X-Git-Url: https://git.p6c8.net/policy-templates.git/blobdiff_plain/0b672127f0034583adaf6f1ba3e18191cd26be71..560e8c3ca69e6449596b1365c7b1184c7be6f5d8:/README.md diff --git a/README.md b/README.md index c95af1d..6e7ef5c 100644 --- a/README.md +++ b/README.md @@ -101,10 +101,10 @@ This policy can be used to install certificates or to read certificates from the The ImportEnterpriseRoots key will cause Firefox to import from the system certificate store. The Install Certificates key by default will search for certificates in the locations listed below. +Starting in Firefox 65 you can specify a fully qualified path including UNC. (See cert3.der and cert4.pem, in example). - -Starting in Firefox 65, you can specify a fully qualified path including UNC. (see cert3.der and cert4.pem, cer5.pem in example) -Be advised if you wish to load a certificate from a UNC path you must use double backslahes. Example: \\SERVER\\CERTS\CERT5.PEM +**Be advised if you wish to load a certificate from a UNC path you must use double backslahes.** +Example: \\SERVER\\CERTS\CERT5.PEM If Firefox does not find something at your fully qualified path, it will search the default directories. @@ -127,7 +127,7 @@ Certificates can be located in the following locations: "policies": { "Certificates": { "ImportEnterpriseRoots": true, - "Install": ["cert1.der", "cert2.pem", "%SYSTEMDRIVE%\Company\cert3.der", "/Library/Company/cert4.pem"] + "Install": ["cert1.der", "cert2.pem", "%SYSTEMDRIVE%\Company\cert3.der", "/Library/Company/cert4.pem", "\\server\\certs\\cert.pem"] } } } @@ -396,6 +396,7 @@ For Uninstall and Locked, you specify extension IDs. "Uninstall": ["addon_id@mozilla.org"], "Locked": ["addon_id@mozilla.org"] } + } } ``` ### HardwareAcceleration @@ -630,3 +631,22 @@ This policy allows you to add PKCS #11 Modules } } ``` +### SSLVersionMin +This policy allows you to set the minimum TLS version. +``` +{ + "policies": { + "SSSLVersionMin": ["tls1", "tls1.1", "tls1.2",. "tls1.3"] + } +} + +``` +### SSLVersionMax +This policy allows you to set the maximum TLS version. +``` +{ + "policies": { + "SSSLVersionMax": ["tls1", "tls1.1", "tls1.2",. "tls1.3"] + } +} +```