Polkit restriction settings for machine1 19.02.2024

This commit is contained in:
Анна Фомина 2024-02-19 18:03:01 +04:00 committed by Valentin Sokolov
parent cb8a052e03
commit d4490db564
4 changed files with 66 additions and 113 deletions

View File

@ -163,7 +163,7 @@
<supportedOn ref="system:SUPPORTED_AltP10" />
<elements>
<enum id="OrgFreedesktopMachine_setter" valueName="org.freedesktop.machine1.host-open-pty" required="true">
<item displayName="$(string.org-freedesktop-modemmanager-No)">
<item displayName="$(string.org-freedesktop-machine-No)">
<value>
<string>No</string>
</value>
@ -493,7 +493,7 @@
<string>No</string>
</value>
</item>
<item displayName="$(string.org-freedesktop-mmachine-Yes)">
<item displayName="$(string.org-freedesktop-machine-Yes)">
<value>
<string>Yes</string>
</value>
@ -759,5 +759,6 @@
</item>
</enum>
</elements>
</policy>
</policies>
</policyDefinitions>

View File

@ -85,6 +85,8 @@
<string id="ALT_ModemManagerPolkit_Help">ModemManager service settings</string>
<string id="ALT_RealmdPolkit">Realmd permissions</string>
<string id="ALT_RealmdPolkit_Help">Realmd permissions management</string>
<string id="ALT_MachinePolkit">Machine permissions</string>
<string id="ALT_MachinePolkit_Help">Machine permissions management</string>
<string id="ALT_LoginPolkit">Login permissions</string>
<string id="ALT_LoginPolkit_Help">Login permissions management</string>
</stringTable>

View File

@ -1,13 +1,13 @@
<?xml version="1.0" encoding="utf-8"?>
<!-- (c) 2023 BaseALT, Ltd. -->
<policyDefinitionResources xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" xmlns="http://schemas.microsoft.com/GroupPolicy/2006/07/PolicyDefinitions" revision="1.0" schemaVersion="1.0">
<displayName>Defining ModemManager policies of the Alt operating system</displayName>
<description> This file contains policy definitions for managing the ModemManager service in the Alt operating system.</description>
<displayName>ALT polkit-policies definitions of Machine</displayName>
<description>This file contains the Machine service polkit-policies definitions used by ALT operating system.</description>
<resources>
<stringTable>
<string id="org-freedesktop-ModemManager1-Contacts">Restrict the ability to add, modify, or delete device contacts</string>
<string id="org-freedesktop-ModemManager1-Contacts_help">The policy manages the restriction on the ability to add, modify and delete mobile broadband contacts
<string id="org-freedesktop-machine1-host-login">Permission to log into the local host</string>
<string id="org-freedesktop-machine1-host-login_help">The policy restricts the ability to log into the local host
Disabled/Unconfigured — restrictions are defined by system parameters.
@ -32,8 +32,8 @@ Note: the possession of administrative rights in a PolicyKit context is determin
The "Block" option prevents the user from changing this setting. Blocking a policy makes it a priority over a similar policy for the user.
</string>
<string id="org-freedesktop-ModemManager1-Contacts-user">Restrict the ability to add, modify, or delete device contacts</string>
<string id="org-freedesktop-ModemManager1-Contacts-user_help">The policy manages the restriction on the ability to add, modify and delete mobile broadband contacts
<string id="org-freedesktop-machine1-host-login-user">Permission to log into the local host</string>
<string id="org-freedesktop-machine1-host-login-user_help">The policy restricts the ability to log into the local host
Disabled/Unconfigured — restrictions are defined by system parameters.
@ -56,8 +56,8 @@ Possible values:
Note: the possession of administrative rights in a PolicyKit context is determined by its rules. By default, Alt asks for the password of a user in the "wheel" group.
</string>
<string id="org-freedesktop-ModemManager1-Control">The policy restricts the ability to manage the Modem Manager daemon</string>
<string id="org-freedesktop-ModemManager1-Control_help">The policy restricts the ability to control the Modem Manager
<string id="org-freedesktop-machine1-host-open-pty">Permission to acquire a pseudo TTY on the local host</string>
<string id="org-freedesktop-machine1-host-open-pty_help">The policy restricts the ability to acquire a pseudo TTY on the local host
Disabled/Unconfigured — restrictions are defined by system parameters.
@ -82,8 +82,8 @@ Note: the possession of administrative rights in a PolicyKit context is determin
The "Block" option prevents the user from changing this setting. Blocking a policy makes it a priority over a similar policy for the user.
