parę certyfikat-klucz. Successfully created certificate-key pair. Pomyślnie utworzono parę certyfikat-klucz. PEM-encoded Certificate data. Dane certyfikatu zakodowane w formacie PEM. Optional Private Key. If this is set, you can use this keypair for encryption. Opcjonalny klucz prywatny. Jeśli to jest ustawione, możesz użyć tej pary kluczy do szyfrowania. Certificate-Key Pairs Pary certyfikat-klucz Import certificates of external providers or create certificates to sign requests with. Importuj certyfikaty zewnętrznych dostawców lub twórz certyfikaty do podpisywania żądań. Private key available? Dostępny klucz prywatny? Managed by authentik Zarządzane przez authentik Managed by authentik (Discovered) Zarządzane przez authentik (odkryte) Yes () Tak ( ) Update Certificate-Key Pair Aktualizuj parę certyfikat-klucz Certificate Fingerprint (SHA1) Odcisk cyfrowy certyfikatu (SHA1) Certificate Fingerprint (SHA256) Odcisk cyfrowy certyfikatu (SHA256) Certificate Subject Temat certyfikatu Download Certificate Pobierz certyfikat Download Private key Pobierz klucz prywatny Generate Generuj Link Title Successfully updated settings. Pomyślnie zaktualizowano ustawienia. Avatars Awatary Configure how authentik should show avatars for users. The following values can be set: Skonfiguruj sposób, w jaki authentik ma wyświetlać awatary użytkowników. Można ustawić następujące wartości: Disables per-user avatars and just shows a 1x1 pixel transparent picture Wyłącza awatary poszczególnych użytkowników i wyświetla po prostu przezroczysty 1x1 piksel. Uses gravatar with the user's email address Używa gravataru adresu e-mail użytkownika. Generated avatars based on the user's name Generowanie awatarów na podstawie nazwy użytkownika Any URL: If you want to use images hosted on another server, you can set any URL. Additionally, these placeholders can be used: Dowolny adres URL: Jeśli chcesz użyć obrazów hostowanych na innym serwerze, możesz ustawić dowolny adres URL. Dodatkowo można użyć tych symboli zastępczych: The user's username Nazwa użytkownika The email address, md5 hashed Adres e-mail, hashowany md5 The user's UPN, if set (otherwise an empty string) UPN użytkownika, jeśli jest ustawiony (w przeciwnym razie pusty ciąg) An attribute path like attributes.something.avatar, which can be used in combination with the file field to allow users to upload custom avatars for themselves. Ścieżka atrybutu, taka jak attributes.something.avatar, która może być używana w połączeniu z polem pliku, aby umożliwić użytkownikom przesyłanie niestandardowych awatarów dla siebie. Multiple values can be set, comma-separated, and authentik will fallback to the next mode when no avatar could be found. Można ustawić wiele wartości, oddzielonych przecinkami, a authentik powróci do następnego trybu, gdy nie można znaleźć awatara. For example, setting this to gravatar,initials will attempt to get an avatar from Gravatar, and if the user has not configured on there, it will fallback to a generated avatar. Na przykład, ustawienie tego na gravatar,initials spowoduje próbę pobrania awatara z serwisu Gravatar, a jeśli użytkownik go tam nie skonfigurował, nastąpi powrót do wygenerowanego awatara. Allow users to change name Zezwalaj użytkownikom na zmianę nazwy Enable the ability for users to change their name. Włącz możliwość zmiany nazwy przez użytkowników. Allow users to change email Zezwalaj użytkownikom na zmianę adresu e-mail Enable the ability for users to change their email. Włącz możliwość zmiany adresu e-mail przez użytkowników. Allow users to change username Zezwalaj użytkownikom na zmianę nazwy użytkownika Enable the ability for users to change their username. Włącz możliwość zmiany nazwy użytkownika przez użytkowników. Event retention Przechowywanie zdarzeń Duration after which events will be deleted from the database. Czas, po którym zdarzenia zostaną usunięte z bazy danych. When using an external logging solution for archiving, this can be set to minutes=5. This setting only affects new Events, as the expiration is saved per-event. To ustawienie ma wpływ tylko na nowe zdarzenia, ponieważ data wygaśnięcia jest zapisywana dla każdego zdarzenia. Reputation: lower limit Reputation cannot decrease lower than this value. Zero or negative. Reputation: upper limit Reputation cannot increase higher than this value. Zero or positive. Footer links Linki w stopce This option configures the footer links on the flow executor pages. The URL is limited to web and mail addresses. If the name is left blank, the URL will be shown. GDPR compliance Zgodność z RODO When enabled, all the events caused by a user will be deleted upon the user's deletion. Po włączeniu tej opcji wszystkie zdarzenia spowodowane przez użytkownika zostaną usunięte po jego usunięciu. Impersonation Podszywanie się Globally enable/disable impersonation. Globalne włączenie/wyłączenie podszywania się. Require reason for impersonation Require administrators to provide a reason for impersonating a user. Default token duration Domyślny czas trwania tokena Default duration for generated tokens Domyślny czas trwania wygenerowanych tokenów Default token length Domyślna długość tokena Default length of generated tokens Domyślna długość generowanych tokenów Flags Save Zapisz System settings Ustawienia systemowe Successfully updated instance. Pomyślnie zaktualizowano instancję. Successfully created instance. Pomyślnie utworzono instancję. Disabled blueprints are never applied. Wyłączone schematy nigdy nie są stosowane. Local path Ścieżka lokalna OCI Registry Rejestr OCI OCI URL A valid OCI manifest URL, prefixed with the protocol e.g. oci://registry.domain.tld/path/to/manifest Read more about OCI Support Blueprint Schemat Configure the blueprint context, used for templating. Konfiguracja kontekstu schematu, używanego do tworzenia szablonów. Orphaned Osierocone Blueprints Schematy Automate and template configuration within authentik. Zautomatyzuj i szablonuj konfigurację w authentik. Last applied Ostatnio zastosowano Blueprint(s) Schemat(y) Apply "" blueprint Apply Zastosuj Successfully updated license. Pomyślnie zaktualizowano licencję. Successfully created license. Pomyślnie utworzono licencję. Install ID ID instalacji License key Klucz licencyjny Expired Expiring soon Unlicensed Read Only Valid Current license status Overall license status Licenses Licencje Manage enterprise licenses Zarządzanie licencjami enterprise No licenses found. Nie znaleziono licencji. License(s) Licencj(a/e) Forecast internal users Prognoza użytkowników wewnętrznych Estimated user count one year from now based on current internal users and forecasted internal users. Approximately Forecast external users Prognoza użytkowników zewnętrznych Estimated user count one year from now based on current external users and forecasted external users. Cumulative license expiry Skumulowane wygaśnięcie licencji No expiry Internal: Wewnętrzny: External: Zewnętrzny: Your Install ID Twoje ID instalacji Go to Customer Portal Przejdź do portalu klienta Learn more Dowiedz się więcej Install Instaluj Release Development UI Version Build Python version Platform Kernel OpenSSL Enterprise Enterprise Collapse Expand navigation Dashboards Pulpity Endpoint Devices Logs Logi Customization Personalizacja Flows and Stages