mirror of
https://github.com/altlinux/admx-basealt.git
synced 2025-01-22 18:03:58 +03:00
1157 lines
44 KiB
XML
1157 lines
44 KiB
XML
<?xml version="1.0" encoding="utf-8"?>
|
|
<!-- (c) 2019 BaseALT, Ltd. -->
|
|
<policyDefinitions xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" revision="1.0" schemaVersion="1.0" xmlns="http://schemas.microsoft.com/GroupPolicy/2006/07/PolicyDefinitions">
|
|
<policyNamespaces>
|
|
<target prefix="control" namespace="BaseALT.Policies.Control" />
|
|
<using prefix="system" namespace="BaseALT.Policies.System" />
|
|
</policyNamespaces>
|
|
<resources minRequiredRevision="1.0" />
|
|
<categories>
|
|
<category name="Control" displayName="$(string.SecurityControl)">
|
|
<parentCategory ref="system:Base" />
|
|
</category>
|
|
</categories>
|
|
<policies>
|
|
<policy name="ExecuteSuProgram" class="Machine" displayName="$(string.ExecuteSuProgram)" explainText="$(string.ExecuteSuProgram_Help)" presentation="$(presentation.ExecuteSuProgram)" key="Software\BaseALT\Policies\Control">
|
|
<parentCategory ref="Control" />
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus" />
|
|
<elements>
|
|
<enum id="ExecuteSuProgramSetter" valueName="ExecuteSuProgram" required="true">
|
|
<item displayName="$(string.ExecuteSuProgram_Public)">
|
|
<value>
|
|
<decimal value="0" />
|
|
</value>
|
|
</item>
|
|
<item displayName="$(string.ExecuteSuProgram_Wheel)">
|
|
<value>
|
|
<decimal value="1" />
|
|
</value>
|
|
</item>
|
|
<item displayName="$(string.ExecuteSuProgram_WheelOnly)">
|
|
<value>
|
|
<decimal value="2" />
|
|
</value>
|
|
</item>
|
|
<item displayName="$(string.ExecuteSuProgram_Restricted)">
|
|
<value>
|
|
<decimal value="3" />
|
|
</value>
|
|
</item>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.at)" explainText="$(string.at_help)" key="Software\BaseALT\Policies\Control" name="at" presentation="$(presentation.at)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="at_setter" required="true" valueName="at">
|
|
<enum displayName="$(string.at_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.at_restricted)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.at_atdaemon)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.chage)" explainText="$(string.chage_help)" key="Software\BaseALT\Policies\Control" name="chage" presentation="$(presentation.chage)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="chage_setter" required="true" valueName="chage">
|
|
<enum displayName="$(string.chage_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.chage_restricted)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.chfn)" explainText="$(string.chfn_help)" key="Software\BaseALT\Policies\Control" name="chfn" presentation="$(presentation.chfn)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="chfn_setter" required="true" valueName="chfn">
|
|
<enum displayName="$(string.chfn_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.chfn_restricted)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.chrony)" explainText="$(string.chrony_help)" key="Software\BaseALT\Policies\Control" name="chrony" presentation="$(presentation.chrony)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="chrony_setter" required="true" valueName="chrony">
|
|
<enum displayName="$(string.chrony_server)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.chrony_client)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.chsh)" explainText="$(string.chsh_help)" key="Software\BaseALT\Policies\Control" name="chsh" presentation="$(presentation.chsh)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="chsh_setter" required="true" valueName="chsh">
|
|
<enum displayName="$(string.chsh_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.chsh_restricted)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.consolehelper)" explainText="$(string.consolehelper_help)" key="Software\BaseALT\Policies\Control" name="consolehelper" presentation="$(presentation.consolehelper)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="consolehelper_setter" required="true" valueName="consolehelper">
|
|
<enum displayName="$(string.consolehelper_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.consolehelper_wheelonly)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.consolehelper_restricted)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.crontab)" explainText="$(string.crontab_help)" key="Software\BaseALT\Policies\Control" name="crontab" presentation="$(presentation.crontab)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="crontab_setter" required="true" valueName="crontab">
|
|
<enum displayName="$(string.crontab_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.crontab_restricted)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.cups)" explainText="$(string.cups_help)" key="Software\BaseALT\Policies\Control" name="cups" presentation="$(presentation.cups)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="cups_setter" required="true" valueName="cups">
|
|
<enum displayName="$(string.cups_server)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.cups_local)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.dvd-ram-control)" explainText="$(string.dvd-ram-control_help)" key="Software\BaseALT\Policies\Control" name="dvd-ram-control" presentation="$(presentation.dvd-ram-control)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="dvd-ram-control_setter" required="true" valueName="dvd-ram-control">
|
|
