Advertisement
Guest User

Untitled

a guest
Apr 17th, 2024
73
0
324 days
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 11.20 KB | None | 0 0
  1. <?xml version="1.0" encoding="utf-8"?>
  2. <SiPolicy xmlns:xsd="http://www.w3.org/2001/XMLSchema" xmlns:xsi="http://www.w3.org/2001/XMLSchema-instance" PolicyType="Base Policy" xmlns="urn:schemas-microsoft-com:sipolicy">
  3. <VersionEx>10.0.0.0</VersionEx>
  4. <PlatformID>{2E07F7E4-194C-4D20-B7C9-6F44A6C5A234}</PlatformID>
  5. <PolicyID>{0B277716-B381-41AE-9B81-99FAC1C72798}</PolicyID>
  6. <BasePolicyID>{0B277716-B381-41AE-9B81-99FAC1C72798}</BasePolicyID>
  7. <Rules>
  8. <Rule>
  9. <Option>Enabled:Unsigned System Integrity Policy</Option>
  10. </Rule>
  11. <Rule>
  12. <Option>Enabled:Advanced Boot Options Menu</Option>
  13. </Rule>
  14. <Rule>
  15. <Option>Enabled:UMCI</Option>
  16. </Rule>
  17. <Rule>
  18. <Option>Enabled:Inherit Default Policy</Option>
  19. </Rule>
  20. <Rule>
  21. <Option>Enabled:Update Policy No Reboot</Option>
  22. </Rule>
  23. <Rule>
  24. <Option>Enabled:Dynamic Code Security</Option>
  25. </Rule>
  26. <Rule>
  27. <Option>Enabled:Revoked Expired As Unsigned</Option>
  28. </Rule>
  29. <Rule>
  30. <Option>Enabled:Allow Supplemental Policies</Option>
  31. </Rule>
  32. <Rule>
  33. <Option>Enabled:Managed Installer</Option>
  34. </Rule>
  35. <Rule>
  36. <Option>Required:Enforce Store Applications</Option>
  37. </Rule>
  38. </Rules>
  39. <EKUs>
  40. <EKU ID="ID_EKU_WINDOWS" Value="010A2B0601040182370A0306" FriendlyName="" />
  41. <EKU ID="ID_EKU_ELAM" Value="010A2B0601040182373D0401" FriendlyName="" />
  42. <EKU ID="ID_EKU_HAL_EXT" Value="010A2B0601040182373D0501" FriendlyName="" />
  43. <EKU ID="ID_EKU_WHQL" Value="010A2B0601040182370A0305" FriendlyName="" />
  44. <EKU ID="ID_EKU_STORE" Value="010A2B0601040182374C0301" FriendlyName="Windows Store EKU - 1.3.6.1.4.1.311.76.3.1 Windows Store" />
  45. <EKU ID="ID_EKU_RT_EXT" Value="010A2B0601040182370A0315" FriendlyName="" />
  46. <EKU ID="ID_EKU_DCODEGEN" Value="010A2B0601040182374C0501" FriendlyName="Dynamic Code Generation EKU - 1.3.6.1.4.1.311.76.5.1" />
  47. <EKU ID="ID_EKU_AM" Value="010A2B0601040182374C0B01" FriendlyName="AntiMalware EKU -1.3.6.1.4.1.311.76.11.1 " />
  48. </EKUs>
  49. <FileRules>
  50. <FileAttrib ID="ID_FILEATTRIB_REFRESH_POLICY_0" FriendlyName="RefreshPolicy.exe FileAttribute" FileName="RefreshPolicy.exe" MinimumFileVersion="10.0.19042.0" />
  51. </FileRules>
  52. <Signers>
  53. <Signer Name="Microsoft Product Root 2010 Windows EKU" ID="ID_SIGNER_WINDOWS_PRODUCTION_0">
  54. <CertRoot Type="Wellknown" Value="06" />
  55. <CertEKU ID="ID_EKU_WINDOWS" />
  56. </Signer>
  57. <Signer Name="Microsoft Product Root 2010 ELAM EKU" ID="ID_SIGNER_ELAM_PRODUCTION_0">
  58. <CertRoot Type="Wellknown" Value="06" />
  59. <CertEKU ID="ID_EKU_ELAM" />
  60. </Signer>