</string>
<string id="org-freedesktop-ModemManager1-Control-user">The policy restricts the ability to manage the Modem Manager daemon</string>
<string id="org-freedesktop-ModemManager1-Control-user_help">The policy restricts the ability to control the Modem Manager
<string id="org-freedesktop-machine1-host-open-pty-user">Permission to acquire a pseudo TTY on the local host</string>
<string id="org-freedesktop-machine1-host-open-pty-user_help">The policy restricts the ability to acquire a pseudo TTY on the local host
Disabled/Unconfigured — restrictions are defined by system parameters.
@ -106,8 +106,8 @@ Possible values:
Note: the possession of administrative rights in a PolicyKit context is determined by its rules. By default, Alt asks for the password of a user in the "wheel" group.
</string>
<string id="org-freedesktop-ModemManager1-Device-Control">Restricting the ability to blocking and control a mobile broadband device</string>
<string id="org-freedesktop-ModemManager1-Device-Control_help">The policy restricts the ability to control the Modem Manager
<string id="org-freedesktop-machine1-host-shell">Permission to acquire a shell on the local host</string>
<string id="org-freedesktop-machine1-host-shell_help">The policy restricts the ability to acquire a shell on the local host
Disabled/Unconfigured — restrictions are defined by system parameters.
@ -132,8 +132,8 @@ Note: the possession of administrative rights in a PolicyKit context is determin
The "Block" option prevents the user from changing this setting. Blocking a policy makes it a priority over a similar policy for the user.
</string>
<string id="org-freedesktop-ModemManager1-Device-Control-user">Restricting the ability to blocking and control a mobile broadband device</string>
<string id="org-freedesktop-ModemManager1-Device-Control-user_help">The policy restricts the ability to control the Modem Manager
<string id="org-freedesktop-machine1-host-shell-user">Permission to acquire a shell on the local host</string>
<string id="org-freedesktop-machine1-host-shell-user_help">The policy restricts the ability to acquire a shell on the local host
Disabled/Unconfigured — restrictions are defined by system parameters.
@ -156,8 +156,8 @@ Possible values:
Note: the possession of administrative rights in a PolicyKit context is determined by its rules. By default, Alt asks for the password of a user in the "wheel" group.
</string>
<string id="org-freedesktop-ModemManager1-Firmware">Restricting the ability to control the firmware of a mobile broadband device</string>
<string id="org-freedesktop-ModemManager1-Firmware_help">The policy restricts the ability to control the firmware of this device
<string id="org-freedesktop-machine1-login">Permission to log into a local container</string>
<string id="org-freedesktop-machine1-login_help">The policy restricts the ability to log into a local container
Disabled/Unconfigured — restrictions are defined by system parameters.
@ -182,8 +182,8 @@ Note: the possession of administrative rights in a PolicyKit context is determin
The "Block" option prevents the user from changing this setting. Blocking a policy makes it a priority over a similar policy for the user.
</string>
<string id="org-freedesktop-ModemManager1-Firmware-user">Restricting the ability to control the firmware of a mobile broadband device</string>
<string id="org-freedesktop-ModemManager1-Firmware-user_help">The policy restricts the ability to control the firmware of this device
<string id="org-freedesktop-machine1-login-user">Permission to log into a local container</string>
<string id="org-freedesktop-machine1-login-user_help">The policy restricts the ability to log into a local container
Disabled/Unconfigured — restrictions are defined by system parameters.
@ -206,8 +206,8 @@ Possible values:
Note: the possession of administrative rights in a PolicyKit context is determined by its rules. By default, Alt asks for the password of a user in the "wheel" group.
</string>
<string id="org-freedesktop-ModemManager1-Location">Restricted ability to view geographic and positioning information</string>
<string id="org-freedesktop-ModemManager1-Location_help">The policy restricts the ability to view geographic location information
<string id="org-freedesktop-machine1-manage-images">Permission to manage local virtual machine and container images</string>
<string id="org-freedesktop-machine1-manage-images_help">The policy restricts the ability to manage local virtual machine and container images
Disabled/Unconfigured — restrictions are defined by system parameters.
@ -232,8 +232,8 @@ Note: the possession of administrative rights in a PolicyKit context is determin
The "Block" option prevents the user from changing this setting. Blocking a policy makes it a priority over a similar policy for the user.
