home *** CD-ROM | disk | FTP | other *** search
/ PC World 2005 December (Special) / PCWorld_2005-12_Special_cd.bin / Windows / trikyxp / trikyxp.exe / scesp4i.exe / mssce.cab / securws4.inf < prev    next >
Encoding:
Windows Setup INFormation  |  1998-10-01  |  21.6 KB  |  393 lines

  1. ; (c) Microsoft Corporation 1997-2000
  2. ;
  3. ; Security Configuration Template for Security Configuration Editor
  4. ;
  5. ; Template Name:        SecurWS4.INF
  6. ; Template Version:     04.00.SW.0000
  7. ;
  8. ; Revision History
  9. ; 0000  -       Original
  10.  
  11.  
  12. [Profile Description]
  13. Secure Windows NT Workstation\Server 4.0.
  14.  
  15. [version]
  16. signature="$CHICAGO$"
  17.  
  18. [System Access]
  19. ;----------------------------------------------------------------
  20. ;Account Policies - Password Policy
  21. ;----------------------------------------------------------------
  22. MinimumPasswordAge = 2
  23. MaximumPasswordAge = 42
  24. MinimumPasswordLength = 7
  25. PasswordComplexity = 1
  26. PasswordHistorySize = 6
  27. RequireLogonToChangePassword = 0
  28. ClearTextPassword = 0
  29.  
  30. ;----------------------------------------------------------------
  31. ;Account Policies - Lockout Policy
  32. ;----------------------------------------------------------------
  33. LockoutBadCount = 5
  34. ResetLockoutCount = 720
  35. LockoutDuration = 30
  36.  
  37. ;----------------------------------------------------------------
  38. ;Local Policies - Security Options
  39. ;----------------------------------------------------------------
  40. ;DC Only
  41. ;ForceLogoffWhenHourExpire = 1
  42.  
  43. ;NewAdministatorName =
  44. ;NewGuestName =
  45. ;SecureSystemPartition
  46.  
  47. ;----------------------------------------------------------------
  48. ;Event Log - Log Settings
  49. ;----------------------------------------------------------------
  50. ;Audit Log Retention Period:
  51. ;0 = Overwrite Events As Needed
  52. ;1 = Overwrite Events As Specified by Retention Days Entry
  53. ;2 = Never Overwrite Events (Clear Log Manually)
  54.  
  55. [System Log]
  56. MaximumLogSize = 2560
  57. AuditLogRetentionPeriod = 0
  58. ;RetentionDays = 7
  59. RestrictGuestAccess = 1
  60.  
  61. [Security Log]
  62. MaximumLogSize = 2560
  63. AuditLogRetentionPeriod = 0
  64. ;RetentionDays = 7
  65. RestrictGuestAccess = 1
  66.  
  67. [Application Log]
  68. MaximumLogSize = 2560
  69. AuditLogRetentionPeriod = 0
  70. ;RetentionDays = 7
  71. RestrictGuestAccess = 1
  72.  
  73. ;----------------------------------------------------------------------
  74. ;    Local Policies\Audit Policy
  75. ;----------------------------------------------------------------------
  76. [Event Audit]
  77. AuditSystemEvents = 3
  78. AuditObjectAccess = 0
  79. AuditPrivilegeUse = 2
  80. AuditPolicyChange = 3
  81. AuditAccountManage = 3
  82. AuditProcessTracking = 0
  83. AuditLogonEvents = 2
  84.  
  85. ;----------------------------------------------------------------
  86. ;Registry Values
  87. ;----------------------------------------------------------------
  88. [Registry Values]
  89. ; Registry value name in full path = Type, Value
  90. ; REG_SZ                      ( 1 )
  91. ; REG_EXPAND_SZ               ( 2 )  // with environment variables to expand
  92. ; REG_BINARY                  ( 3 )
  93. ; REG_DWORD                   ( 4 )
  94. ; REG_MULTI_SZ                ( 7 )
  95.  