  61. <Signer Name="Microsoft Product Root 2010 HAL EKU" ID="ID_SIGNER_HAL_PRODUCTION_0">
  62. <CertRoot Type="Wellknown" Value="06" />
  63. <CertEKU ID="ID_EKU_HAL_EXT" />
  64. </Signer>
  65. <Signer Name="Microsoft Product Root 2010 WHQL EKU" ID="ID_SIGNER_WHQL_SHA2_0">
  66. <CertRoot Type="Wellknown" Value="06" />
  67. <CertEKU ID="ID_EKU_WHQL" />
  68. </Signer>
  69. <Signer Name="Microsoft Product Root WHQL EKU SHA1" ID="ID_SIGNER_WHQL_SHA1_0">
  70. <CertRoot Type="Wellknown" Value="05" />
  71. <CertEKU ID="ID_EKU_WHQL" />
  72. </Signer>
  73. <Signer Name="Microsoft Product Root WHQL EKU MD5" ID="ID_SIGNER_WHQL_MD5_0">
  74. <CertRoot Type="Wellknown" Value="04" />
  75. <CertEKU ID="ID_EKU_WHQL" />
  76. </Signer>
  77. <Signer Name="Microsoft Flighting Root 2014 Windows EKU" ID="ID_SIGNER_WINDOWS_FLIGHT_ROOT_0">
  78. <CertRoot Type="Wellknown" Value="0E" />
  79. <CertEKU ID="ID_EKU_WINDOWS" />
  80. </Signer>
  81. <Signer Name="Microsoft Flighting Root 2014 ELAM EKU" ID="ID_SIGNER_ELAM_FLIGHT_0">
  82. <CertRoot Type="Wellknown" Value="0E" />
  83. <CertEKU ID="ID_EKU_ELAM" />
  84. </Signer>
  85. <Signer Name="Microsoft Flighting Root 2014 HAL EKU" ID="ID_SIGNER_HAL_FLIGHT_0">
  86. <CertRoot Type="Wellknown" Value="0E" />
  87. <CertEKU ID="ID_EKU_HAL_EXT" />
  88. </Signer>
  89. <Signer Name="Microsoft Flighting Root 2014 WHQL EKU" ID="ID_SIGNER_WHQL_FLIGHT_SHA2_0">
  90. <CertRoot Type="Wellknown" Value="0E" />
  91. <CertEKU ID="ID_EKU_WHQL" />
  92. </Signer>
  93. <Signer Name="MincryptKnownRootMicrosoftTestRoot2010" ID="ID_SIGNER_TEST2010_0">
  94. <CertRoot Type="Wellknown" Value="0A" />
  95. </Signer>
  96. <Signer Name="Microsoft Product Root 2010 Windows EKU" ID="ID_SIGNER_WINDOWS_PRODUCTION_USER_0">
  97. <CertRoot Type="Wellknown" Value="06" />
  98. <CertEKU ID="ID_EKU_WINDOWS" />
  99. </Signer>
  100. <Signer Name="Microsoft Product Root 2010 ELAM EKU" ID="ID_SIGNER_ELAM_PRODUCTION_USER_0">
  101. <CertRoot Type="Wellknown" Value="06" />
  102. <CertEKU ID="ID_EKU_ELAM" />
  103. </Signer>
  104. <Signer Name="Microsoft Product Root 2010 HAL EKU" ID="ID_SIGNER_HAL_PRODUCTION_USER_0">
  105. <CertRoot Type="Wellknown" Value="06" />
  106. <CertEKU ID="ID_EKU_HAL_EXT" />
  107. </Signer>
  108. <Signer Name="Microsoft Product Root 2010 WHQL EKU" ID="ID_SIGNER_WHQL_SHA2_USER_0">
  109. <CertRoot Type="Wellknown" Value="06" />
  110. <CertEKU ID="ID_EKU_WHQL" />
  111. </Signer>
  112. <Signer Name="Microsoft Product Root WHQL EKU SHA1" ID="ID_SIGNER_WHQL_SHA1_USER_0">
  113. <CertRoot Type="Wellknown" Value="05" />
  114. <CertEKU ID="ID_EKU_WHQL" />
  115. </Signer>
  116. <Signer Name="Microsoft Product Root WHQL EKU MD5" ID="ID_SIGNER_WHQL_MD5_USER_0">
  117. <CertRoot Type="Wellknown" Value="04" />
  118. <CertEKU ID="ID_EKU_WHQL" />
  119. </Signer>
  120. <Signer Name="Microsoft Flighting Root 2014 Windows EKU" ID="ID_SIGNER_WINDOWS_FLIGHT_ROOT_USER_0">