Przepływy i etapy Directory Katalog Tokens and App passwords Tokeny i hasła aplikacji System System Certificates Certyfikaty Outpost Integrations Integracje z placówkami Warning: The current user count has exceeded the configured licenses. Ostrzeżenie: Bieżąca liczba użytkowników przekroczyła skonfigurowaną liczbę licencji. Warning: One or more license(s) have expired. Warning: One or more license(s) will expire within the next 2 weeks. Caution: This authentik instance has entered read-only mode due to expired/exceeded licenses. Click here for more info. Kliknij tutaj, aby uzyskać więcej informacji. This authentik instance uses a Trial license. This authentik instance uses a Non-production license. A newer version () of the UI is available. API drawer API Requests Żądania API Open API Browser Otwórz przeglądarkę API Close API drawer View details for Mark as read Successfully cleared notifications Pomyślnie wyczyszczono powiadomienia No notifications found. You don't have any notifications currently. Notifications Powiadomienia Open about dialog Product name Product version Version Global navigation WebAuthn requires this page to be accessed via HTTPS. WebAuthn wymaga dostępu do tej strony za pośrednictwem protokołu HTTPS. WebAuthn not supported by browser. WebAuthn nie jest obsługiwany przez przeglądarkę. API request failed Żądanie API nie powiodło się Site links Powered by authentik Napędzane przez authentik Authenticating with Apple... Uwierzytelnianie z Apple... Retry Ponów Authenticating with Plex... Uwierzytelnianie z Plex... Waiting for authentication... Oczekiwanie na uwierzytelnienie... If no Plex popup opens, click the button below. Jeśli nie otworzy się wyskakujące okienko Plex, kliknij przycisk poniżej. Open login Otwórz logowanie Authenticating with Telegram... Click the button below to start. User information Something went wrong! Please try again later. Coś poszło nie tak! Spróbuj ponownie później. Request ID Identyfikator żądania You may close this page now. Możesz już zamknąć tę stronę. Follow redirect Śledź przekierowanie Flow inspector Inspektor przepływu Close flow inspector Next stage Następny etap Stage name Nazwa etapu Stage kind Rodzaj etapu Stage object Obiekt etapu This flow is completed. Ten przepływ jest zakończony. Plan history Historia planu Current plan context Aktualny kontekst planu Session ID ID sesji Flow inspector loading Request has been denied. Żądanie zostało odrzucone. Show password Pokaż hasło Hide password Ukryj hasło Please enter your password Wprowadź hasło Caps Lock is enabled. CAPTCHA challenge Verifying... Weryfikowanie... Remember me on this device Continue with Need an account? Potrzebujesz konta? Sign up. Zarejestruj się. Forgot username or password? Zapomniałeś nazwy użytkownika lub hasła? Additional actions Select one of the options below to continue. Wybierz jedną z poniższych opcji, aby kontynuować. Or Lub Use a security key Użyj klucza bezpieczeństwa Login sources Forgot password? Zapomniałeś hasła? Application requires following permissions: Aplikacja wymaga następujących uprawnień: Application already has access to the following permissions: Aplikacja ma już dostęp do następujących uprawnień: Application requires following new permissions: Aplikacja wymaga następujących nowych uprawnień: Stage name: Nazwa etapu: Check your Inbox for a verification email. Sprawdź swoją skrzynkę odbiorczą pod kątem e-maila weryfikacyjnego. QR-Code to setup a time-based one-time password Copy time-based one-time password configuration Copy TOTP Config Please scan the QR code above using the Microsoft Authenticator, Google Authenticator, or other authenticator apps on your device, and enter the code the device displays below to finish setting up the MFA device. Zeskanuj powyższy kod QR za pomocą aplikacji Microsoft Authenticator, Google Authenticator lub innej aplikacji uwierzytelniającej na swoim urządzeniu i wprowadź kod wyświetlany przez urządzenie poniżej, aby zakończyć konfigurację urządzenia MFA. Time-based one-time password TOTP Code Type your TOTP code... Type your time-based one-time password code. Duo activation QR code Kod QR aktywacji Duo Alternatively, if your current device has Duo installed, click on this link: Alternatywnie, jeśli na Twoim obecnym urządzeniu jest zainstalowany Duo, kliknij ten link: Duo activation Aktywacja Duo Check status Sprawdź status Make sure to keep these tokens in a safe place. Upewnij się, że przechowujesz te tokeny w bezpiecznym miejscu. Configure your email Please enter your email address. Code Kod Please enter the code you received via email Phone number Numer telefonu Please enter your Phone number. Podaj swój numer telefonu. Please enter the code you received via SMS Wprowadź kod otrzymany SMS-em Select another authentication method Authentication code Kod uwierzytelnienia Static token Token statyczny Type an authentication code... Sending Duo push notification... Wysyłam powiadomienie push Duo Failed to authenticate Nie udało się uwierzytelnić Authenticating... Uwierzytelnianie... Retry authentication Ponów uwierzytelnianie Duo push-notifications Powiadomienia push Duo Receive a push notification on your device. Otrzymuj powiadomienia push na swoje urządzenie. Traditional authenticator Tradycyjny uwierzytelniacz Use a code-based authenticator. Użyj uwierzytelniacza opartego na kodzie. Recovery keys Klucze odzyskiwania In case you lose access to your primary authenticators. SMS SMS Tokens sent via SMS. Tokeny wysyłane SMS-em. Tokens sent via email. Unknown device An unknown device class was provided. Select an authentication method Select a configuration stage Stay signed in? Pozostań zalogowanym? Select Yes to reduce the number of times you're asked to sign in. Wybierz Tak, aby zmniejszyć liczbę razy kiedy wymagane będzie logowanie. Device Code Please enter your code Proszę wprowadź swój kod You've successfully authenticated your device. Pomyślnie uwierzytelniłeś swoje urządzenie. You've logged out of . You can go back to the overview to launch another application, or log out of your authentik account. Go back to overview Log out of Log back into SAML Provider SAML logout complete Redirecting to SAML provider: Posting logout request to SAML provider: Unknown Provider Logging out of providers... Single Logout Open flow inspector Authentication form Failed to register. Please try again. Rejestracja nie powiodła się. Spróbuj ponownie. Registering... Rejestrowanie... Failed to register Nie udało się zarejestrować Retry registration Ponów rejestrację Idle Connecting Waiting Connected Disconnecting Disconnected Connection failed after attempts. Połączenie nie powiodło się po próbach. Re-connecting in second(s). Ponowne połączenie w ciągu sekund(y). Connecting... Łączenie... Please wait while the content is loading application Actions for "" Edit application... Refer to documentation Odnieś się do dokumentacji No Applications available. Brak dostępnych aplikacji. Either no applications are defined, or you don’t have access to any. Albo nie zdefiniowano żadnych aplikacji, albo nie masz do nich dostępu. Ungrouped Search for an application by name... Search returned no results. Wyszukiwanie nie zwróciło żadnych wyników. Application list Failed to fetch applications. Change your password Zmień