<enum displayName="$(string.dvd-ram-control_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.dvd-ram-control_restricted)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.dvd-ram-control_legacy)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.dvd+rw-booktype)" explainText="$(string.dvd+rw-booktype_help)" key="Software\BaseALT\Policies\Control" name="dvd+rw-booktype" presentation="$(presentation.dvd+rw-booktype)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="dvd+rw-booktype_setter" required="true" valueName="dvd+rw-booktype">
|
|
<enum displayName="$(string.dvd+rw-booktype_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.dvd+rw-booktype_restricted)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.dvd+rw-booktype_legacy)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.dvd+rw-format)" explainText="$(string.dvd+rw-format_help)" key="Software\BaseALT\Policies\Control" name="dvd+rw-format" presentation="$(presentation.dvd+rw-format)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="dvd+rw-format_setter" required="true" valueName="dvd+rw-format">
|
|
<enum displayName="$(string.dvd+rw-format_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.dvd+rw-format_restricted)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.dvd+rw-format_legacy)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.dvd+rw-mediainfo)" explainText="$(string.dvd+rw-mediainfo_help)" key="Software\BaseALT\Policies\Control" name="dvd+rw-mediainfo" presentation="$(presentation.dvd+rw-mediainfo)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="dvd+rw-mediainfo_setter" required="true" valueName="dvd+rw-mediainfo">
|
|
<enum displayName="$(string.dvd+rw-mediainfo_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.dvd+rw-mediainfo_restricted)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.dvd+rw-mediainfo_legacy)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.fusermount)" explainText="$(string.fusermount_help)" key="Software\BaseALT\Policies\Control" name="fusermount" presentation="$(presentation.fusermount)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="fusermount_setter" required="true" valueName="fusermount">
|
|
<enum displayName="$(string.fusermount_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.fusermount_fuseonly)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.fusermount_wheelonly)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.fusermount_restricted)">
|
|
<value>
|
|
<decimal value="3"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.gpasswd)" explainText="$(string.gpasswd_help)" key="Software\BaseALT\Policies\Control" name="gpasswd" presentation="$(presentation.gpasswd)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="gpasswd_setter" required="true" valueName="gpasswd">
|
|
<enum displayName="$(string.gpasswd_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.gpasswd_wheelonly)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.gpasswd_restricted)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.groupmems)" explainText="$(string.groupmems_help)" key="Software\BaseALT\Policies\Control" name="groupmems" presentation="$(presentation.groupmems)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="groupmems_setter" required="true" valueName="groupmems">
|
|
<enum displayName="$(string.groupmems_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.groupmems_wheelonly)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.groupmems_restricted)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.growisofs)" explainText="$(string.growisofs_help)" key="Software\BaseALT\Policies\Control" name="growisofs" presentation="$(presentation.growisofs)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="growisofs_setter" required="true" valueName="growisofs">
|
|
<enum displayName="$(string.growisofs_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.growisofs_restricted)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.growisofs_legacy)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.hddtemp)" explainText="$(string.hddtemp_help)" key="Software\BaseALT\Policies\Control" name="hddtemp" presentation="$(presentation.hddtemp)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="hddtemp_setter" required="true" valueName="hddtemp">
|
|
<enum displayName="$(string.hddtemp_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.hddtemp_wheelonly)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.hddtemp_restricted)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.kvm)" explainText="$(string.kvm_help)" key="Software\BaseALT\Policies\Control" name="kvm" presentation="$(presentation.kvm)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="kvm_setter" required="true" valueName="kvm">
|
|
<enum displayName="$(string.kvm_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.kvm_vmusers)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.kvm_restricted)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.ldap-reverse-dns-lookup)" explainText="$(string.ldap-reverse-dns-lookup_help)" key="Software\BaseALT\Policies\Control" name="ldap-reverse-dns-lookup" presentation="$(presentation.ldap-reverse-dns-lookup)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="ldap-reverse-dns-lookup_setter" required="true" valueName="ldap-reverse-dns-lookup">
|
|
