Hello all,

This is a final request for comment and request for testing.
I'll be NMUing this very soon unless I get some feedback.

On Fri, Jun 12, 2020 at 08:35:39PM +0200, Andreas Henriksson wrote:
> Control: forwarded -1 https://salsa.debian.org/ah/pam/-/commits/master-1.4.0
[...]

I've now done some basic testing of my previous packaging work
of pam 1.4.0 including pam_umask and usergroups enabled by default.
(As well as updating debian/NEWS and debian/changelog accordingly.)

There has been some previous discussion and apparent opposition towards
extending the common-* configuration, eg. in #207394 and
#583958 -> https://bugs.launchpad.net/ubuntu/+source/pam/+bug/253096
I personally don't see it viable that all applications reimplement
the same thing and think umask is generic enough that it should be
globally enforced to avoid opening up any loopholes. If there's still
disagreement around this then please speak up now or forever hold your
breath!
See:
https://salsa.debian.org/ah/pam/-/commit/4b44d93dbb8c435e0ff314e4289e168cdfc9824e

I would be very happy if people who have more complex pam configurations
would test this! Do you have a need for a particular module being loaded
before pam_umask for example? (Someone claimed pam_group needs to be
loaded before pam_umask somewhere....)

In general I would also be very happy if someone could review the
rebasing of the debian/patches.

If you're busy but interested in helping out with testing, please shoot
me a mail so I'm aware of your interest and can give you some more time.
If the result is plain silence I'll likely go ahead with NMU very soon.

Regards,
Andreas Henriksson

Reply via email to