swoje hasło Change password Zmień hasło Delete account Usuń konto Successfully updated details Pomyślnie zaktualizowano szczegóły Open settings Otwórz ustawienia No settings flow configured. Nie skonfigurowano przepływu ustawień. Update details Aktualizuj szczegóły Device type cannot be edited Enroll Dodaj Edit device User settings User details Szczegóły użytkownika Consent Zgody MFA Devices Urządzenia MFA Connect your user account to the services listed below, to allow you to login using the service instead of traditional credentials. Połącz swoje konto użytkownika z usługami wymienionymi poniżej, aby umożliwić logowanie za pomocą usługi zamiast tradycyjnych poświadczeń. Admin interface Interfejs administratora ... Truncation ellipsis Via Select from uploaded files, or type a Font Awesome icon (fa://fa-icon-name) or URL. This type is deprecated. No connectors configured. Navigate to Connectors in the sidebar and first create a connector. Home directory Successfully updated agent connector. Successfully created agent connector. Device compliance settings Challenge certificate Challenge idle timeout Duration the flow executor will wait before continuing without a response. Trigger check-in on device Configure how devices connect with authentik and ingest external device data. Stage which associates the currently used device with the current session. Connector Device optional If no device was provided, this stage will succeed and continue to the next stage. Device required If no device was provided, this stage will stop flow execution. Files Manage uploaded files. file files Upload Failed to validate device. Verifying your device... Service Provider Config cache timeout Cache duration for ServiceProviderConfig responses. Set minutes=0 to disable caching. JWTs signed by the selected providers can be used to authenticate to devices. Score Configuration This CAPTCHA provider does not support scoring. Score thresholds will be ignored. Score Minimum Threshold Minimum required score to allow continuing. Lower scores indicate more suspicious behavior. Score Maximum Threshold Maximum allowed score to allow continuing. Set to -1 to disable upper bound checking. Error on Invalid Score When enabled and the score is outside the threshold, the user will not be able to continue. When disabled, the user can continue and the score can be used in policies. Advanced Settings JavaScript URL URL to fetch the CAPTCHA JavaScript library from. Automatically set based on provider selection but can be customized. API Verification URL URL used to validate CAPTCHA response on the backend. Automatically set based on provider selection but can be customized. This stage checks the user's current session against a CAPTCHA service to prevent automated abuse. CAPTCHA Provider Enable this if the CAPTCHA requires user interaction (clicking checkbox, solving puzzles, etc.). Required for reCAPTCHA v2, hCaptcha interactive mode, and Cloudflare Turnstile. Flow Examples Type an outpost name... Outpost Name Outpost configuration Delete Object Permission Global and object permission Global permission Object permission Permissions on this object Permissions assigned to this role affecting specific object instances. Parents Available Groups Selected Groups A group recursively inherits every role from its ancestors. User updated. User created and added to group User created and added to role User created. Successfully downloaded ! Show MDM configuration Hide MDM configuration Is Primary user Primary Remove User(s) Are you sure you want to remove the selected users from ? Are you sure you want to remove the selected users? This user will be added to the role "". Successfully added user to role(s). Roles to add Add role Remove from Role(s) Are you sure you want to remove user from the following roles? Add to existing role Add new role Data export ready Data Exports Manage past data exports. Data type Requested by Creation date Completed Row actions Data export(s) Query parameters SAML metadata XML file to import provider settings from. Configure SAML Provider from Metadata Outgoing syncs will not be triggered. Immediate Outgoing syncs will be triggered immediately for each object that is updated. This can create many background tasks and is therefore not recommended Deferred until end Outgoing syncs will be triggered at the end of the source synchronization. Outgoing sync trigger mode Successfully connected source Failed to connect source: Passkey settings WebAuthn Authenticator Validation Stage When set, allows users to authenticate using passkeys directly from the browser's autofill dropdown without entering a username first. Pagination: default page size Default page size for API requests not specifying a page size. Pagination: maximum page size Maximum page size for API requests. Local connection Requires Docker socket/Kubernetes Integration. Next, download the configuration to deploy the authentik Agent via MDM Device Access Group Select a device access group to be added to upon enrollment. To create a data export, navigate to Directory > Users or to Events > Logs. Choose the object permissions that you want the selected role to have on this object. These object permissions are in addition to any global permissions already within the role. Device access group Primary disk size Primary disk usage The start for user ID numbers, this number is added to the user ID to make sure that the numbers aren't too low for POSIX users. Default is 2000 to prevent collisions with local users. The start for group ID numbers, this number is added to a number generated from the groups' ID to make sure that the numbers aren't too low for POSIX groups. Default is 4000 to prevent collisions with local groups. Data exports are not available as storage for reports is not configured. will collect all objects with the specified parameters: Successfully requested data export Failed to export data Export data English (Pseudo-Accents) Finished Queued Configured file backend does not support file management. Please ensure the data folder is mounted or S3 storage is configured. View details... Type a connector name... Type a name for the token... Type a unique identifier... Type a token description... Integrations synced in the last 12 hours. Loading data Label for progress bar shown when table data is loading Assigned Roles All Roles Inherited from parent group Inherited from group Inherited Toggle API requests drawer API Drawer Toggle notifications drawer Notification Drawer Failed to fetch notifications. Clear all notifications Close notification drawer No MFA devices enrolled. User Tokens No User Tokens enrolled. unread Indicates the number of unread notifications in the notification drawer Agent version: Warning: Flow imports are blueprint files, which may contain objects other than flows (such as users, policies, etc). You should only import files from trusted sources and review blueprints before importing them. The length of the individual generated tokens. Can be set to a maximum of 100 characters. Close sidebar Open sidebar Certificate-Key Pair Avatar for User avatar Go back A verification token has been sent to your configured email address: Displayed when a verification token has been sent to the user's configured email address. A verification token has been sent to your email address. Displayed when a verification token has been sent to the user's email address. application found for "" applications found for "" application available applications available Type to filter applications Screen reader hint to inform the user they can filter the application list by typing Press Enter to open Screen reader hint to inform the user they can open the selected application by pressing Enter Press Enter to open Screen reader hint to inform the user they can open the selected application by pressing Enter Open "" Screen reader label for the application card Active Sessions Successfully revoked session(s) for user(s) Failed to revoke sessions: Revoke Sessions Are you sure you want to revoke all sessions for user(s)? This will force the selected users to re-authenticate on all their devices. Security key Use a Passkey or security key to prove your identity. Include additional data in Audit logs When enabled, additional data about objects added/removed is saved in the audit log. May reduce performance in certain requests. Successfully updated Fleet connector. Successfully created Fleet connector. Fleet settings Fleet Server URL Fleet API Token Map users When enabled, users detected by Fleet will be mapped in authentik, granting them access to the device. Map teams to device access group When enabled, Fleet teams will be mapped to Device access groups. Missing device access groups are automatically created. Devices assigned to a different group are not re-assigned Software Paste your license key... You can select from popular providers with preset configurations or choose a custom setup to specify your own endpoints and keys. Paste your CAPTCHA public key... Secret Key Paste your CAPTCHA secret key... Type a stage name... The unique name used internally to identify the stage. Google reCAPTCHA v2 reCAPTCHA admin console Google reCAPTCHA v3 reCAPTCHA admin console Google reCAPTCHA Enterprise Google Cloud Console hCaptcha hCaptcha dashboard Cloudflare Turnstile Cloudflare dashboard Custom Type an email address... The public key is used by authentik to render the CAPTCHA widget. Description for CAPTCHA public key field. The secret key allows communication between authentik and the CAPTCHA provider to validate user responses. Description for CAPTCHA secret key field. Modify Help text for secret input field to indicate that clicking will allow changing the value. API keys can be obtained from the Supplementary help text with link to provider dashboard. item marked to add. items marked to add. item selected. items selected. item marked to remove. items marked to remove. Reply URL Update WS-Federation Provider WS-Federation Configuration WS-Federation URL Realm (wtrealm) WS-Federation Metadata Example WS-Federation attributes Group Filter Groups to be synced. If empty, all groups will be synced. Custom Attributes No custom attributes defined. The CAPTCHA challenge failed to load. Could not find a suitable CAPTCHA provider. Copy time-based one-time password secret Copy Secret ED25519 ED448 Enrollment Token New Token Create link Recovery link Successfully queued email. Token duration If a recovery token already exists, its duration is updated. copied to clipboard. Copied to clipboard. Clipboard not available. Please copy the value manually. An unknown error occurred while retrieving the token. TOTP Config Paste this URL into your authenticator app to set up a time-based one-time password. TOTP Secret Paste this secret into your authenticator app to set up a time-based one-time password. Type a unique identifier for this token... Type a description for this token... Create App Password New App Password Sidebar left (frame background) Sidebar right (frame background) Configuration warning Lifecycle Rules Lifecycle Object Lifecycle Management is in preview. Select a group... Select a role... Select an object... Rule Name Type a name for this lifecycle rule... Interval The interval between opening new reviews for matching objects. Grace period The duration of time before an open review is considered overdue. Reviewer groups Number of users from the selected reviewer groups that must approve the review. Reviewers Object type When set, the rule will apply to the selected individual object. Otherwise, the rule applies to all objects of the selected type. Available Users Selected Users A review will require approval from each of the users selected here in addition to group members as per above settings. Notification transports Select which transports should be used to notify the user. Object Lifecycle Rules Schedule periodic reviews for objects in authentik. Lifecycle rule(s) No reviews yet. Reviewed on Reviewer Note No review iteration found for this object. At least user from this group: . At least user from these groups: . At least users from this group: . At least users from these groups: . Review opened on Grace period till Next review date Latest review for this object Review state Required reviewers Reviews Review Notes Type optional notes to include in this review... Open Reviews See all currently open reviews. Only show reviews where I am a reviewer Opened Grace period ends Pending review Reviewed Overdue Canceled An unknown error occurred while submitting the form. Sign logout response When enabled, SAML logout responses will be signed. Posting logout response to SAML provider: If checked, approving a review will require at least that many users from each of the selected groups. When disabled, the value is a total across all groups. Review initiated Review overdue Review attested Review completed Copy Link Send Send Invitation via Email Send via Email Please enter at least one email address Invitation emails queued for sending to recipient(s). Check the System Tasks for more information. Failed to queue invitation emails: Never No flow set One email address per line, or comma/semicolon separated. Each recipient will receive a separate email with an invitation link. CC A comma-separated list of addresses to receive copies of the invitation. Recipients will receive the full list of other addresses in this list. BCC A comma-separated list of addresses to receive copies of the invitation. Recipients will not receive the addresses of other recipients. Select the email template to use for sending invitations. Site footer Enter the email address or username associated with your account. You're about to be redirected to the following URL. Log in to continue to . Continuous Login Successfully updated Google Chrome connector. Successfully created Google Chrome connector. Google settings Webhook Certificate Authority Keypair used to validate the certificate of the webhook endpoint. When not configured, the standard CA bundle is used. Security key (e.g. YubiKey) Client device (e.g. Touch ID, Windows Hello) Hybrid (e.g. QR code, phone) WebAuthn Hints Available Hints Selected Hints Optional hints to guide the browser in prioritizing the preferred authenticator type. Order matters - the first hint has highest priority. These are advisory and may be ignored by browsers. Hints Optional hints to guide the browser in prioritizing the preferred authenticator type during registration. Order matters - the first hint has highest priority. These are advisory and may be ignored by browsers. Filtering See documentation for path rules and theme-aware names. No assertion was returned by the authenticator Authentication was cancelled or timed out Registration was cancelled or timed out. Please try again. An error occurred while creating the credential. Please try again. Server validation of credential failed Upon successful authentication, re-start authentication in other open tabs. About authentik Create a new application... Username or email address... Type an optional publisher name... Type an optional description... New Application Opens the new application wizard, which will guide you through creating a new application with an existing provider. Opens the new application form, which will guide you through creating a new application with an existing provider. Clear Cache Search for a provider... e.g. my-application Select Groups New Group User New Role User Add Existing User Add New User New Group User... New Role User... New Service Account... Start Export Assign Additional Roles Role Name Type a name for this role... This name will be used to identify the role within authentik. Service Account Service Accounts Impersonate User Impersonate Set Password User "" search find Search the docs for "" New Tab Command palette No commands No matching commands. No commands are currently available. Fetching users... No matching users No matching users. Jump to Search for Open View New Tab Peek Integrations Documentation Release notes New in authentik About authentik Session Navigate to Interface API requests drawer Toggle Notifications drawer Reloads page authentik information Landmark: Switch to tab Save Changes Resend Email Open Command Palette Label for the button that opens the command palette Type a command... Label for the command palette input What are you looking for? Placeholder for the command palette input Type a username or email address... Placeholder for the user search command in the admin interface The headline for a form that creates or updates a model instance. Open Command Palette Tooltip for the button that opens the command palette Configure WS-Federation Provider Outpost No instances running. New Outpost No providers configured. Outpost Info Health Configured providers Detailed health (data is cached so may be out of date) Webex Altered behavior for usage with Cisco Webex. Statistics Authorizations (24 hours) Authorizations (7 days) Authorizations (1 month) Successfully imported blueprint. File upload Warning: Blueprint files may contain objects such as users, policies and expression. Force authentication When enabled, the IdP is requested to force re-authentication of the user, even if the user has an existing session. / instances are healthy. Federated OAuth2/OpenID Providers Info Verify Push stream endpoints' certificate Stream(s) Delivery method Delivery Method Pull Push post logout authorization Valid redirect URIs after a successful authorization or invalidation flow. Also specify any origins here for Implicit flows. Use the type dropdown to designate URIs for authorization or post-logout redirection. If no explicit authorization redirect URIs are specified, the first successfully used authorization redirect URI will be saved. Post Logout No connectivity status available. LDAP Group(s) Connect Group Successfully connected user. The unique identifier of this object in LDAP, the value of the '' attribute. LDAP User(s) Connect User Object Identifier () Synced Users Synced Groups Avatar Save changes Edit Settings Server Version Applications search Search for application by name, group or provider... New Application options Select a ... Application Details Provider Details Flow Blueprint Flow Blueprints Select a blueprint... Search for a blueprint by name or path... Type a name for this certificate... e.g. mydomain.com, *.mydomain.com, mydomain.local Import Existing Certificate Name Type a name for this certificate-key pair... Search for a certificate or key name... Select a device access group... No enrollment tokens found for this connector. Search for an enrollment token... Search connectors by name or type... Endpoint Connector Endpoint Connectors Provide your Fleet API token... Device Access Groups Search device groups by name... Search devices by name, OS, or group... Enterprise License Enterprise Licenses Search for a license by name... Notification Rule Type a name for this rule... Search for a notification rule by name, severity or group... Notification Transport Transport Name Type a name for this transport... Search for a notification transport by name or mode... Search for a file by name... Flow Name Type a name for this flow... Type a title for this flow... e.g. my-flow Select a designation... Search for a flow by name or identifier... Stage Binding Select a stage... Select one or more users to assign... Lifecycle Rule Search for a lifecycle rule by name or target... Review Outpost Integration Search outposts by name, type or assigned integration... Search for an outpost integration by name, type or assigned integration... Open the wizard to create a new service connection. New Outpost Integration Open the wizard to create a new policy. Policy Name Type a policy name... Policy Binding Search for a policy by name or type... New Policy Search for a reputation by identifier or IP... Property Mapping Mapping Name Type a name for this mapping... Search for a property mapping by name or type... New Property Mapping Run Test Example Context Data Select a user... Bind Mode Search Mode Bind Flow Unbind Flow TLS Server Name UID Start Number GID Start Number Authorization Flow Client Type Authentication Flow Invalidation Flow Access Code Validity Access Token Validity Refresh Token Validity Refresh Token Threshold Subject Mode Search for provider by name, type or assigned application... RAC Endpoint RAC Endpoints Endpoint Name Type a name for this endpoint... e.g. myserver.example.com, 10.0.0.1:22 Create an endpoint to get started. Search for an endpoint by name or host... Initial Permission Name Type a name for these initial permissions... Search for initial permissions by name... Create an initial permission to get started. Role Object Permission Role Object Permissions Object Permission Object Permissions Update Search for a role... Source Name Type a name for this source... e.g. my-kerberos-source e.g. my-oauth-source e.g. my-plex-source e.g. my-saml-source e.g. my-scim-source Search for a source... e.g. my-telegram-source Duo Device Duo Devices Importing Type the Duo user ID for this device... Invitation Invitation Name Search for an invitation by name... Prompt Search for a prompt by name, field or type... Search for a stage name, type, or flow... User creation mode Search for a token identifier, user, or intent... Review Credentials Type a username for the service account... Internal User Internal Users External User External Users Type a username for the internal user... Type a username for the external user... Open the new user wizard Select email stage... Copying ... Copying to clipboard... e.g. my-slug Create Create Copy to clipboard Entity Edit "" Edit Open "" permissions Open permissions New New Create Creating Edit Save Changes Saving Changes... An error occurred while