| <?xml version="1.0" encoding="UTF-8"?> <!--*-nxml-*--> |
| <!DOCTYPE policyconfig PUBLIC "-//freedesktop//DTD PolicyKit Policy Configuration 1.0//EN" |
| "http://www.freedesktop.org/standards/PolicyKit/1/policyconfig.dtd"> |
| |
| <!-- |
| This file is part of systemd. |
| |
| systemd is free software; you can redistribute it and/or modify it |
| under the terms of the GNU Lesser General Public License as published by |
| the Free Software Foundation; either version 2.1 of the License, or |
| (at your option) any later version. |
| --> |
| |
| <policyconfig> |
| |
| <vendor>The systemd Project</vendor> |
| <vendor_url>http://www.freedesktop.org/wiki/Software/systemd</vendor_url> |
| |
| <action id="org.freedesktop.machine1.login"> |
| <_description>Log into a local container</_description> |
| <_message>Authentication is required to log into a local container.</_message> |
| <defaults> |
| <allow_any>auth_admin</allow_any> |
| <allow_inactive>auth_admin</allow_inactive> |
| <allow_active>auth_admin_keep</allow_active> |
| </defaults> |
| </action> |
| |
| <action id="org.freedesktop.machine1.host-login"> |
| <_description>Log into the local host</_description> |
| <_message>Authentication is required to log into the local host.</_message> |
| <defaults> |
| <allow_any>auth_admin</allow_any> |
| <allow_inactive>auth_admin</allow_inactive> |
| <allow_active>yes</allow_active> |
| </defaults> |
| </action> |
| |
| <action id="org.freedesktop.machine1.shell"> |
| <_description>Acquire a shell in a local container</_description> |
| <_message>Authentication is required to acquire a shell in a local container.</_message> |
| <defaults> |
| <allow_any>auth_admin</allow_any> |
| <allow_inactive>auth_admin</allow_inactive> |
| <allow_active>auth_admin_keep</allow_active> |
| </defaults> |
| <annotate key="org.freedesktop.policykit.imply">org.freedesktop.login1.login</annotate> |
| </action> |
| |
| <action id="org.freedesktop.machine1.host-shell"> |
| <_description>Acquire a shell on the local host</_description> |
| <_message>Authentication is required to acquire a shell on the local host.</_message> |
| <defaults> |
| <allow_any>auth_admin</allow_any> |
| <allow_inactive>auth_admin</allow_inactive> |
| <allow_active>auth_admin_keep</allow_active> |
| </defaults> |
| <annotate key="org.freedesktop.policykit.imply">org.freedesktop.login1.host-login</annotate> |
| </action> |
| |
| <action id="org.freedesktop.machine1.open-pty"> |
| <_description>Acquire a pseudo TTY in a local container</_description> |
| <_message>Authentication is required to acquire a pseudo TTY in a local container.</_message> |
| <defaults> |
| <allow_any>auth_admin</allow_any> |
| <allow_inactive>auth_admin</allow_inactive> |
| <allow_active>auth_admin_keep</allow_active> |
| </defaults> |
| </action> |
| |
| <action id="org.freedesktop.machine1.host-open-pty"> |
| <_description>Acquire a pseudo TTY on the local host</_description> |
| <_message>Authentication is required to acquire a pseudo TTY on the local host.</_message> |
| <defaults> |
| <allow_any>auth_admin</allow_any> |
| <allow_inactive>auth_admin</allow_inactive> |
| <allow_active>auth_admin_keep</allow_active> |
| </defaults> |
| </action> |
| |
| <action id="org.freedesktop.machine1.manage-machines"> |
| <_description>Manage local virtual machines and containers</_description> |
| <_message>Authentication is required to manage local virtual machines and containers.</_message> |
| <defaults> |
| <allow_any>auth_admin</allow_any> |
| <allow_inactive>auth_admin</allow_inactive> |
| <allow_active>auth_admin_keep</allow_active> |
| </defaults> |
| <annotate key="org.freedesktop.policykit.imply">org.freedesktop.login1.shell org.freedesktop.login1.login</annotate> |
| </action> |
| |
| <action id="org.freedesktop.machine1.manage-images"> |
| <_description>Manage local virtual machine and container images</_description> |
| <_message>Authentication is required to manage local virtual machine and container images.</_message> |
| <defaults> |
| <allow_any>auth_admin</allow_any> |
| <allow_inactive>auth_admin</allow_inactive> |
| <allow_active>auth_admin_keep</allow_active> |
| </defaults> |
| </action> |
| |
| </policyconfig> |