File: //usr/share/polkit-1/actions/org.fedoraproject.FirewallD1.desktop.policy.choice
<?xml version="1.0" encoding="UTF-8"?>
<!DOCTYPE policyconfig PUBLIC
 "-//freedesktop//DTD PolicyKit Policy Configuration 1.0//EN"
 "http://www.freedesktop.org/standards/PolicyKit/1/policyconfig.dtd">
<policyconfig>
  <vendor>FirewallD</vendor>
  <vendor_url>http://firewalld.org</vendor_url>
  <action id="org.fedoraproject.FirewallD1.all">
    <description>Firewall</description>
    <message>System policy prevents inspecting and changing firewall</message>
    <defaults>
      <allow_any>auth_admin_keep</allow_any>
      <allow_inactive>auth_admin_keep</allow_inactive>
      <allow_active>auth_admin_keep</allow_active>
    </defaults>
    <annotate key="org.freedesktop.policykit.imply">org.fedoraproject.FirewallD1.info org.fedoraproject.FirewallD1.config org.fedoraproject.FirewallD1.config.info org.fedoraproject.FirewallD1.direct org.fedoraproject.FirewallD1.direct.info org.fedoraproject.FirewallD1.policies org.fedoraproject.FirewallD1.policies.info</annotate>
  </action>
  <action id="org.fedoraproject.FirewallD1.info">
    <description>General firewall information</description>
    <message>System policy prevents getting general firewall information</message>
    <defaults>
      <allow_any>yes</allow_any>
      <allow_inactive>yes</allow_inactive>
      <allow_active>yes</allow_active>
    </defaults>
  </action>
  <action id="org.fedoraproject.FirewallD1.config">
    <description>Firewall configuration</description>
    <message>System policy prevents changing the firewall configuration</message>
    <defaults>
      <allow_any>auth_admin_keep</allow_any>
      <allow_inactive>auth_admin_keep</allow_inactive>
      <allow_active>auth_admin_keep</allow_active>
    </defaults>
    <annotate key="org.freedesktop.policykit.imply">org.fedoraproject.FirewallD1.config.info</annotate>
  </action>
  <action id="org.fedoraproject.FirewallD1.config.info">
    <description>Firewall configuration</description>
    <message>System policy prevents inspecting the firewall configuration</message>
    <defaults>
      <allow_any>yes</allow_any>
      <allow_inactive>yes</allow_inactive>
      <allow_active>yes</allow_active>
    </defaults>
  </action>
  <action id="org.fedoraproject.FirewallD1.direct">
    <description>Firewall direct interface</description>
    <message>System policy prevents using the firewall direct interface</message>
    <defaults>
      <allow_any>auth_admin_keep</allow_any>
      <allow_inactive>auth_admin_keep</allow_inactive>
      <allow_active>auth_admin_keep</allow_active>
    </defaults>
    <annotate key="org.freedesktop.policykit.imply">org.fedoraproject.FirewallD1.direct.info</annotate>
  </action>
  <action id="org.fedoraproject.FirewallD1.direct.info">
    <description>Firewall direct interface</description>
    <message>System policy prevents inspecting the firewall direct interface</message>
    <defaults>
      <allow_any>yes</allow_any>
      <allow_inactive>yes</allow_inactive>
      <allow_active>yes</allow_active>
    </defaults>
  </action>
  <action id="org.fedoraproject.FirewallD1.policies">
    <description>Firewall policies interface</description>
    <message>System policy prevents using the firewall policies interface</message>
    <defaults>
      <allow_any>auth_admin_keep</allow_any>
      <allow_inactive>auth_admin_keep</allow_inactive>
      <allow_active>auth_admin_keep</allow_active>
    </defaults>
    <annotate key="org.freedesktop.policykit.imply">org.fedoraproject.FirewallD1.policies.info</annotate>
  </action>
  <action id="org.fedoraproject.FirewallD1.policies.info">
    <description>Firewall policies interface</description>
    <message>System policy prevents inspecting the firewall policies interface</message>
    <defaults>
      <allow_any>yes</allow_any>
      <allow_inactive>yes</allow_inactive>
      <allow_active>yes</allow_active>
    </defaults>
  </action>
</policyconfig>