  96. MACHINE\System\CurrentControlSet\Control\Lsa\AuditBaseObjects=4,0
  97. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\AllocateCDRoms=1,1
  98. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\AllocateFloppies=1,1
  99. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\CachedLogonsCount=1,10
  100. MACHINE\System\CurrentControlSet\Control\Session Manager\Memory Management\ClearPageFileAtShutdown=4,1
  101. MACHINE\System\CurrentControlSet\Control\Lsa\CrashOnAuditFail=4,0
  102. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\DontDisplayLastUserName=1,0
  103. ;MACHINE\System\CurrentControlSet\Control\Lsa\FullPrivilegeAuditing=3,30
  104. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\LegalNoticeCaption=1,""
  105. MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\LegalNoticeText=1,""
  106. MACHINE\System\CurrentControlSet\Control\Lsa\LmCompatibilityLevel=4,1
  107. MACHINE\System\CurrentControlSet\Control\Session Manager\ProtectionMode=4,1
  108. MACHINE\System\CurrentControlSet\Control\Lsa\RestrictAnonymous=4,0
  109. ;Shutdown without logon should disabled only for machines whose power switch is physically secured.
  110. ;Don't set since Default Server and Workstation settings are different
  111. ;MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\ShutdownWithoutLogon=1,0
  112. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\SignSecureChannel=4,1
  113. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\SealSecureChannel=4,1
  114. MACHINE\System\CurrentControlSet\Services\Netlogon\Parameters\RequireSignOrSeal=4,0
  115. MACHINE\System\CurrentControlSet\Services\Rdr\Parameters\EnableSecuritySignature=4,1
  116. MACHINE\System\CurrentControlSet\Services\Rdr\Parameters\RequireSecuritySignature=4,0
  117. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\EnableSecuritySignature=4,1
  118. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\RequireSecuritySignature=4,0
  119. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\EnableForcedLogOff=4,1
  120. MACHINE\System\CurrentControlSet\Services\LanManServer\Parameters\AutoDisconnect=4,15
  121. MACHINE\System\CurrentControlSet\Services\Rdr\Parameters\EnablePlainTextPassword=4,0
  122. ;MACHINE\System\CurrentControlSet\Control\Lsa\SubmitControl=4,0
  123. MACHINE\System\CurrentControlSet\Control\Print\Providers\LanMan Print Services\AddPrintDrivers=4,1
  124.  
  125.  
  126. ;----------------------------------------------------------------------
  127. ;    Local Policies\User Rights Assignment
  128. ;----------------------------------------------------------------------
  129. ;SeNetworkLogonRight            = Access this computer from the network
  130. ;SeTcbPrivilege                 = Act as part of the operating System           - (Advanced)
  131. ;SeMachineAccountPrivilege      = Add workstations to the domain                - (Advanced)
  132. ;SeBackupPrivilege              = Back up files and directories
  133. ;SeChangeNotifyPrivilege        = Bypass traverse checking                      - (Advanced)
  134. ;SeSystemtimePrivilege          = Change the system time
  135. ;SeCreatePagefilePrivilege      = Create a pagefile                             - (Advanced)
  136. ;SeCreateTokenPrivilege         = Create a token object                         - (Advanced)
  137. ;SeCreatePermanentPrivilege     = Create permanent shared objects               - (Advanced)
  138. ;SeDebugPrivilege               = Debug programs                                - (Advanced)
  139. ;SeRemoteShutdownPrivilege      = Force shutdown from a remote system
  140. ;SeAuditPrivilege               = Generate security audits                      - (Advanced)
  141. ;SeIncreaseQuotaPrivilege       = Increase quotas                               - (Advanced)
  142. ;SeIncreaseBasePriorityPrivilege= Increase scheduling priority                  - (Advanced)
  143. ;SeLoadDriverPrivilege          = Load and unload device drivers
  144. ;SeLockMemoryPrivilege          = Lock pages in memory                          - (Advanced)
  145. ;SeBatchLogonRight              = Log on as a batch job                         - (Advanced)
  146. ;SeServiceLogonRight            = Log on as a service                           - (Advanced)
  147. ;SeInteractiveLogonRight        = Log on locally                                - (Advanced)
  148. ;SeSecurityPrivilege            = Manage auditing and security log              - (Advanced)
  149. ;SeSystemEnvironmentPrivilege   = Modify firmware environment variables         - (Advanced)
  150. ;SeProfileSingleProcessPrivilege= Profile single process                        - (Advanced)
  151. ;SeSystemProfilePrivilege       = Profile system performance                    - (Advanced)
  152. ;SeAssignPrimaryTokenPrivilege  = Replace a process-level token                 - (Advanced)
  153. ;SeRestorePrivilege             = Restore files and directories
  154. ;SeShutdownPrivilege            = Shut down the system
  155. ;SeTakeOwnershipPrivilege       = Take ownership of files or other objects
  156. ;SeUnsolicitedInputPrivilege                                                    - (Advanced)
  157. ;
  158. [Privilege Rights]
  159. SeAssignPrimaryTokenPrivilege =
  160. SeAuditPrivilege =
  161. SeBackupPrivilege = %SceInfAdmins%, %SceInfBackupOp%
  162. ;SeBatchLogonRight = 
  163. ;SeChangeNotifyPrivilege = %SceInfEveryone%
  164. SeCreatePagefilePrivilege = %SceInfAdmins%
  165. SeCreatePermanentPrivilege =
  166. SeCreateTokenPrivilege =
  167. SeDebugPrivilege = %SceInfAdmins%
  168. SeIncreaseBasePriorityPrivilege = %SceInfAdmins%, %SceInfPowerUsers%
  169. SeIncreaseQuotaPrivilege = %SceInfAdmins%
  170. SeInteractiveLogonRight = %SceInfAdmins%, %SceInfBackupOp%, %SceInfPowerUsers%, %SceInfUsers%
  171. SeLoadDriverPrivilege = %SceInfAdmins%
  172. SeLockMemoryPrivilege =
  173. ;SeMachineAccountPrivilege =
  174. SeNetworkLogonRight = %SceInfAdmins%, %SceInfPowerUsers%, %SceInfUsers%
  175. SeProfileSingleProcessPrivilege = %SceInfAdmins%, %SceInfPowerUsers%
  176. SeRemoteShutdownPrivilege = %SceInfAdmins%, %SceInfPowerUsers%
  177. SeRestorePrivilege = %SceInfAdmins%, %SceInfBackupOp%
  178. SeSecurityPrivilege = %SceInfAdmins%
  179. ;SeServiceLogonRight =
  180. SeShutdownPrivilege = %SceInfAdmins%, %SceInfPowerUsers%, %SceInfUsers%
  181. SeSystemEnvironmentPrivilege = %SceInfAdmins%
  182. SeSystemProfilePrivilege = %SceInfAdmins%
  183. SeSystemTimePrivilege = %SceInfAdmins%, %SceInfPowerUsers%
  184. SeTakeOwnershipPrivilege = %SceInfAdmins%
  185. ;SeTcbPrivilege =
  186.  
  187. ;----------------------------------------------------------------------
  188. ;    Restricted Groups
  189. ;----------------------------------------------------------------------
  190. [Group Membership]
  191. ;;%SceInfBackupOp%__Memberof =
  192. ;;%SceInfBackupOp%__Members =
  193. ;;%SceInfReplicator%__Memberof =
  194. ;;%SceInfReplicator%__Members =
  195. ;;%SceInfUsers%__Memberof =
  196. ;;%SceInfUsers%__Members =
  197. ;;%SceInfPowerUsers%__Memberof =
  198. ;;%SceInfPowerUsers%__Members =
  199. ;;%SceInfAdmins%__Memberof =
  200. ;;%SceInfAdmins%__Members =
  201. ;;%SceInfGuests%__Memberof =
  202. ;;%SceInfGuests%__Members =
  203.  