  121. <CertRoot Type="Wellknown" Value="0E" />
  122. <CertEKU ID="ID_EKU_WINDOWS" />
  123. </Signer>
  124. <Signer Name="Microsoft Flighting Root 2014 ELAM EKU" ID="ID_SIGNER_ELAM_FLIGHT_USER_0">
  125. <CertRoot Type="Wellknown" Value="0E" />
  126. <CertEKU ID="ID_EKU_ELAM" />
  127. </Signer>
  128. <Signer Name="Microsoft Flighting Root 2014 HAL EKU" ID="ID_SIGNER_HAL_FLIGHT_USER_0">
  129. <CertRoot Type="Wellknown" Value="0E" />
  130. <CertEKU ID="ID_EKU_HAL_EXT" />
  131. </Signer>
  132. <Signer Name="Microsoft Flighting Root 2014 WHQL EKU" ID="ID_SIGNER_WHQL_FLIGHT_SHA2_USER_0">
  133. <CertRoot Type="Wellknown" Value="0E" />
  134. <CertEKU ID="ID_EKU_WHQL" />
  135. </Signer>
  136. <Signer Name="Microsoft MarketPlace PCA 2011" ID="ID_SIGNER_STORE_0">
  137. <CertRoot Type="TBS" Value="FC9EDE3DCCA09186B2D3BF9B738A2050CB1A554DA2DCADB55F3F72EE17721378" />
  138. <CertEKU ID="ID_EKU_STORE" />
  139. </Signer>
  140. <Signer Name="Microsoft Flighting Root 2014 Store EKU" ID="ID_SIGNER_STORE_FLIGHT_ROOT_0">
  141. <CertRoot Type="Wellknown" Value="0E" />
  142. <CertEKU ID="ID_EKU_STORE" />
  143. </Signer>
  144. <Signer Name="Microsoft Product Root 2010 RT EKU" ID="ID_SIGNER_RT_PRODUCTION_0">
  145. <CertRoot Type="Wellknown" Value="06" />
  146. <CertEKU ID="ID_EKU_RT_EXT" />
  147. </Signer>
  148. <Signer Name="MincryptKnownRootMicrosoftDMDRoot2005" ID="ID_SIGNER_DRM_0">
  149. <CertRoot Type="Wellknown" Value="0C" />
  150. </Signer>
  151. <Signer Name="MincryptKnownRootMicrosoftProductRoot2010" ID="ID_SIGNER_DCODEGEN_0">
  152. <CertRoot Type="Wellknown" Value="06" />
  153. <CertEKU ID="ID_EKU_DCODEGEN" />
  154. </Signer>
  155. <Signer Name="MincryptKnownRootMicrosoftStandardRoot2011" ID="ID_SIGNER_AM_0">
  156. <CertRoot Type="Wellknown" Value="07" />
  157. <CertEKU ID="ID_EKU_AM" />
  158. </Signer>
  159. <Signer Name="Microsoft Flighting Root 2014 RT EKU" ID="ID_SIGNER_RT_FLIGHT_0">
  160. <CertRoot Type="Wellknown" Value="0E" />
  161. <CertEKU ID="ID_EKU_RT_EXT" />
  162. </Signer>
  163. <Signer Name="Microsoft Standard Root 2011 RT EKU" ID="ID_SIGNER_RT_STANDARD_0">
  164. <CertRoot Type="Wellknown" Value="07" />
  165. <CertEKU ID="ID_EKU_RT_EXT" />
  166. </Signer>
  167. <Signer Name="Microsoft Code Signing PCA 2011" ID="ID_SIGNER_MICROSOFT_REFRESH_POLICY_0">
  168. <CertRoot Type="TBS" Value="F6F717A43AD9ABDDC8CEFDDE1C505462535E7D1307E630F9544A2D14FE8BF26E" />
  169. <CertPublisher Value="Microsoft Corporation" />
  170. <FileAttribRef RuleID="ID_FILEATTRIB_REFRESH_POLICY_0" />
  171. </Signer>
  172. <Signer Name="MincryptKnownRootMicrosoftTestRoot2010" ID="ID_SIGNER_TEST2010_USER_0">
  173. <CertRoot Type="Wellknown" Value="0A" />
  174. </Signer>
  175. </Signers>
  176. <SigningScenarios>
  177. <SigningScenario ID="ID_SIGNINGSCENARIO_DRIVERS_1" FriendlyName="Auto generated policy on 04-16-2024" Value="131">
  178. <ProductSigners>
  179. <AllowedSigners>