</string>
<string id="org-freedesktop-ModemManager1-Location-user">Restricted ability to view geographic and positioning information</string>
<string id="org-freedesktop-ModemManager1-Location-user_help">The policy restricts the ability to view geographic location information
<string id="org-freedesktop-machine1-manage-images-user">Permission to manage local virtual machine and container images</string>
<string id="org-freedesktop-machine1-manage-images-user_help">The policy restricts the ability to manage local virtual machine and container images
Disabled/Unconfigured — restrictions are defined by system parameters.
@ -256,8 +256,8 @@ Possible values:
Note: the possession of administrative rights in a PolicyKit context is determined by its rules. By default, Alt asks for the password of a user in the "wheel" group.
</string>
<string id="org-freedesktop-ModemManager1-Messaging">Restrict the ability to send, save, modify and delete text messages</string>
<string id="org-freedesktop-ModemManager1-Messaging_help">The policy restricts the ability to send or manipulate text messages to the device
<string id="org-freedesktop-machine1-manage-machines">Permission to manage local virtual machines and containers</string>
<string id="org-freedesktop-machine1-manage-machines_help">The policy restricts the ability to manage local virtual machines and containers
Disabled/Unconfigured — restrictions are defined by system parameters.
@ -282,8 +282,8 @@ Note: the possession of administrative rights in a PolicyKit context is determin
The "Block" option prevents the user from changing this setting. Blocking a policy makes it a priority over a similar policy for the user.
</string>
<string id="org-freedesktop-ModemManager1-Messaging-user">Restrict the ability to send, save, modify and delete text messages</string>
<string id="org-freedesktop-ModemManager1-Messaging-user_help">The policy restricts the ability to send or manipulate text messages to the device
<string id="org-freedesktop-machine1-manage-machines-user">Permission to manage local virtual machines and containers</string>
<string id="org-freedesktop-machine1-manage-machines-user_help">The policy restricts the ability to manage local virtual machines and containers
Disabled/Unconfigured — restrictions are defined by system parameters.
@ -306,8 +306,8 @@ Possible values:
Note: the possession of administrative rights in a PolicyKit context is determined by its rules. By default, Alt asks for the password of a user in the "wheel" group.
</string>
<string id="org-freedesktop-ModemManager1-Time">Restrict the ability to request network time and time zone information</string>
<string id="org-freedesktop-ModemManager1-Time_help">The policy restricts the ability to request network time information
<string id="org-freedesktop-machine1-open-pty">Permission to acquire a pseudo TTY in a local container</string>
<string id="org-freedesktop-machine1-open-pty_help">The policy restricts the ability to acquire a pseudo TTY in a local container
Disabled/Unconfigured — restrictions are defined by system parameters.
@ -332,8 +332,8 @@ Note: the possession of administrative rights in a PolicyKit context is determin
The "Block" option prevents the user from changing this setting. Blocking a policy makes it a priority over a similar policy for the user.
</string>
<string id="org-freedesktop-ModemManager1-Time-user">Restrict the ability to request network time and time zone information</string>
<string id="org-freedesktop-ModemManager1-Time-user_help">The policy restricts the ability to request network time information
<string id="org-freedesktop-machine1-open-pty-user">Permission to acquire a pseudo TTY in a local container</string>
<string id="org-freedesktop-machine1-open-pty-user_help">The policy restricts the ability to acquire a pseudo TTY in a local container
Disabled/Unconfigured — restrictions are defined by system parameters.
@ -356,8 +356,8 @@ Possible values:
Note: the possession of administrative rights in a PolicyKit context is determined by its rules. By default, Alt asks for the password of a user in the "wheel" group.
</string>
<string id="org-freedesktop-ModemManager1-USSD">Restrict the ability to request and use network information and services</string>
<string id="org-freedesktop-ModemManager1-USSD_help">The policy restricts the ability to request or use network information and service
<string id="org-freedesktop-machine1-shell">Permission to acquire a shell in a local container</string>
<string id="org-freedesktop-machine1-shell_help">The policy restricts the ability to acquire a shell in a local container
Disabled/Unconfigured — restrictions are defined by system parameters.
@ -382,58 +382,8 @@ Note: the possession of administrative rights in a PolicyKit context is determin
The "Block" option prevents the user from changing this setting. Blocking a policy makes it a priority over a similar policy for the user.
</string>
<string id="org-freedesktop-ModemManager1-USSD-user">Restrict the ability to request and use network information and services</string>
<string id="org-freedesktop-ModemManager1-USSD-user_help">The policy restricts the ability to request or use network information and service
Disabled/Unconfigured — restrictions are defined by system parameters.
