Yes, there are policies like GPO but its done on a per application basis. Unlike with windows the "policies" so to speak are not all centrally put in one location.
Defining a policy for Apache would involve apache configs, whilst defining a policy for NTP would be done in the ntp.conf.
As for defining access policies to such systems, then that might involve innovative use of group permissions and/or the use of sudo or pam.
|