X-Git-Url: https://git.p6c8.net/policy-templates.git/blobdiff_plain/a31330d95f5f89e3b010648001f69dc5729f6d5b..cf86de052b91be706059cd13d4efef03c6fc762d:/README.md?ds=sidebyside diff --git a/README.md b/README.md index 13da975..778f759 100644 --- a/README.md +++ b/README.md @@ -96,26 +96,31 @@ same folder name are grouped together. } ``` ### Certificates -This policy can be used to install certificates or to read certificates from the system certificate store on Mac and Windows. Certificates can be located in the following locations: +This policy can be used to install certificates or to read certificates from the system certificate store on Mac and Windows. + +The ImportEnterpriseRoots key will cause Firefox to import from the system certificate store. + +The Install key by default will search for certificates in the locations listed below. Starting in Firefox 65, you can specify a fully qualified path (see cert3.der and cert4.pem in example). If Firefox does not find something at your fully qualified path, it will search the default directories. + +Certificates can be located in the following locations: - Windows - - %USERPROFILE%\AppData\Local\Mozilla\Certificates - - %USERPROFILE%\AppData\Roaming\Mozilla\Certificates -* macOS - - /Library/Application Support/Mozilla/Certificates - - ~/Library/Application Support/Mozilla/Certificates -* Linux - - /usr/lib/mozilla/certificates - - /usr/lib64/mozilla/certificates - - ~/.mozilla/certificates - -In Firefox 65, you can specify a fully qualified path. + - %USERPROFILE%\AppData\Local\Mozilla\Certificates + - %USERPROFILE%\AppData\Roaming\Mozilla\Certificates +- macOS + - /Library/Application Support/Mozilla/Certificates + - ~/Library/Application Support/Mozilla/Certificates +- Linux + - /usr/lib/mozilla/certificates + - /usr/lib64/mozilla/certificates + - ~/.mozilla/certificates + ``` { "policies": { "Certificates": { "ImportEnterpriseRoots": true, - "Install": ["cert1.der", "cert2.pem"] + "Install": ["cert1.der", "cert2.pem", "%SYSTEMDRIVE%\Company\cert3.der", "/Library/Company/cert4.pem"] } } } @@ -610,9 +615,9 @@ This policy allows you to add PKCS #11 Modules ``` { "policies": { - "SecurityDevices": [ + "SecurityDevices": { "NAME_OF_DEVICE": "PATH_TO_LIBRARY_FOR_DEVICE" - ] + } } } ```