Enabled — restriction with defined rights;
Possible values:
"No" — set restriction with action denial (user is not allowed to perform the action);
"Yes" — remove the restriction (the user can perform the action without any authentication);
"Auth_self" — the user must enter his/her password for authentication. Note, this level of restriction is not sufficient for most multi-user applications, "Auth_admin" is usually recommended;
"Auth_admin" — the user must enter the administrator password at each request. Requires authentication of the user with administrator privileges;
"Auth_self_keep" — similar to "Auth_self", but authorization is maintained for a short period of time (e.g., five minutes). Note, this level of restriction is insufficient for most multi-user applications, "Auth_admin_keep" is generally recommended;
"Auth_admin_keep" — similar to "Auth_admin", but authorization is maintained for a short period of time (e.g., five minutes);
Note: the possession of administrative rights in a PolicyKit context is determined by its rules. By default, Alt asks for the password of a user in the "wheel" group.
</string>
<string id="org-freedesktop-ModemManager1-Voice">Restricting the ability to receive incoming voice calls or start an outgoing voice call</string>
<string id="org-freedesktop-ModemManager1-Voice_help">The policy restricts the ability to make voice calls
Disabled/Unconfigured — restrictions are defined by system parameters.
Enabled — restriction with defined rights;
Possible values:
"No" — set restriction with action denial (user is not allowed to perform the action);
"Yes" — remove the restriction (the user can perform the action without any authentication);
"Auth_self" — the user must enter his/her password for authentication. Note, this level of restriction is not sufficient for most multi-user applications, "Auth_admin" is usually recommended;
"Auth_admin" — the user must enter the administrator password at each request. Requires authentication of the user with administrator privileges;
"Auth_self_keep" — similar to "Auth_self", but authorization is maintained for a short period of time (e.g., five minutes). Note, this level of restriction is insufficient for most multi-user applications, "Auth_admin_keep" is generally recommended;
"Auth_admin_keep" — similar to "Auth_admin", but authorization is maintained for a short period of time (e.g., five minutes);
Note: the possession of administrative rights in a PolicyKit context is determined by its rules. By default, Alt asks for the password of a user in the "wheel" group.
The "Block" option prevents the user from changing this setting. Blocking a policy makes it a priority over a similar policy for the user.
</string>
<string id="org-freedesktop-ModemManager1-Voice-user">Restricting the ability to receive incoming voice calls or start an outgoing voice call</string>
<string id="org-freedesktop-ModemManager1-Voice-user_help">The policy restricts the ability to make voice calls
<string id="org-freedesktop-machine1-shell-user">Permission to acquire a shell in a local container</string>
<string id="org-freedesktop-machine1-shell-user_help">The policy restricts the ability to acquire a shell in a local container
Disabled/Unconfigured — restrictions are defined by system parameters.
@ -458,21 +408,21 @@ Note: the possession of administrative rights in a PolicyKit context is determin
</string>
<string id="org-freedesktop-modemmanager-No">No</string>
<string id="org-freedesktop-modemmanager-Yes">Yes</string>
<string id="org-freedesktop-modemmanager-Auth-self">Auth_self</string>
<string id="org-freedesktop-modemmanager-Auth-admin">Auth_admin</string>
<string id="org-freedesktop-modemmanager-Auth-self-keep">Auth_self_keep</string>
<string id="org-freedesktop-modemmanager-Auth-admin-keep">Auth_admin_keep</string>
<string id="org-freedesktop-machine-No">No</string>
<string id="org-freedesktop-machine-Yes">Yes</string>
<string id="org-freedesktop-machine-Auth-self">Auth_self</string>
<string id="org-freedesktop-machine-Auth-admin">Auth_admin</string>
<string id="org-freedesktop-machine-Auth-self-keep">Auth_self_keep</string>
<string id="org-freedesktop-machine-Auth-admin-keep">Auth_admin_keep</string>
</stringTable>
<presentationTable>
<presentation id="org-freedesktop-ModemManager1-pr">
<dropdownList noSort="true" defaultItem="1" refId="OrgFreedesktopModemManager_setter">Restriction options for the ModemManager service:</dropdownList>
<checkBox refId="OrgFreedesktopModemManager_blocker">Block</checkBox>
<presentation id="org-freedesktop-Machine1-pr">
<dropdownList noSort="true" defaultItem="1" refId="OrgFreedesktopMachine_setter">Restriction Options:</dropdownList>
<checkBox refId="OrgFreedesktopMachine_blocker">Block</checkBox>
</presentation>
<presentation id="org-freedesktop-ModemManager1-user-pr">
<dropdownList noSort="true" defaultItem="1" refId="OrgFreedesktopModemManager_setter">Restriction options for the ModemManager service:</dropdownList>
<presentation id="org-freedesktop-Machine1-user-pr">
<dropdownList noSort="true" defaultItem="1" refId="OrgFreedesktopMachine_setter">Restriction Options:</dropdownList>
</presentation>
</presentationTable>
</resources>

View File

@ -57,7 +57,7 @@
</string>
<string id="org-freedesktop-machine1-host-open-pty">Ограничение возможности получения псевдотелетайпа (TTY) на локальном хосте</string>
<string id="org-freedesktop-machine1-host-open-pty_help">Политика ограничивает возможность получения псевдотелетайпа (TTY) на локальном хосте
<string id="org-freedesktop-machine1-host-open-pty_help">Политика управляет ограничением возможности получения псевдотелетайпа (TTY) на локальном хосте
Отключено/Не сконфигурировано — ограничения определяются системными параметрами.