<enum displayName="$(string.ldap-reverse-dns-lookup_allow)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.ldap-reverse-dns-lookup_deny)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.ldap-reverse-dns-lookup_default)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.ldap-tls-cert-check)" explainText="$(string.ldap-tls-cert-check_help)" key="Software\BaseALT\Policies\Control" name="ldap-tls-cert-check" presentation="$(presentation.ldap-tls-cert-check)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="ldap-tls-cert-check_setter" required="true" valueName="ldap-tls-cert-check">
|
|
<enum displayName="$(string.ldap-tls-cert-check_default)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.ldap-tls-cert-check_never)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.ldap-tls-cert-check_allow)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.ldap-tls-cert-check_try)">
|
|
<value>
|
|
<decimal value="3"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.ldap-tls-cert-check_demand)">
|
|
<value>
|
|
<decimal value="4"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.mount)" explainText="$(string.mount_help)" key="Software\BaseALT\Policies\Control" name="mount" presentation="$(presentation.mount)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="mount_setter" required="true" valueName="mount">
|
|
<enum displayName="$(string.mount_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.mount_wheelonly)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.mount_unprivileged)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.mount_restricted)">
|
|
<value>
|
|
<decimal value="3"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.newgrp)" explainText="$(string.newgrp_help)" key="Software\BaseALT\Policies\Control" name="newgrp" presentation="$(presentation.newgrp)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="newgrp_setter" required="true" valueName="newgrp">
|
|
<enum displayName="$(string.newgrp_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.newgrp_wheelonly)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.newgrp_restricted)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.nfsmount)" explainText="$(string.nfsmount_help)" key="Software\BaseALT\Policies\Control" name="nfsmount" presentation="$(presentation.nfsmount)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="nfsmount_setter" required="true" valueName="nfsmount">
|
|
<enum displayName="$(string.nfsmount_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.nfsmount_wheelonly)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.nfsmount_restricted)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.pam_mktemp)" explainText="$(string.pam_mktemp_help)" key="Software\BaseALT\Policies\Control" name="pam_mktemp" presentation="$(presentation.pam_mktemp)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="pam_mktemp_setter" required="true" valueName="pam_mktemp">
|
|
<enum displayName="$(string.pam_mktemp_enabled)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.pam_mktemp_disabled)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.passwd)" explainText="$(string.passwd_help)" key="Software\BaseALT\Policies\Control" name="passwd" presentation="$(presentation.passwd)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="passwd_setter" required="true" valueName="passwd">
|
|
<enum displayName="$(string.passwd_tcb)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.passwd_traditional)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.passwd_restricted)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.passwdqc-enforce)" explainText="$(string.passwdqc-enforce_help)" key="Software\BaseALT\Policies\Control" name="passwdqc-enforce" presentation="$(presentation.passwdqc-enforce)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="passwdqc-enforce_setter" required="true" valueName="passwdqc-enforce">
|
|
<enum displayName="$(string.passwdqc-enforce_everyone)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.passwdqc-enforce_users)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.ping)" explainText="$(string.ping_help)" key="Software\BaseALT\Policies\Control" name="ping" presentation="$(presentation.ping)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="ping_setter" required="true" valueName="ping">
|
|
<enum displayName="$(string.ping_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.ping_netadmin)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.ping_restricted)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.ping_public_caps)">
|
|
<value>
|
|
<decimal value="3"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.ping_netadmin_caps)">
|
|
<value>
|
|
<decimal value="4"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.postfix)" explainText="$(string.postfix_help)" key="Software\BaseALT\Policies\Control" name="postfix" presentation="$(presentation.postfix)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="postfix_setter" required="true" valueName="postfix">
|
|
<enum displayName="$(string.postfix_local)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.postfix_server)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.postfix_filter)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.postqueue)" explainText="$(string.postqueue_help)" key="Software\BaseALT\Policies\Control" name="postqueue" presentation="$(presentation.postqueue)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="postqueue_setter" required="true" valueName="postqueue">
|
|
