diff options
author | Zbigniew Jędrzejewski-Szmek <zbyszek@in.waw.pl> | 2018-02-16 12:48:55 +0100 |
---|---|---|
committer | Zbigniew Jędrzejewski-Szmek <zbyszek@in.waw.pl> | 2018-02-16 13:01:12 +0100 |
commit | 9b3cff199dd3827a9f2df9a7f5874d6ef18880f2 (patch) | |
tree | 95b792c1e3a496c1130c5269be83ee5bed6b6ae8 /src/machine/org.freedesktop.machine1.policy | |
parent | 70886abbde59a45cfabe0769c0cdb3af1e5f7790 (diff) | |
download | systemd-9b3cff199dd3827a9f2df9a7f5874d6ef18880f2.tar.gz |
meson: drop unnecessary "transformation" of policy files
Those files don't contain any @variables@, so the configuration step was just
copying them to build/. Let's avoid that, and fix their suffixes while at it.
Diffstat (limited to 'src/machine/org.freedesktop.machine1.policy')
-rw-r--r-- | src/machine/org.freedesktop.machine1.policy | 104 |
1 files changed, 104 insertions, 0 deletions
diff --git a/src/machine/org.freedesktop.machine1.policy b/src/machine/org.freedesktop.machine1.policy new file mode 100644 index 0000000000..039c3d4513 --- /dev/null +++ b/src/machine/org.freedesktop.machine1.policy @@ -0,0 +1,104 @@ +<?xml version="1.0" encoding="UTF-8"?> <!--*-nxml-*--> +<!DOCTYPE policyconfig PUBLIC "-//freedesktop//DTD PolicyKit Policy Configuration 1.0//EN" + "http://www.freedesktop.org/standards/PolicyKit/1/policyconfig.dtd"> + +<!-- + SPDX-License-Identifier: LGPL-2.1+ + + This file is part of systemd. + + systemd is free software; you can redistribute it and/or modify it + under the terms of the GNU Lesser General Public License as published by + the Free Software Foundation; either version 2.1 of the License, or + (at your option) any later version. +--> + +<policyconfig> + + <vendor>The systemd Project</vendor> + <vendor_url>http://www.freedesktop.org/wiki/Software/systemd</vendor_url> + + <action id="org.freedesktop.machine1.login"> + <description gettext-domain="systemd">Log into a local container</description> + <message gettext-domain="systemd">Authentication is required to log into a local container.</message> + <defaults> + <allow_any>auth_admin</allow_any> + <allow_inactive>auth_admin</allow_inactive> + <allow_active>auth_admin_keep</allow_active> + </defaults> + </action> + + <action id="org.freedesktop.machine1.host-login"> + <description gettext-domain="systemd">Log into the local host</description> + <message gettext-domain="systemd">Authentication is required to log into the local host.</message> + <defaults> + <allow_any>auth_admin</allow_any> + <allow_inactive>auth_admin</allow_inactive> + <allow_active>yes</allow_active> + </defaults> + </action> + + <action id="org.freedesktop.machine1.shell"> + <description gettext-domain="systemd">Acquire a shell in a local container</description> + <message gettext-domain="systemd">Authentication is required to acquire a shell in a local container.</message> + <defaults> + <allow_any>auth_admin</allow_any> + <allow_inactive>auth_admin</allow_inactive> + <allow_active>auth_admin_keep</allow_active> + </defaults> + <annotate key="org.freedesktop.policykit.imply">org.freedesktop.login1.login</annotate> + </action> + + <action id="org.freedesktop.machine1.host-shell"> + <description gettext-domain="systemd">Acquire a shell on the local host</description> + <message gettext-domain="systemd">Authentication is required to acquire a shell on the local host.</message> + <defaults> + <allow_any>auth_admin</allow_any> + <allow_inactive>auth_admin</allow_inactive> + <allow_active>auth_admin_keep</allow_active> + </defaults> + <annotate key="org.freedesktop.policykit.imply">org.freedesktop.login1.host-login</annotate> + </action> + + <action id="org.freedesktop.machine1.open-pty"> + <description gettext-domain="systemd">Acquire a pseudo TTY in a local container</description> + <message gettext-domain="systemd">Authentication is required to acquire a pseudo TTY in a local container.</message> + <defaults> + <allow_any>auth_admin</allow_any> + <allow_inactive>auth_admin</allow_inactive> + <allow_active>auth_admin_keep</allow_active> + </defaults> + </action> + + <action id="org.freedesktop.machine1.host-open-pty"> + <description gettext-domain="systemd">Acquire a pseudo TTY on the local host</description> + <message gettext-domain="systemd">Authentication is required to acquire a pseudo TTY on the local host.</message> + <defaults> + <allow_any>auth_admin</allow_any> + <allow_inactive>auth_admin</allow_inactive> + <allow_active>auth_admin_keep</allow_active> + </defaults> + </action> + + <action id="org.freedesktop.machine1.manage-machines"> + <description gettext-domain="systemd">Manage local virtual machines and containers</description> + <message gettext-domain="systemd">Authentication is required to manage local virtual machines and containers.</message> + <defaults> + <allow_any>auth_admin</allow_any> + <allow_inactive>auth_admin</allow_inactive> + <allow_active>auth_admin_keep</allow_active> + </defaults> + <annotate key="org.freedesktop.policykit.imply">org.freedesktop.login1.shell org.freedesktop.login1.login</annotate> + </action> + + <action id="org.freedesktop.machine1.manage-images"> + <description gettext-domain="systemd">Manage local virtual machine and container images</description> + <message gettext-domain="systemd">Authentication is required to manage local virtual machine and container images.</message> + <defaults> + <allow_any>auth_admin</allow_any> + <allow_inactive>auth_admin</allow_inactive> + <allow_active>auth_admin_keep</allow_active> + </defaults> + </action> + +</policyconfig> |