  204. ;---------------------------------------------------------------------------------------
  205. ;    Registry
  206. ;---------------------------------------------------------------------------------------
  207. [Registry Keys]
  208. "CLASSES_ROOT",2,"D:(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;;GW;;;IU)(A;CI;GRGWSD;;;PU)"
  209. "CLASSES_ROOT\helpfile",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)"
  210. "CLASSES_ROOT\.hlp",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)"
  211.  
  212. "MACHINE\Software",2,"D:P(A;CI;GA;;;CO)(A;CI;GRGWSD;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)"
  213.  
  214. "MACHINE\SOFTWARE\Classes",1,""
  215.  
  216. "MACHINE\Software\Microsoft\Cryptography",2,"D:P(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GR;;;AU)"
  217. "MACHINE\Software\Microsoft\Internet Explorer",2,"D:P(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GR;;;AU)(A;CI;GA;;;CO)(A;CI;GRGWSD;;;PU)"
  218. "MACHINE\SOFTWARE\Microsoft\NetDDE",2,"D:P(A;CI;GA;;;DA)(A;CI;GA;;;SY)"
  219. "MACHINE\SOFTWARE\Microsoft\Ole",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;CO)(A;CI;GA;;;SY)"
  220. "MACHINE\SOFTWARE\Microsoft\Protected Storage System Provider",1,""
  221. "MACHINE\SOFTWARE\Microsoft\Rpc",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;CO)(A;CI;GA;;;SY)"
  222. "MACHINE\SOFTWARE\Microsoft\Secure",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;CO)(A;CI;GA;;;SY)"
  223.  
  224. "MACHINE\SOFTWARE\Microsoft\Windows",2,"D:P(A;CI;GA;;;CO)(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GRGWSD;;;PU)(A;CI;GA;;;SY)"
  225. "MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\App Paths",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGW;;;PU)"
  226. "MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)"
  227. ;Shell Exceptions (IE401)
  228. "MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\CHlen-us",2,"D:(A;;GW;;;IU)"
  229. "MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Player",2,"D:(A;;GW;;;IU)"
  230.  
  231. "MACHINE\Software\Microsoft\Windows Messaging Subsystem",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGWSD;;;PU)"
  232.  
  233. "MACHINE\SOFTWARE\Microsoft\Windows NT",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;CO)(A;CI;GA;;;SY)(A;CI;GRGWSD;;;PU)"
  234.  
  235. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\AeDebug",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGW;;;PU)"
  236. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Compatibility",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGW;;;PU)"
  237. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGW;;;PU)"
  238. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\drivers.desc",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGW;;;PU)"
  239. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)"
  240. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Embedding",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGW;;;PU)"
  241. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Font Drivers",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)"
  242. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontMapper",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)"
  243. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Fonts",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGW;;;PU)"
  244. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\FontSubstitutes",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGW;;;PU)"
  245. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\GRE_Initialize",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGW;;;PU)"
  246. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)"
  247. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\IniFileMapping",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)"
  248. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\MCI Extensions",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGW;;;PU)"
  249. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\MCI",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGW;;;PU)"
  250. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Midimap",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGW;;;PU)"
  251. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib",2,"D:P(A;CI;GR;;;IU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)"
  252. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Perflib\009",1,""
  253. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Ports",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGW;;;PU)"
  254. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProfileList",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGW;;;PU)"
  255. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Time Zones",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)"
  256. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Type 1 Installer\Type 1 Fonts",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGW;;;PU)"
  257. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)"
  258. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)"
  259. "MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\WOW",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)(A;CI;GA;;;CO)(A;CI;GRGW;;;PU)"
  260.  