<enum displayName="$(string.postqueue_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.postqueue_mailadm)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.postqueue_restricted)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.ppp)" explainText="$(string.ppp_help)" key="Software\BaseALT\Policies\Control" name="ppp" presentation="$(presentation.ppp)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="ppp_setter" required="true" valueName="ppp">
|
|
<enum displayName="$(string.ppp_restricted)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.ppp_traditional)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.ppp_uucp)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.ppp_public)">
|
|
<value>
|
|
<decimal value="3"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.rpcbind)" explainText="$(string.rpcbind_help)" key="Software\BaseALT\Policies\Control" name="rpcbind" presentation="$(presentation.rpcbind)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="rpcbind_setter" required="true" valueName="rpcbind">
|
|
<enum displayName="$(string.rpcbind_server)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.rpcbind_local)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.sftp)" explainText="$(string.sftp_help)" key="Software\BaseALT\Policies\Control" name="sftp" presentation="$(presentation.sftp)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="sftp_setter" required="true" valueName="sftp">
|
|
<enum displayName="$(string.sftp_enabled)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.sftp_disabled)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.sshd-allow-groups)" explainText="$(string.sshd-allow-groups_help)" key="Software\BaseALT\Policies\Control" name="sshd-allow-groups" presentation="$(presentation.sshd-allow-groups)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="sshd-allow-groups_setter" required="true" valueName="sshd-allow-groups">
|
|
<enum displayName="$(string.sshd-allow-groups_enabled)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.sshd-allow-groups_disabled)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.sshd-gssapi-auth)" explainText="$(string.sshd-gssapi-auth_help)" key="Software\BaseALT\Policies\Control" name="sshd-gssapi-auth" presentation="$(presentation.sshd-gssapi-auth)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="sshd-gssapi-auth_setter" required="true" valueName="sshd-gssapi-auth">
|
|
<enum displayName="$(string.sshd-gssapi-auth_disabled)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.sshd-gssapi-auth_enabled)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.sshd-gssapi-auth_default)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.sshd-password-auth)" explainText="$(string.sshd-password-auth_help)" key="Software\BaseALT\Policies\Control" name="sshd-password-auth" presentation="$(presentation.sshd-password-auth)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="sshd-password-auth_setter" required="true" valueName="sshd-password-auth">
|
|
<enum displayName="$(string.sshd-password-auth_enabled)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.sshd-password-auth_disabled)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.sshd-password-auth_default)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.ssh-gssapi-auth)" explainText="$(string.ssh-gssapi-auth_help)" key="Software\BaseALT\Policies\Control" name="ssh-gssapi-auth" presentation="$(presentation.ssh-gssapi-auth)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="ssh-gssapi-auth_setter" required="true" valueName="ssh-gssapi-auth">
|
|
<enum displayName="$(string.ssh-gssapi-auth_disabled)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.ssh-gssapi-auth_enabled)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.ssh-gssapi-auth_default)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.su)" explainText="$(string.su_help)" key="Software\BaseALT\Policies\Control" name="su" presentation="$(presentation.su)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="su_setter" required="true" valueName="su">
|
|
<enum displayName="$(string.su_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.su_wheel)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.su_wheelonly)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.su_restricted)">
|
|
<value>
|
|
<decimal value="3"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.sudo)" explainText="$(string.sudo_help)" key="Software\BaseALT\Policies\Control" name="sudo" presentation="$(presentation.sudo)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="sudo_setter" required="true" valueName="sudo">
|
|
<enum displayName="$(string.sudo_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.sudo_wheelonly)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.sudo_restricted)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.sudoers)" explainText="$(string.sudoers_help)" key="Software\BaseALT\Policies\Control" name="sudoers" presentation="$(presentation.sudoers)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="sudoers_setter" required="true" valueName="sudoers">
|
|
<enum displayName="$(string.sudoers_strict)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.sudoers_relaxed)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.sudoreplay)" explainText="$(string.sudoreplay_help)" key="Software\BaseALT\Policies\Control" name="sudoreplay" presentation="$(presentation.sudoreplay)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="sudoreplay_setter" required="true" valueName="sudoreplay">
|
|