@ -83,7 +83,7 @@
</string>
<string id="org-freedesktop-machine1-host-open-pty-user">Ограничение возможности получения псевдотелетайпа (TTY) на локальном хосте</string>
<string id="org-freedesktop-machine1-host-open-pty-user_help">Политика ограничивает возможность получения псевдотелетайпа (TTY) на локальном хосте
<string id="org-freedesktop-machine1-host-open-pty-user_help">Политика управляет ограничением возможности получения псевдотелетайпа (TTY) на локальном хосте
Отключено/Не сконфигурировано — ограничения определяются системными параметрами.
@ -107,7 +107,7 @@
</string>
<string id="org-freedesktop-machine1-host-shell">Ограничение возможности получения интерпретатора командной строки (командной оболочки) на локальном хосте</string>
<string id="org-freedesktop-machine1-host-shell_help">Политика ограничивает возможность получения интерпретатора командной строки (командной оболочки) на локальном хосте
<string id="org-freedesktop-machine1-host-shell_help">Политика управляет ограничением возможности получения интерпретатора командной строки (командной оболочки) на локальном хосте
Отключено/Не сконфигурировано — ограничения определяются системными параметрами.
@ -133,7 +133,7 @@
</string>
<string id="org-freedesktop-machine1-host-shell-user">Ограничение возможности получения интерпретатора командной строки (командной оболочки) на локальном хосте</string>
<string id="org-freedesktop-machine1-host-shell-user_help">Политика ограничивает возможность получения интерпретатора командной строки (командной оболочки) на локальном хосте
<string id="org-freedesktop-machine1-host-shell-user_help">Политика управляет ограничением возможности получения интерпретатора командной строки (командной оболочки) на локальном хосте
Отключено/Не сконфигурировано — ограничения определяются системными параметрами.
@ -157,7 +157,7 @@
</string>
<string id="org-freedesktop-machine1-login">Ограничение возможности авторизации в локальном контейнере</string>
<string id="org-freedesktop-machine1-login_help">Политика ограничивает возможность авторизации в локальном контейнере
<string id="org-freedesktop-machine1-login_help">Политика управляет ограничением возможности авторизации в локальном контейнере
Отключено/Не сконфигурировано — ограничения определяются системными параметрами.
@ -183,7 +183,7 @@
</string>
<string id="org-freedesktop-machine1-login-user">Ограничение возможности авторизации в локальном контейнере</string>
<string id="org-freedesktop-machine1-login-user_help">Политика ограничивает возможность авторизации в локальном контейнере
<string id="org-freedesktop-machine1-login-user_help">Политика управляет ограничением возможности авторизации в локальном контейнере
Отключено/Не сконфигурировано — ограничения определяются системными параметрами.
@ -207,7 +207,7 @@
</string>
<string id="org-freedesktop-machine1-manage-images">Ограничение возможности управления локальными виртуальными машинами и образами контейнеров</string>
<string id="org-freedesktop-machine1-manage-images_help">Политика ограничивает возможность управления локальными виртуальными машинами и образами контейнеров
<string id="org-freedesktop-machine1-manage-images_help">Политика управляет ограничением возможности управления локальными виртуальными машинами и образами контейнеров
Отключено/Не сконфигурировано — ограничения определяются системными параметрами.