  261. "MACHINE\SOFTWARE\Program Groups",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;CO)(A;CI;GA;;;SY)(A;CI;GRGWSD;;;PU)"
  262.  
  263. "MACHINE\SOFTWARE\Secure",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;CO)(A;CI;GA;;;SY)"
  264.  
  265. "MACHINE\SYSTEM",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)"
  266.  
  267. "MACHINE\SYSTEM\Clone",1,""
  268.  
  269. "MACHINE\SYSTEM\ControlSet010",1,""
  270. "MACHINE\SYSTEM\ControlSet009",1,""
  271. "MACHINE\SYSTEM\ControlSet008",1,""
  272. "MACHINE\SYSTEM\ControlSet007",1,""
  273. "MACHINE\SYSTEM\ControlSet006",1,""
  274. "MACHINE\SYSTEM\ControlSet005",1,""
  275. "MACHINE\SYSTEM\ControlSet004",1,""
  276. "MACHINE\SYSTEM\ControlSet003",1,""
  277. "MACHINE\SYSTEM\ControlSet002",1,""
  278. "MACHINE\SYSTEM\ControlSet001",1,""
  279.  
  280. "MACHINE\SYSTEM\CurrentControlSet\Enum",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;SY)"
  281.  
  282. "MACHINE\SYSTEM\CurrentControlSet\Control\PriorityControl",2,"D:P(A;CI;GRGW;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;CO)(A;CI;GA;;;SY)"
  283. "MACHINE\SYSTEM\CurrentControlSet\Control\ProductOptions",1,""
  284. "MACHINE\SYSTEM\CurrentControlSet\Control\SecurePipeServers\winreg",2,"D:P(A;CI;GA;;;DA)(A;CI;GRGW;;;BO)"
  285.  
  286. "MACHINE\SYSTEM\CurrentControlSet\Control\Session Manager\Executive",2,"D:(A;CI;GRGW;;;PU)"
  287.  
  288. "MACHINE\SYSTEM\CurrentControlSet\Control\TimeZoneInformation",2,"D:(A;CI;GRGW;;;PU)"
  289.  
  290. "MACHINE\SYSTEM\CurrentControlSet\Hardware Profiles\Current",1,""
  291. "MACHINE\SYSTEM\CurrentControlSet\Hardware Profiles\0001\Software",2,"D:P(A;CI;GA;;;CO)(A;CI;GRGWSD;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)"
  292.  
  293. "USERS\.DEFAULT",2,"D:P(A;CI;GR;;;AU)(A;CI;GA;;;DA)(A;CI;GA;;;SY)"
  294. "USERS\.DEFAULT\Software\Microsoft\NetDDE",2,"D:P(A;CI;GA;;;DA)(A;CI;GA;;;SY)"
  295. "USERS\.DEFAULT\SOFTWARE\Microsoft\Protected Storage System Provider",1,""
  296. "USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Policies",2,"D:(A;CI;GA;;;CO)(A;CI;GRGWSD;;;PU)"
  297.  
  298. ;---------------------------------------------------------------------------------------
  299. ;    File System
  300. ;---------------------------------------------------------------------------------------
  301. [File Security]
  302.  
  303. ;---------------------------------------------------------------------------------------
  304. ;x86 Boot Files
  305. ;---------------------------------------------------------------------------------------
  306. "c:\boot.ini",2,"D:P(A;;GA;;;DA)(A;;GA;;;SY)(A;;GRGX;;;PU)"
  307. "c:\ntdetect.com",2,"D:P(A;;GA;;;DA)(A;;GA;;;SY)(A;;GRGX;;;PU)"
  308. "c:\ntldr",2,"D:P(A;;GA;;;DA)(A;;GA;;;SY)(A;;GRGX;;;PU)"
  309. "c:\ntbootdd.sys",2,"D:P(A;;GA;;;DA)(A;;GA;;;SY)(A;;GRGX;;;PU)"
  310. "c:\autoexec.bat",2,"D:P(A;;GA;;;DA)(A;;GA;;;SY)(A;;GRGX;;;AU)(A;;GA;;;PU)"
  311. "c:\config.sys",2,"D:P(A;;GA;;;DA)(A;;GA;;;SY)(A;;GRGX;;;AU)(A;;GA;;;PU)"
  312.  
