Allowed Media and Menu Bar Extras
com.apple.systemuiserver
The payload that configures media management.
Not available with User Enrollment · Only one instance per profile
Configuration Keys (5)
| Key | Type | Title |
|---|---|---|
PFC_SegmentedControl_0required | string | — |
mount-controlsThe media type dictionary that controls volume mounting. | dict | Volume Mount Controls |
harddisk-externalA string or an array of media action strings. The hard disk-external category includes internally installed SD cards and USB flash drives. This key is the default for media types that don't fall into other categories. | array | External Disk |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
harddisk-internalA media action string or an array of media action strings. | array | Internal Disk |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
networkdiskA media action string or an array of media action strings. | array | Network Disk |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
disk-imageA media action string or an array of media action strings. | array | Disk Image |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
bdA media action string or an array of media action strings. | array | Blu-ray |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
cdA media action string or an array of media action strings. | array | CD |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
dvdA media action string or an array of media action strings. | array | DVD |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
dvdramA media action string or an array of media action strings. | array | DVD-RAM |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
blankbdA media action string or an array of media action strings. | array | Recordable Blu-ray |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
blankcdA media action string or an array of media action strings. | array | Recordable CD |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
blankdvdA media action string or an array of media action strings. | array | Recordable DVD |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
all-mediaUnused; set to an empty string. | string | — |
unmount-controlsThe media type dictionary that controls volume unmounting. | dict | Volume Unmount Controls |
harddisk-externalA string or an array of media action strings. The hard disk-external category includes internally installed SD cards and USB flash drives. This key is the default for media types that don't fall into other categories. | array | External Disk |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
harddisk-internalA media action string or an array of media action strings. | array | Internal Disk |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
networkdiskA media action string or an array of media action strings. | array | Network Disk |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
disk-imageA media action string or an array of media action strings. | array | Disk Image |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
bdA media action string or an array of media action strings. | array | Blu-ray |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
cdA media action string or an array of media action strings. | array | CD |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
dvdA media action string or an array of media action strings. | array | DVD |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
dvdramA media action string or an array of media action strings. | array | DVD-RAM |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
blankbdA media action string or an array of media action strings. | array | Recordable Blu-ray |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
blankcdA media action string or an array of media action strings. | array | Recordable CD |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
blankdvdA media action string or an array of media action strings. | array | Recordable DVD |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
all-mediaUnused; set to an empty string. | string | — |
logout-ejectThe media type dictionary that defines volumes to eject when the user logs out. | dict | Eject on logout |
harddisk-externalA string or an array of media action strings. The hard disk-external category includes internally installed SD cards and USB flash drives. This key is the default for media types that don't fall into other categories. | array | External Disk |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
harddisk-internalA media action string or an array of media action strings. | array | Internal Disk |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
networkdiskA media action string or an array of media action strings. | array | Network Disk |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
disk-imageA media action string or an array of media action strings. | array | Disk Image |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
bdA media action string or an array of media action strings. | array | Blu-ray |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
cdA media action string or an array of media action strings. | array | CD |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
dvdA media action string or an array of media action strings. | array | DVD |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
dvdramA media action string or an array of media action strings. | array | DVD-RAM |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
blankbdA media action string or an array of media action strings. | array | Recordable Blu-ray |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
blankcdA media action string or an array of media action strings. | array | Recordable CD |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
blankdvdA media action string or an array of media action strings. | array | Recordable DVD |
ActionStringItemOne of the following values: authenticate - User will be authenticated before media is mounted read-only - The media will be mounted read-only. Not valid for unmount-controls. deny - The media will not be mounted. eject - The media will not be mounted and it will be ejected if possible. Note that some volumes are not defined as ejectable, so using the deny key may be the best solution. Not valid for unmount-controls. Range: Authenticate (authenticate), Read-Only (read-only), Deny (deny), Eject (eject), Alert (alert) | string | Action |
all-mediaUnused; set to an empty string. | string | — |
menuExtrasList of menu extras to combine with the user's menu bar | array | Menu Extras |
menuExtraRange: /System/Library/CoreServices/Menu Extras/AirPort.menu, /System/Library/CoreServices/Menu Extras/Battery.menu, /System/Library/CoreServices/Menu Extras/Bluetooth.menu, /System/Library/CoreServices/Menu Extras/Clock.menu, /System/Library/CoreServices/Menu Extras/Displays.menu, /System/Library/CoreServices/Menu Extras/DwellControl.menu, /System/Library/CoreServices/Menu Extras/Eject.menu, /System/Library/CoreServices/Menu Extras/ExpressCard.menu, /System/Library/CoreServices/Menu Extras/Ink.menu, /System/Library/CoreServices/Menu Extras/IrDA.menu, /System/Library/CoreServices/Menu Extras/PPP.menu, /System/Library/CoreServices/Menu Extras/PPPoE.menu, /System/Library/CoreServices/Menu Extras/SafeEjectGPUExtra.menu, /System/Library/CoreServices/Menu Extras/Script, /System/Library/CoreServices/Menu Extras/Menu.menu, /System/Library/CoreServices/Menu Extras/TextInput.menu, /System/Library/CoreServices/Menu Extras/TimeMachine.menu, /System/Library/CoreServices/Menu Extras/UniversalAccess.menu, /System/Library/CoreServices/Menu Extras/User.menu, /System/Library/CoreServices/Menu Extras/VPN.menu, /System/Library/CoreServices/Menu Extras/Volume.menu, /System/Library/CoreServices/Menu Extras/WWAN.menu, /System/Library/CoreServices/Menu Extras/iChat.menu | string | Menu Extra Path |