You do not have permission to delete messages in this group
Copy link
Report message
Show original message
Either email addresses are anonymous for this group or you need the view member email addresses permission to view the original message
to qubes-users
hi.
when looking at the policy permissions in '/etc/qubes-rpc/policy' i
noticed the only line 'qubes.USB' contains is:
$anyvm $anyvm deny
why is that line there?
as far as i understood it has no effect as any other declaration of the
form:
$anyvm <SOME_DEST> deny
since deny is the default action and this rule will catch any vm. (the
only effect would be that all following permission declarations
targeting the destination are ignored.
but now i am not sure anymore..
so can someone tell me whether my understanding of the permissions is
correct?