loading . Select an option... Cancel wizard Search for an endpoint by name... No endpoints found for this application. Launch Endpoint Wizard ARIA label for the creation wizard when no entity singular is provided. Create New Entity Header for the creation wizard when no entity singular is provided. ... The message shown while a form is being submitted. Query Event query using the AKQL syntax. See documentation for examples. Access Checking with New Provider... with Existing Provider... Select one or more backchannel providers... Device Select one or more groups... Select one or more roles... Select one or more permissions... Avatar for Username: Display name: Dialog content Require Flow token (flow can only be executed from a generated recovery link) Select the type of policy you want to create. Bind Existing... Select a type to bind an existing object instead of creating a new one. Bind a user Statically bind an existing user. Bind a group Statically bind an existing group. Bind an existing policy Bind an existing policy. Create or bind... Select the type of stage you want to create. Existing Stage Bind an existing stage to this flow. Deactivating... Activating... Unknown user Review Deactivation Review Activation Objects Related object Connection will be deleted Reference will be reset to default value Reference will be set to an empty value will be left dangling (may cause errors) has an unknown relationship (check logs) has an unrecognized relationship (check logs) Failed to delete Modify Modifying Unnamed object List of objects that are associated with this . Object Name Consequence Details will be deleted Consequence of deletion, when the related object will also be deleted. The name of the related object will be included, in the format 'Related object will be deleted'. Unknown user Placeholder for an unknown user, in the format 'Unknown user'. is associated with objects. Plural: N objects use this entity. is associated with one object. Singular: exactly one object uses this entity. No found. The message to show when a table has no content. The placeholder {0} is replaced with the pluralized name of the type of entity being shown in the table. () The user's name in parentheses, used when the name is different from the username () Used in list item, showing the name of the object and the consequence of deletion. is not associated with any objects. Zero: no objects use this entity. Authorization Code Implicit Hybrid Refresh token Client credentials Device-code Grant Types Grant types this provider may use. vCenter Altered behavior for usage with VMware vCenter. EntityID/Issuer override Sets a custom EntityID/Issuer to override the authentik generated default. Passwords Setting Type a new password... When enabled, your username will be remembered on this device for future logins. ... The message shown while a form is being submitted, when no entity name is provided. Account lockdown flow Select an account lockdown flow... Flow used when a user triggers account lockdown (e.g. in case of compromise). Should contain an Account Lockdown stage. Account lockdown flows should require authentication so they can only be started from a signed-in session. If no group is selected and 'Send notification to event user' is disabled, the rule is disabled. When enabled, notification will be sent to the user that triggered the event in addition to any users in the group above. The event user will always be the first user, to send a notification only to the event user enabled 'Send once' in the notification transport. Minimum reviewers Minimum reviewers is per-group The following reviews apply to this object: This object has no reviews yet. Rule This stage executes account lockdown actions on a target user. Configure which actions to perform when this stage runs. Deactivate user Deactivate the user account (set is_active to False). Set unusable password Set an unusable password for the user. Delete sessions Delete all active sessions for the user. Revoke tokens Revoke all tokens for the user (API, app password, recovery, verification). Self-service completion Configure what happens after a user locks their own account. Since all sessions are deleted, the user cannot continue in the current flow and will be redirected to a separate completion flow. Completion flow Select a completion flow... Flow to redirect users to after self-service lockdown. This flow must not require authentication since the user's session is deleted. Alert (Info): Static alert box with info styling Alert (Warning): Static alert box with warning styling Alert (Danger): Static alert box with danger styling Warning: You are about to delete user , but you are currently logged in as this user. Proceed at your own risk. Account Lockdown Security If you suspect your account has been compromised, you can immediately lock it to prevent unauthorized access. Lock my account Bind existing group/user Leave empty to skip certificate validation, or select a certificate/keypair containing the LDAP server CA chain to validate the remote certificate. Choose Policy Type Negate Result Failure Result Device Classes User Fields No preference: the browser may offer any available authenticator Platform: a non-removable authenticator built into the device, such as Touch ID, Face ID, or Windows Hello Cross-platform: a roaming authenticator, such as a YubiKey or Google Titan Controls the authenticatorAttachment parameter sent to the browser during WebAuthn registration. If Hints are configured and this is left as 'No preference', a value is inferred from the selected hints for backward compatibility with older browsers. New Invitation Enrollment Flow Invitation Details Blueprint validation failed Flow with slug "" not found after import Enrolled users are created as external (e.g. customers, guests). New users will be placed under users/external. Enrolled users are created as internal (e.g. employees). New users will be placed under users/internal. If enabled, the stage will jump to the next stage when no invitation is given. If disabled, the flow will be cancelled without a valid invitation. Redirect the user to a static URL or another flow, optionally with all gathered context. The element could not be loaded. This may be due to a missing import or a version mismatch. An element could not be loaded. Please try refreshing the page or clearing your cache. Failed to load element SAML Endpoint SAML provider endpoint. Use this URL for SP configuration. Throttling settings Email OTP throttling factor SMS OTP throttling factor TOTP throttling factor Static OTP throttling factor View Credentials OAuth (Silent) OAuth (Interactive) Authenticate SCIM requests using OAuth, interactively authorized. OAuth Token last updated OAuth Token expires OAuth Status Authenticated No token saved (Re-)authenticate OAuth Callback URL The name displayed in the Application Dashboard. If checked, the launch URL will open in a new browser tab or window from the user's Application Dashboard. Hide from Application Dashboard If checked, this application will not be shown on the user's Application Dashboard. The publisher is shown in the Application Dashboard. The description is shown in the Application Dashboard and may provide additional information about the