  180. <AllowedSigner SignerId="ID_SIGNER_WINDOWS_PRODUCTION_0" />
  181. <AllowedSigner SignerId="ID_SIGNER_ELAM_PRODUCTION_0" />
  182. <AllowedSigner SignerId="ID_SIGNER_HAL_PRODUCTION_0" />
  183. <AllowedSigner SignerId="ID_SIGNER_WHQL_SHA2_0" />
  184. <AllowedSigner SignerId="ID_SIGNER_WHQL_SHA1_0" />
  185. <AllowedSigner SignerId="ID_SIGNER_WHQL_MD5_0" />
  186. <AllowedSigner SignerId="ID_SIGNER_WINDOWS_FLIGHT_ROOT_0" />
  187. <AllowedSigner SignerId="ID_SIGNER_ELAM_FLIGHT_0" />
  188. <AllowedSigner SignerId="ID_SIGNER_HAL_FLIGHT_0" />
  189. <AllowedSigner SignerId="ID_SIGNER_WHQL_FLIGHT_SHA2_0" />
  190. <AllowedSigner SignerId="ID_SIGNER_TEST2010_0" />
  191. </AllowedSigners>
  192. </ProductSigners>
  193. </SigningScenario>
  194. <SigningScenario ID="ID_SIGNINGSCENARIO_WINDOWS" FriendlyName="Auto generated policy on 04-16-2024" Value="12">
  195. <ProductSigners>
  196. <AllowedSigners>
  197. <AllowedSigner SignerId="ID_SIGNER_WINDOWS_PRODUCTION_USER_0" />
  198. <AllowedSigner SignerId="ID_SIGNER_ELAM_PRODUCTION_USER_0" />
  199. <AllowedSigner SignerId="ID_SIGNER_HAL_PRODUCTION_USER_0" />
  200. <AllowedSigner SignerId="ID_SIGNER_WHQL_SHA2_USER_0" />
  201. <AllowedSigner SignerId="ID_SIGNER_WHQL_SHA1_USER_0" />
  202. <AllowedSigner SignerId="ID_SIGNER_WHQL_MD5_USER_0" />
  203. <AllowedSigner SignerId="ID_SIGNER_WINDOWS_FLIGHT_ROOT_USER_0" />
  204. <AllowedSigner SignerId="ID_SIGNER_ELAM_FLIGHT_USER_0" />
  205. <AllowedSigner SignerId="ID_SIGNER_HAL_FLIGHT_USER_0" />
  206. <AllowedSigner SignerId="ID_SIGNER_WHQL_FLIGHT_SHA2_USER_0" />
  207. <AllowedSigner SignerId="ID_SIGNER_STORE_0" />
  208. <AllowedSigner SignerId="ID_SIGNER_STORE_FLIGHT_ROOT_0" />
  209. <AllowedSigner SignerId="ID_SIGNER_RT_PRODUCTION_0" />
  210. <AllowedSigner SignerId="ID_SIGNER_DRM_0" />
  211. <AllowedSigner SignerId="ID_SIGNER_DCODEGEN_0" />
  212. <AllowedSigner SignerId="ID_SIGNER_AM_0" />
  213. <AllowedSigner SignerId="ID_SIGNER_RT_FLIGHT_0" />
  214. <AllowedSigner SignerId="ID_SIGNER_RT_STANDARD_0" />
  215. <AllowedSigner SignerId="ID_SIGNER_MICROSOFT_REFRESH_POLICY_0" />
  216. <AllowedSigner SignerId="ID_SIGNER_TEST2010_USER_0" />
  217. </AllowedSigners>
  218. </ProductSigners>
  219. </SigningScenario>
  220. </SigningScenarios>
  221. <UpdatePolicySigners />
  222. <CiSigners>
  223. <CiSigner SignerId="ID_SIGNER_STORE_0" />
  224. <CiSigner SignerId="ID_SIGNER_MICROSOFT_REFRESH_POLICY_0" />
  225. </CiSigners>
  226. <HvciOptions>0</HvciOptions>
  227. <Settings>
  228. <Setting Provider="PolicyInfo" Key="Information" ValueName="Name">
  229. <Value>
  230. <String>NewEXCPolicy</String>
  231. </Value>
  232. </Setting>
  233. <Setting Provider="PolicyInfo" Key="Information" ValueName="Id">
  234. <Value>
  235. <String>2024-04-16</String>
  236. </Value>
  237. </Setting>
  238. </Settings>
  239. </SiPolicy>
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement