Missing part of the workaround for Bug 2149 - need to remove bootstrap.xml as well to disable SBS use of bootstrap.flm
PlatSecEnforcement ON
PlatSecDiagnostics ON
PlatSecDisabledCaps -TCB+CommDD-PowerMgmt+MultimediaDD-ReadDeviceData+WriteDeviceData-DRM+TrustedUI-ProtServ+DiskAdmin-NetworkControl+AllFiles-SwEvent+NetworkServices-LocalServices+ReadUserData-WriteUserData+Location