Account and running it · Chapter 27
For operators
The first account is the operator's. For them there is a tab of its own under Settings, Server, which members do not see. In it you find Accounts, Sign-in, Public pages, API, Files, Shape packages, Backups, Languages and Log.
Accounts
Here you use Invite into nexcanvas to invite people without a space and see the open invitations. Below that is every account with the number of its spaces. For each account you can Make operator or make member, use New password to create a random new password that is shown once, remove a lost second factor, sign the account out everywhere, Block it or delete it. A blocked account no longer gets in: open sessions and boards close at once, its API tokens stop answering, and it is no longer offered for teams and invitations. Unblock works at any time. Its boards stay in their spaces.
As the operator you see and manage every space with its boards, also one where you have no right of your own. Under All spaces every space is listed with its managers; with Rights you change them, say when the only manager has left. When you change rights in a space you are not in, the members get a message. Under Settings, Spaces, Spaces in the bin you see every deleted space and bring it back. Through an API token this does not apply; there only your own rights count.
You make teams under Settings, Teams, see Spaces and members.
For invitations by mail you also enter your mail server here, with server and port, encryption, user, password and sender, and send a test mail. Without a mail server, the link to copy is enough.
Sign-in
- Sign-in with password can be switched off, and then members only sign in through the provider. You yourself can always use your password.
- Require a second factor forces everyone to set one up. Switch on your own first.
- OpenID Connect: Issuer, Client ID, Client secret and the Name on the button. The Redirect address for the provider sits next to it, ready to copy. With New people get an account, people nobody has invited may come in too; it is off by default.
- authentik in one step: Enter the address of authentik and an API token, click Set up, and nexcanvas creates the provider and application itself. The token is only used for that and is not stored. If you would rather import it yourself, use Download blueprint instead.
- Public address: the address at which nexcanvas can be reached, for invitation links, public pages and the return trip from the sign-in provider.
Public pages, API and files
Allow public pages and Accounts may make API tokens are off by default. Under API you also see every token and can block it. Under Files you use Largest file (MB) to lower the limit for uploads and decide whether nexcanvas takes place and device out of photos.
Languages
Download template gives you all the texts in English as a JSON file. Translate it, enter a Language code such as es or pt-BR and click Upload language. Whatever is missing from your file, nexcanvas shows in English.
Log
The log has four levels: Quiet, Normal, Detailed and Everything. The two detailed ones switch themselves off again after the time you chose. You can search in it, download it and clear it. The content of boards, passwords and keys are never in it.
Cora saysWith NEXCANVAS_OPERATOR_NETWORKS, the server settings can only be changed from your own network. How that works is under Self-host.