  313. ;---------------------------------------------------------------------------------------------
  314. ;System Drive (\)
  315. ;---------------------------------------------------------------------------------------------
  316. "%SystemDrive%\Program Files",2,"D:P(A;CIOI;GA;;;CO)(A;CI;GW;;;AU)(A;CIOI;GRGX;;;AU)(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)(A;CIOI;GRGWGXSD;;;PU)"
  317. "%SystemDrive%\Temp",2,"D:P(A;CIOI;GA;;;CO)(A;CI;GRGWGX;;;AU)(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)(A;CIOI;GRGWGXSD;;;PU)"
  318.  
  319. ;---------------------------------------------------------------------------------------------
  320. ;System Root (Typically \WINNT)
  321. ;---------------------------------------------------------------------------------------------
  322. "%SystemRoot%",2,"D:P(A;CIOI;GRGX;;;AU)(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)(A;CIOI;GA;;;CO)(A;;GW;;;AU)(A;CI;GRGWGXSD;;;PU)"
  323.  
  324. "%SystemRoot%\Help",2,"D:(A;;GW;;;AU)"
  325. "%SystemRoot%\profiles",1,""
  326. "%SystemRoot%\repair",2,"D:P(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)"
  327.  
  328. "%SystemRoot%\Win.ini",2,"D:P(A;;GRGX;;;AU)(A;;GA;;;DA)(A;;GA;;;SY)(A;;GRGWGXSD;;;PU)"
  329. ;Shell Exceptions (All)
  330. "%SystemRoot%\setup.old",2,"D:(A;;GRGWGXSD;;;IU)"
  331. ;Shell Exceptions (IE302)
  332. "%SystemRoot%\Cookies",2,"D:P(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)(A;CIOI;GA;;;CO)(A;;GRGWGXSD;;;IU)"
  333. "%SystemRoot%\History",2,"D:P(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)(A;CIOI;GA;;;CO)(A;;GRGWGXSD;;;IU)"
  334. "%SystemRoot%\Temporary Internet Files",2,"D:P(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)(A;CIOI;GA;;;CO)(A;;GRGWGXSD;;;IU)"
  335. ;Shell Exceptions (IE401)
  336. "%SystemRoot%\Downloaded Program Files",2,"D:P(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)(A;CIOI;GA;;;CO)(A;;GRGWGXSD;;;IU)"
  337. "%SystemRoot%\fpxpress.ini",2,"D:(A;;GRGWGXSD;;;IU)"
  338. "%SystemRoot%\OCCache",2,"D:P(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)(A;CIOI;GA;;;CO)(A;;GRGWGXSD;;;IU)"
  339. "%SystemRoot%\Subscriptions",2,"D:P(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)(A;CIOI;GA;;;CO)(A;;GRGWGXSD;;;IU)"
  340. "%SystemRoot%\Web\WallPaper",2,"D:P(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)(A;CIOI;GA;;;CO)(A;;GRGWGXSD;;;IU)"
  341. "%SystemRoot%\Web\WallPaper\Wallpapr.htm",2,"D:P(A;;GA;;;DA)(A;;GA;;;SY)(A;;GRGX;;;IU)"
  342.  
