X-Git-Url: https://git.p6c8.net/policy-templates.git/blobdiff_plain/269ce4f833b3767afe14cb78bd11d3db6c2a7c19..a10c55967783476ef159011787384f46cefa69ff:/windows/en-US/firefox.adml?ds=sidebyside diff --git a/windows/en-US/firefox.adml b/windows/en-US/firefox.adml index 1147813..de5d5a7 100644 --- a/windows/en-US/firefox.adml +++ b/windows/en-US/firefox.adml @@ -1,5 +1,5 @@ - + @@ -25,7 +25,13 @@ Firefox 75 or later, Firefox 68.7 ESR or later Firefox 75 or later Firefox 76 or later, Firefox 68.8 ESR or later + Firefox 76 or later Firefox 77 or later, Firefox 68.9 ESR or later + Firefox 77 or later + Firefox 78 or later + Firefox 79 or later, Firefox 78.1 ESR or later + Firefox 80 or later, Firefox 78.2 ESR or later + Firefox 81 or later, Firefox 78.3 ESR or later Firefox Permissions Camera @@ -33,6 +39,7 @@ Location Notifications Autoplay + Virtual Reality Authentication Bookmarks Certificates @@ -45,12 +52,16 @@ Search Preferences User Messaging + Disabled Ciphers + Encrypted Media Extensions + PDFjs Allowed Sites + Allowed Sites (Session Only) Blocked Sites Application Autoupdate If this policy is enabled, Firefox is automatically updated without user approval. -If this policy is disabled Firefox updates are downloaded, but the user can choose when to install the update. +If this policy is disabled, Firefox updates are downloaded but the user can choose when to install the update. If this policy is not configured, the user can choose whether not Firefox is automatically updated. Custom Update URL @@ -87,6 +98,10 @@ If this policy is enabled (and the checkboxes are checked) or not configured, NT If this policy is disabled, authentication preferences can be changed by the user. If this policy is enabled or not configured, authentication preferences cannot be changed by the user. + Allow authentication in private browsing + If this policy is enabled, integrated authentication is used in private browsing. + +If this policy is disabled or not configured, integrated authentication is not used in private browsing. Block Add-ons Manager If this policy is enabled, the user cannot access the Add-ons Manager or about:addons. @@ -127,7 +142,25 @@ If this policy is disabled or not configured, the default Firefox download direc If this policy is enabled, you can set and lock the directory for downloads. ${home} can be used for the native home path. If this policy is disabled or not configured, the default Firefox download directory is used and the user can change it. - Configure DNS Over HTTPS + DNS Over HTTPS + Enabled + If this policy is disabled, DNS over HTTPS is disabled. + +If this policy is enabled or not configured, DNS Over HTTPS is enabled. + Provider URL + If this policy is enabled, the URL specified is used as the provider URL. + +If this policy is disabled or not configured, the default provider is used. + + Locked + If this policy is enabled, DNS over HTTPS settings cannot be changed by the user. + +If this policy is disabled or not configured, DNS over HTTPS settings can be changed by the user. + Excluded Domains + If this policy is enabled, the specified domains are excluded from DNS over HTTPS. + +If this policy is disabled or not configured, no domains are excluded from DNS over HTTPS. + Configure DNS Over HTTPS (Moved) If this policy is enabled, the default configuration for DNS over HTTPS can be changed. If this policy is disabled or not configured, DNS Over HTTPS uses the default Firefox configuration. @@ -298,7 +331,7 @@ In either case, the user will be able to change the value (it is not locked).If this policy is enabled, pop-up windows are always allowed for the origins indicated. If a top level domain is specified (http://example.org), pop-up windows are allowed for all subdomains as well. If this policy is disabled or not configured, the default pop-up policy is followed. - Allow pop-ups from websites + Block pop-ups from websites If this policy is disabled, pop-up windows are allowed from websites by default. If this policy is not configured or enabled, popups are not allowed from websites. @@ -315,6 +348,9 @@ If this policy is disabled or not configured, the default add-on policy is follo If this policy is not configured or enabled, add-ons can be installed. If this policy is enabled, cookies are always allowed for the origins indicated. If a top level domain is specified (http://example.org), cookies are allowed for all subdomains as well. +If this policy is disabled or not configured, the default cookie policy is followed. + If this policy is enabled, cookies are allowed for the origins indicated, but removed at the end of the session. If a top level domain is specified (http://example.org), cookies are allowed for all subdomains as well. + If this policy is disabled or not configured, the default cookie policy is followed. If this policy is enabled, cookies are blocked for the origins indicated. If a top level domain is specified (http://example.org), cookies are blocked from all subdomains as well. @@ -404,6 +440,33 @@ If this policy is disabled or not configured, the default autoplay policy is fol If this policy is enabled, autoplay is always blocked for the origins indicated. If this policy is disabled or not configured, the default autoplay policy is followed. + Default autoplay level + If this policy is enabled, you can choose the default autoplay level. + +If this policy is disabled or not configured, audio is blocked by default. + +Note: Blocking audio and video does not work on the ESR. + Do not allow preferences to be changed + If this policy is enabled, autoplay preferences cannot be changed by the user. + +If this policy is disabled or not configured, the user can change