application to end users. You've logged out of . You can log out of your authentik account. You've logged out of . Application Dashboard View details of role "" New Stage Choose type Generic label for the initial step in the creation wizard where the type of the entity being created is selected, used when no singular entity name is provided. Choose Type Label for the initial step in the creation wizard where the type of the entity being created is selected. The placeholder {entity} is replaced with the singular name of the entity, for example 'Choose User Type' or 'Choose Group Type'. Details Label for the step in the creation wizard where the details of the entity being created are filled in. The placeholder {entity} is replaced with the name of the entity type, for example 'User Details' or 'Group Details'. Flags allow you to enable new functionality and behavior in authentik early. Cap Endpoint https://cap.example.com/site-key/ For Cap, prefer the self-hosted widget asset, for example https://cap.example.com/assets/widget.js. If using a CDN, pin a reviewed release. Cap's server-side verification endpoint, for example https://cap.example.com/site-key/siteverify. Request Content Type Content-Type used for server-side verification. Cap requires JSON; most other providers use form-encoded requests. Form encoded JSON Cap Cap is a self-hostable CAPTCHA server that uses proof-of-work challenges. Cap documentation The public site-key endpoint of your Cap server. Description for Cap endpoint field. Use the to self-host Cap and configure the endpoint. Supplementary help text with link to Cap documentation. Connection Token Connection Tokens Access Token Access Tokens Refresh Token Refresh Tokens Unknown action Custom action Unknown user type object objects Consents Reputation score New Wizard ARIA label for the creation wizard, where the entity singular is interpolated. token for Description for a clipboard copy action for tokens, with the token intent and username as variables. No found. Empty state message when no objects are found, where the entity plural is interpolated. No matches "" Empty state message when no objects match the search query, where the entity singular is interpolated, followed by the search query truncated to 50 characters. Create New Header for the creation wizard, where the entity singular is interpolated. Copy token Label for a button that copies a token to the clipboard. Token Label for a token entity, used in clipboard copy success messages. Search for ... Placeholder text for the search input, where the entity plural is interpolated. Waiting for dependencies 0: Too guessable: risky password. (guesses < 10^3) 1: Very guessable: protection from throttled online attacks. (guesses < 10^6) 2: Somewhat guessable: protection from unthrottled online attacks. (guesses < 10^8) 3: Safely unguessable: moderate protection from offline slow-hash scenario. (guesses < 10^10) 4: Very unguessable: strong protection from offline slow-hash scenario. (guesses >= 10^10) Unset Successfully created Successfully updated Unknown Field Unknown Field Created Changes Saved Open "" Screen reader label for the application list row The message shown after a form is successfully submitted. Switch to list view Tooltip on the library view toggle when grid view is active Switch to grid view Tooltip on the library view toggle when list view is active This user does not have an email address, so authentik cannot email a recovery link. Add an email address to enable email recovery. This brand does not have a recovery flow, so recovery links cannot be created. Configure a recovery flow in the brand settings to enable recovery. No notes. Enrollment Flows Successfully created enrollment flow with invitation stage. Type a name for the new enrollment flow... Flow Slug Internal flow name used in URLs. e.g. my-enrollment-flow Invitation Stage Name Type a name for the stage... Select an enrollment flow. e.g. my-invite Create a new enrollment flow with invitation stage... The enrollment flow the invitation link will use. The flow should have an invitation stage bound to it for the invitation to be accepted. Invitation Stage Invitation Stages e.g. invitation-stage Token exchange Issuer override Also known as Entity ID. Defaults to the Metadata URL. Object Attribute Object Attributes Successfully updated attribute. Successfully created attribute. Type a human-readable name... Human-readable name of this attribute. Unique identifier per object type, which is used as a key in the attributes field. Type an optional group identifier... Optional grouping for this attribute in forms. When checked, attribute will be shown in forms for the selected object type. Text Boolean Validation Attribute is required Value of the attribute cannot be empty. Attribute is unique Value of the attribute must be unique across all instances of the selected object type. RegEx Enter an optional Regular Expression for validation... Optional RegEx to validate any value against. Uses the Python RegEx engine. Object attributes Object Attribute(s) New Attribute User Count Exceeded Internal user usage External user usage Allow application access with no policies Applications with no policies bound can be accessed by any user.. Expiring today Expiring in SAML 1.1 (required by Microsoft Entra ID / ADFS) SAML 2.0 SAML assertion version Microsoft Entra ID and classic ADFS-style relying parties typically require SAML 1.1. Base URL Configure the base URL under which this authentik instance is reachable, e.g. https://authentik.company. Do not include any path component (for example, /authentik). Sync Group Hierarchy Sync group hierarchy from LDAP directories. Additional Parent Group Dismiss banner Configure it in the system settings The base URL has not been configured. All Search for an offboarding by username... User Offboardings Scheduled deactivation or deletion of users, and their outcomes. Only show pending offboardings Scheduled for Scheduled by Offboarding(s) canceled Cancel Offboardings Cancel Offboarding Pending Offboardings Hide managed Managed Yes No Successfully cancelled offboarding. Failed to cancel offboarding Cancel offboarding Cancel scheduled offboarding The following scheduled offboarding will be cancelled: Offboarding scheduled for Cancel Offboarding Schedule Schedule Offboarding Schedule Offboarding User Offboarding User Offboardings Successfully scheduled offboarding. Action Deactivate Lock the user out of authentik without removing their account. Delete Permanently delete the user's account. Scheduled for The offboarding runs on the next scheduled check after this time (within a few minutes). Revoke sessions Revoke all of the user's sessions when offboarding. Revoke tokens Revoke all of the user's tokens when offboarding. User was offboarded Request rules Configure rules which grant users the ability to request access to this app. Request flow Select a request flow... Default flow used by users requesting access. Fulfill request Submit Requester Fulfiller Approved Denied Data Revoked Access Requests Apps Requester Data Targets Fulfill Successfully revoked grant Failed to revoke grant Revoke Revoke grant Are you sure you want to revoke this grant? Access will be removed immediately. Entitlement(s) Request rule