@ -233,7 +233,7 @@
</string>
<string id="org-freedesktop-machine1-manage-images-user">Ограничение возможности управления локальными виртуальными машинами и образами контейнеров</string>
<string id="org-freedesktop-machine1-manage-images-user_help">Политика ограничивает возможность управления локальными виртуальными машинами и образами контейнеров
<string id="org-freedesktop-machine1-manage-images-user_help">Политика управляет ограничением возможности управления локальными виртуальными машинами и образами контейнеров
Отключено/Не сконфигурировано — ограничения определяются системными параметрами.
@ -257,7 +257,7 @@
</string>
<string id="org-freedesktop-machine1-manage-machines">Ограничение возможности управления локальными виртуальными машинами и контейнерами</string>
<string id="org-freedesktop-machine1-manage-machines_help">Политика ограничивает возможность управления локальными виртуальными машинами и контейнерами
<string id="org-freedesktop-machine1-manage-machines_help">Политика управляет ограничением возможности управления локальными виртуальными машинами и контейнерами
Отключено/Не сконфигурировано — ограничения определяются системными параметрами.
@ -283,7 +283,7 @@
</string>
<string id="org-freedesktop-machine1-manage-machines-user">Ограничение возможности управления локальными виртуальными машинами и контейнерами</string>
<string id="org-freedesktop-machine1-manage-machines-user_help">Политика ограничивает возможность управления локальными виртуальными машинами и контейнерами
<string id="org-freedesktop-machine1-manage-machines-user_help">Политика управляет ограничением возможности управления локальными виртуальными машинами и контейнерами
Отключено/Не сконфигурировано — ограничения определяются системными параметрами.
@ -307,7 +307,7 @@
</string>
<string id="org-freedesktop-machine1-open-pty">Ограничение возможности получения псевдотелетайпа (TTY) в локальном контейнере</string>
<string id="org-freedesktop-machine1-open-pty_help">Политика ограничивает возможность получения псевдотелетайпа (TTY) в локальном контейнере
<string id="org-freedesktop-machine1-open-pty_help">Политика управляет ограничением возможности получения псевдотелетайпа (TTY) в локальном контейнере
Отключено/Не сконфигурировано — ограничения определяются системными параметрами.
@ -333,7 +333,7 @@
</string>
<string id="org-freedesktop-machine1-open-pty-user">Ограничение возможности получения псевдотелетайпа (TTY) в локальном контейнере</string>
<string id="org-freedesktop-machine1-open-pty-user_help">Политика ограничивает возможность получения псевдотелетайпа (TTY) в локальном контейнере
<string id="org-freedesktop-machine1-open-pty-user_help">Политика управляет ограничением возможности получения псевдотелетайпа (TTY) в локальном контейнере
Отключено/Не сконфигурировано — ограничения определяются системными параметрами.
@ -356,8 +356,8 @@
Примечание: обладание административными правами в контексте PolicyKit определяются его правилами. По умолчанию в Альт запрашивается пароль пользователя, находящегося в группе «wheel».
</string>
<string id="org-freedesktop-machine1-shell">Ограничение возможности получения оболочки в локальном контейнере</string>
<string id="org-freedesktop-machine1-shell_help">Политика ограничивает возможность получения оболочки в локальном контейнере
<string id="org-freedesktop-machine1-shell">Ограничение возможности получения интерпретатора командной строки (командной оболочки) в локальном контейнере</string>
<string id="org-freedesktop-machine1-shell_help">Политика управляет ограничением возможности получения интерпретатора командной строки (командной оболочки) в локальном контейнере
Отключено/Не сконфигурировано — ограничения определяются системными параметрами.
@ -382,8 +382,8 @@
Опция «Блокировать» — запрещает изменение данной настройки пользователем. Блокировка политики делает её приоритетнее аналогичной политики для пользователя.
</string>
<string id="org-freedesktop-machine1-shell-user">Ограничение возможности получения оболочки в локальном контейнере</string>
<string id="org-freedesktop-machine1-shell-user_help">Политика ограничивает возможность получения оболочки в локальном контейнере
<string id="org-freedesktop-machine1-shell-user">Ограничение возможности получения интерпретатора командной строки (командной оболочки) в локальном контейнере</string>
<string id="org-freedesktop-machine1-shell-user_help">Политика управляет ограничением возможности получения интерпретатора командной строки (командной оболочки) в локальном контейнере
Отключено/Не сконфигурировано — ограничения определяются системными параметрами.