  343. ;---------------------------------------------------------------------------------------------
  344. ;System Directory (Typically \Winnt\System32)
  345. ;---------------------------------------------------------------------------------------------
  346. "%SystemDirectory%\config",2,"D:P(A;CI;GRGX;;;AU)(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)"
  347. "%SystemDirectory%\dhcp",2,"D:P(A;CIOI;GRGX;;;AU)(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)"
  348. "%SystemDirectory%\drivers",2,"D:P(A;CIOI;GRGX;;;AU)(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)"
  349. "%SystemDirectory%\ras",2,"D:(A;;GW;;;AU)"
  350. "%SystemDirectory%\repl",2,"D:P(A;CIOI;GRGX;;;AU)(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)"
  351. "%SystemDirectory%\repl\import",2,"D:(A;CIOI;GA;;;CO)(A;CIOI;GRGWGXSD;;;RP)"
  352. "%SystemDirectory%\repl\export",2,"D:(A;CIOI;GA;;;CO)(A;CIOI;GRGWGXSD;;;RP)"
  353. "%SystemDirectory%\spool",2,"D:P(A;CIOI;GA;;;CO)(A;CIOI;GRGX;;;AU)(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)(A;CIOI;GRGWGXSD;;;PU)"
  354. "%SystemDirectory%\spool\printers",2,"D:P(A;CI;GRGX;;;AU)(A;CIOI;GA;;;DA)(A;CIOI;GA;;;SY)(A;CIOI;GA;;;CO)(A;CIOI;GRGWGXSD;;;PU)"
  355.  
  356. "%SystemDirectory%\autoexec.nt",2,"D:P(A;;GRGX;;;AU)(A;;GA;;;DA)(A;;GA;;;SY)(A;;GRGWGXSD;;;PU)"
  357. "%SystemDirectory%\cmos.ram",2,"D:P(A;;GRGX;;;AU)(A;;GA;;;DA)(A;;GA;;;SY)(A;;GRGWGXSD;;;PU)"
  358. "%SystemDirectory%\config.nt",2,"D:P(A;;GRGX;;;AU)(A;;GA;;;DA)(A;;GA;;;SY)(A;;GRGWGXSD;;;PU)"
  359.  
  360. "%SystemDirectory%\hpmon.dll",2,"D:P(A;;GRGX;;;AU)(A;;GA;;;DA)(A;;GA;;;SY)(A;;GRGWGXSD;;;PU)"
  361. "%SystemDirectory%\hpmon.hlp",2,"D:P(A;;GRGX;;;AU)(A;;GA;;;DA)(A;;GA;;;SY)(A;;GRGWGXSD;;;PU)"
  362. "%SystemDirectory%\localmon.dll",2,"D:P(A;;GRGX;;;AU)(A;;GA;;;DA)(A;;GA;;;SY)(A;;GRGWGXSD;;;PU)"
  363. "%SystemDirectory%\midimap.cfg",2,"D:P(A;;GRGX;;;AU)(A;;GA;;;DA)(A;;GA;;;SY)(A;;GRGWGXSD;;;PU)"
  364.  
  365.  
  366. ;---------------------------------------------------------------------------------------
  367. ;    EOF
  368. ;---------------------------------------------------------------------------------------
  369.  
  370.  
  371.  
  372. [Strings]
  373.  
  374. SceInfAdministrator = Administrator
  375. SceInfAdmins = Administrators
  376. SceInfAcountOp = Account Operators
  377. SceInfAuthUsers = Authenticated Users
  378. SceInfBackupOp = Backup Operators
  379. SceInfDomainAdmins = Domain Admins
  380. SceInfDomainGuests = Domain Guests
  381. SceInfDomainUsers = Domain Users
  382. SceInfEveryone = Everyone
  383. SceInfGuests = Guests
  384. SceInfGuest = Guest
  385. SceInfPowerUsers = Power Users
  386. SceInfPrintOp = Print Operators
  387. SceInfReplicator = Replicator
  388. SceInfServerOp = Server Operators
  389. SceInfUsers = Users
  390. SceInfMTSAdmins = MTS Administrators
  391. SceInfMTSImpersonators = MTS Impersonators
  392. SceInfMTSAdmin = MTS_Admin
  393.