binding(s) Bind existing rule These bindings control which users/groups can request access to this object. No request rules bound. No request rules are currently bound to this object. Request rule actions Request Rule Binding Request Rule Bindings Pending expiry How long a request against this binding stays pending before it automatically lapses if not approved or denied. Maximum granted expiry The maximum duration a grant approved against this binding can last. Requesters may ask for less, but never more. Additional entitlements Available entitlements Granted entitlements Application entitlements granted alongside access to this object when a request is approved. Everyone who can approve Only individually-selected reviewers A random subset (of size “minimum reviewers”) of everyone who can approve Request Rule Request Rules Type a name for this request rule... Number of reviewers that must approve the request before it is granted. Notify Who to notify when a request is created against this rule. Optional flow to use when a user requests access to a target bound to this rule. Select which transports should be used to notify reviewers. If none are selected, the notification will only be shown in the authentik UI. Search for a request rule by name... Define who can approve access requests for the objects these rules are bound to. Bound to Request rule(s) object(s) These bindings control which users/groups can approve requests. Access request created Access request approved Access request denied Access request revoked Show all schedules Show all tasks Standalone Include successful tasks Discover Requests to review: Access requests Browse My Requests For My Review Nothing available to request. There's currently nothing you're eligible to request access to. Requestable applications Requested Successfully cancelled request Failed to cancel request Cancel request Are you sure you want to cancel this pending request? No requests yet. Requests you've made for access will show up here. Nothing to review. Requests waiting on your approval will show up here. Search for an entitlement... No entitlements found for this application. Select entitlement Entitlement Requestor notes When enabled, fulfilling the request requires at least that many reviewers from each of the reviewer groups bound to this rule. When disabled, the value is a total across all reviewer groups. Unknown Grant type Dynamic Client Registration Successfully updated Dynamic Client Registration. Successfully enabled Dynamic Client Registration. Default application group Group assigned to automatically created applications. Override authorization flow Authorization flow applied to dynamically registered clients. When not selected, authorization flow of the parent provider is used. Override invalidation flow Invalidation flow applied to dynamically registered clients. When not selected, authorization flow of the parent provider is used. Override property mappings Access token validity Maximum access token validity for registered clients. Refresh token validity Maximum refresh token validity for registered clients. Allowed grant types If none are selected, all grant types are allowed. Dynamic Client Registration is not enabled. Allow OAuth2/OIDC clients to register themselves against this provider (RFC 7591). Enable Dynamic Client Registration Dynamic application policies Bindings configured here will be copied to dynamically registered applications. If no bindings are created, bindings of this providers' application are copied. User switch flow Select a user switch flow... Authentication flow used when switching between users signed in on the same browser. If left empty, user switching is disabled. Switch user Add another user Sign out current user Map tiles Vector tile source for the events map. Accepts a pmtiles:// archive URL or an XYZ template such as /tiles/{z}/{x}/{y}.mvt. Leave empty to use the bundled basemap, which needs no tile server. This URL is served to unauthenticated clients along with the rest of the brand, so avoid tile providers that carry an API key in the URL. Login Failed login Logout Authorize Application Other Adding Enable automatic discovery of remote resources. Scope mappings applied to dynamically registered clients. When not selected, scope mappings of the parent provider are used. Dynamic Client Registration URL Successfully deleted Dynamic Client Registration configuration Failed to delete Dynamic Client Registration configuration Delete Dynamic Client Registration configuration Are you sure you want to delete the Dynamic Client Registration configuration for this provider? No new clients will be able to register themselves, existing clients will not be removed. Define who can approve access requests for the objects this rule is bound to. New Request Rule Create a new request rule to bind to this object. Existing Request Rule Bind an existing request rule to this object. Mirror The agent has exactly the parent user's access, evaluated live. Copy Copy the parent's policy bindings onto the agent. None The agent uses only its own policy bindings. Agent Agents Close Successfully created agent. Parent user The user this agent acts on behalf of. Optional display name. Defaults to the parent user's name. Policy behavior How the agent's access relates to its parent user. Whether this agent should be automatically removed once it expires. Use the token below to authenticate as this agent. It is shown only once — store it now. Token Search for a agent... Admin-provisioned delegate identities that access can be requested and granted for, separately from their parent user. Parent Agent(s) Are you sure you want to deactivate ? Are you sure you want to activate ? Name Expires Actions Agent(s) Delete - Agent Delete Copy value Agent Agents Create Create Successfully created agent. Label Optional display name for this agent. This agent mirrors your access: it can act on exactly the applications you can, and never more. No agents. Create Agent Create Agent Create expiring agent identities and hand their token to a harness so it can act on your behalf via the API. Select File Type an optional file name without an extension... Custom Name Leave empty to keep the original filename. List of CIDRs (comma-separated) that clients can connect from. A more specific CIDR will match before a looser one. Clients connecting from a non-specified CIDR will be dropped. Upload file Select a file or enter a value... Choose an existing file, or enter a URL or Font Awesome icon. Supported values Valid file names can contain letters, numbers, dots, hyphens, underscores, slashes, and placeholders such as . Validation message for file name input. The placeholders are displayed as code elements. Valid file names can contain letters, numbers, dots, hyphens, underscores, slashes, and placeholders such as . Validation message for file name input. The placeholders are displayed as plain text. Object Attributes are in preview. Resume on matching failures Resume this flow for the selected source matching failures. No source connection is created. Missing property Stage Name Type a name for this stage... Show arbitrary input fields to the user, for example during enrollment. Data is saved in the flow context under the prompt_data variable.