the Base Policy is actually enforced for all installed endpoints where no other rules apply, even the ones with no users assigned in settings. Also the base policy will always stay enabled, because the principle we use here is the same as with firewalls, were the lowest rule is only applied if no other rule matches. Maybe we should improve the usability here a little bit, because if you clone the base policy, the cloned policy becomes an ordinary policy, as if you would have created a new one.
the Base Policy is actually enforced for all installed endpoints where no other rules apply, even the ones with no users assigned in settings. Also the base policy will always stay enabled, because the principle we use here is the same as with firewalls, were the lowest rule is only applied if no other rule matches. Maybe we should improve the usability here a little bit, because if you clone the base policy, the cloned policy becomes an ordinary policy, as if you would have created a new one.