autoplay preferences. + Allow Audio and Video + Block Audio + Block Audio and Video + If this policy is enabled, access to virtual reality devices is always allowed for the origins indicated. + +If this policy is disabled or not configured, the default virtual reality policy is followed. + If this policy is enabled, access to virtual reality devices is blocked for the origins indicated. + +If this policy is disabled or not configured, access to virtual reality devices is not blocked by default. + Block new requests asking to access virtual reality devices. + If this policy is enabled, sites that are not in the Allow policy will not be allowed to ask permission to access virtual reality devices. + +If this policy is disabled or not configured, any site that is not in the Block policy can ask permission to virtual reality devices. + Do not allow preferences to be changed + If this policy is enabled, virtual reality preferences cannot be changed by the user. + +If this policy is disabled or not configured, the user can change their virtual reality preferences. Customize Firefox Home If this policy is enabled, you can choose the sections displayed on Firefox Home and prevent the user from changing them. @@ -560,6 +623,7 @@ If this policy is disabled or not configured, the start page defaults to the pre None Homepage Previous Session + Homepage (Locked) Password Manager If this policy is disabled, the password manager is not available via preferences. @@ -687,11 +751,59 @@ If this policy is enabled or not configured, extensions will be recommended as t Feature Recommendations If this policy is disabled, Firefox features will not be recommended as the user uses Firefox. -If this policy is enabled or not configured, Firefox features wil be recommended as the user uses Firefox. +If this policy is enabled or not configured, Firefox features will be recommended as the user uses Firefox. Urlbar Interventions If this policy is disabled, actions will not be recommended based on what the user types in the URL bar. If this policy is enabled or not configured, actions will be recommended based on what the user types in the URL bar. + TLS_DHE_RSA_WITH_AES_128_CBC_SHA + TLS_DHE_RSA_WITH_AES_256_CBC_SHA + TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA + TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA + TLS_ECDHE_RSA_WITH_AES_128_GCM_SHA256 + TLS_ECDHE_ECDSA_WITH_AES_128_GCM_SHA256 + TLS_RSA_WITH_AES_128_CBC_SHA + TLS_RSA_WITH_AES_256_CBC_SHA + TLS_RSA_WITH_3DES_EDE_CBC_SHA + TLS_RSA_WITH_AES_128_GCM_SHA256 + TLS_RSA_WITH_AES_256_GCM_SHA384 + If this policy is enabled, the corresponding cipher is disabled. + +If this policy is disabled, the corresponding cipher is enabled. + +If this policy is not configured, the corresponding cipher is enabled or disabled based on the default in Firefox. + Enable Encrypted Media Extensions + If this policy is disabled, encrypted media extensions (like Widevine) are not downloaded by Firefox unless the user consents to installing them. + +If this policy is enabled or not configured, encrypted media extensions (like Widevine) are downloaded automatically and used by Firefox. + Lock Encrypted Media Extensions + If this policy is enabled and EncryptedMediaExtensions are disabled, Firefox will not download encrypted media extensions (like Widevine) or ask the user to install them. + +If this policy is not disabled or not configured, it has no effect. + Enable PDFjs + If this policy is disabled, the built-in PDF viewer is not used. + +If this policy is enabled or not configured, the built-in PDF viewer is used. + Enable Permissions + If this policy is enabled, the built-in PDF viewer will honor document permissions like preventing the copying of text. + +If this policy is not disabled or not configured, document permissions are ignored. + Picture-in-Picture + If this policy is disabled, the Picture-in-Picture toggle does not appear on videos. + +If this policy is enabled or not configured, the Picture-in-Picture toggle is available on videos. + Primary (Master) Password + If this policy is enabled, a primary password is required. + +If this policy is disabled, users cannot create a primary password. + +If this policy is not configured, users can choose to create a primary password. + Handlers + If this policy is enabled, you can use JSON to configure default application handlers. + +If this policy is disabled or not configured, Firefox defaults are used. + +For detailed information on creating the policy, see https://github.com/mozilla/policy-templates/blob/master/README.md#handlers. If this policy is enabled, the preference is locked to true. If this policy is disabled, the preference is locked to false. For a description of the preference, see: @@ -743,7 +855,7 @@ https://github.com/mozilla/policy-templates/blob/master/README.md#preferences.geo.enabled extensions.getAddons.showPane intl.accept_languages - media.eme.enabled + media.eme.enabled (Deprecated) media.gmp-gmpopenh264.enabled media.gmp-widevinecdm.enabled network.dns.disableIPv6 @@ -757,7 +869,8 @@ https://github.com/mozilla/policy-templates/blob/master/README.md#preferences.browser.newtabpage.activity-stream.default.sites extensions.htmlaboutaddons.recommendations.enabled media.peerconnection.enabled - media.peerconnection.ice.obfuscate_host_addresses.whitelist + media.peerconnection.ice.obfuscate_host_addresses.whitelist (Deprecated) + media.peerconnection.ice.obfuscate_host_addresses.blocklist security.osclientcerts.autoload security.tls.hello_downgrade_check widget.content.gtk-theme-override @@ -978,9 +1091,23 @@ https://github.com/mozilla/policy-templates/blob/master/README.md#preferences. + + + + + + + + + + + + +