<enum displayName="$(string.sudoreplay_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.sudoreplay_wheelonly)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.sudoreplay_restricted)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.sudowheel)" explainText="$(string.sudowheel_help)" key="Software\BaseALT\Policies\Control" name="sudowheel" presentation="$(presentation.sudowheel)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="sudowheel_setter" required="true" valueName="sudowheel">
|
|
<enum displayName="$(string.sudowheel_disabled)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.sudowheel_enabled)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.system-auth)" explainText="$(string.system-auth_help)" key="Software\BaseALT\Policies\Control" name="system-auth" presentation="$(presentation.system-auth)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="system-auth_setter" required="true" valueName="system-auth">
|
|
<enum displayName="$(string.system-auth_krb5)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.system-auth_krb5_ccreds)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.system-auth_ldap)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.system-auth_local)">
|
|
<value>
|
|
<decimal value="3"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.system-auth_multi)">
|
|
<value>
|
|
<decimal value="4"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.system-auth_pkcs11)">
|
|
<value>
|
|
<decimal value="5"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.system-auth_winbind)">
|
|
<value>
|
|
<decimal value="6"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.tcb_chkpwd)" explainText="$(string.tcb_chkpwd_help)" key="Software\BaseALT\Policies\Control" name="tcb_chkpwd" presentation="$(presentation.tcb_chkpwd)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="tcb_chkpwd_setter" required="true" valueName="tcb_chkpwd">
|
|
<enum displayName="$(string.tcb_chkpwd_traditional)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.tcb_chkpwd_tcb)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.tcb_chkpwd_restricted)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.udisks2)" explainText="$(string.udisks2_help)" key="Software\BaseALT\Policies\Control" name="udisks2" presentation="$(presentation.udisks2)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="udisks2_setter" required="true" valueName="udisks2">
|
|
<enum displayName="$(string.udisks2_default)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.udisks2_shared)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.virtualbox)" explainText="$(string.virtualbox_help)" key="Software\BaseALT\Policies\Control" name="virtualbox" presentation="$(presentation.virtualbox)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="virtualbox_setter" required="true" valueName="virtualbox">
|
|
<enum displayName="$(string.virtualbox_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.virtualbox_vboxusers)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.virtualbox_restricted)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.wireshark-capture)" explainText="$(string.wireshark-capture_help)" key="Software\BaseALT\Policies\Control" name="wireshark-capture" presentation="$(presentation.wireshark-capture)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="wireshark-capture_setter" required="true" valueName="wireshark-capture">
|
|
<enum displayName="$(string.wireshark-capture_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.wireshark-capture_relaxed)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.wireshark-capture_netadmin)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.wireshark-capture_restricted)">
|
|
<value>
|
|
<decimal value="3"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.write)" explainText="$(string.write_help)" key="Software\BaseALT\Policies\Control" name="write" presentation="$(presentation.write)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="write_setter" required="true" valueName="write">
|
|
<enum displayName="$(string.write_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.write_restricted)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.xdg-user-dirs)" explainText="$(string.xdg-user-dirs_help)" key="Software\BaseALT\Policies\Control" name="xdg-user-dirs" presentation="$(presentation.xdg-user-dirs)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="xdg-user-dirs_setter" required="true" valueName="xdg-user-dirs">
|
|
<enum displayName="$(string.xdg-user-dirs_enabled)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.xdg-user-dirs_disabled)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
<policy class="Machine" displayName="$(string.xorg-server)" explainText="$(string.xorg-server_help)" key="Software\BaseALT\Policies\Control" name="xorg-server" presentation="$(presentation.xorg-server)">
|
|
<parentCategory ref="Control"/>
|
|
<supportedOn ref="system:SUPPORTED_Sisyphus"/>
|
|
<elements>
|
|
<enum id="xorg-server_setter" required="true" valueName="xorg-server">
|
|
<enum displayName="$(string.xorg-server_public)">
|
|
<value>
|
|
<decimal value="0"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.xorg-server_xgrp)">
|
|
<value>
|
|
<decimal value="1"/>
|
|
</value>
|
|
</enum>
|
|
<enum displayName="$(string.xorg-server_restricted)">
|
|
<value>
|
|
<decimal value="2"/>
|
|
</value>
|
|
</enum>
|
|
</enum>
|
|
</elements>
|
|
</policy>
|
|
</policies>
|
|
</policyDefinitions>
|