Your message dated Wed, 23 Apr 2014 17:00:09 +0000
with message-id <[email protected]>
and subject line Bug#685415: fixed in shadow 1:4.2-1
has caused the Debian Bug report #685415,
regarding [PATCH]: improve the example login.defs configuration file
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
685415: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=685415
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: shadow
Severity: wishlist
Tags: patch

----- Forwarded message from Guido Trentalancia <[email protected]> -----

Date: Mon, 20 Aug 2012 12:52:48 +0200
From: Guido Trentalancia <[email protected]>
To: [email protected]
Cc: [email protected]
Subject: [Pkg-shadow-devel] [PATCH]: improve the example login.defs 
configuration file
X-Mailer: Webmail Client v1.5
Reply-To: Guido Trentalancia <[email protected]>
X-CRM114-Status: Good  ( pR: 15.3875 )

Slightly improve the login.defs configuration file by fixing a few typographic 
errors
and by trying to use a better format.

Signed-off-by: Guido Trentalancia <[email protected]>
---
 etc/login.defs |  102 ++++++++++++++++++++++++++++-----------------------------
 1 file changed, 51 insertions(+), 51 deletions(-)

--- shadow-4.1.5/etc/login.defs 2010-03-26 12:54:25.000000000 +0100
+++ shadow-4.1.5-login_defs_typo/etc/login.defs 2012-08-20 12:58:36.066488267 
+0200
@@ -6,18 +6,18 @@
 
 #
 # Delay in seconds before being allowed another attempt after a login failure
-# Note: When PAM is used, some modules may enfore a minimal delay (e.g.
-#       pam_unix enforces a 2s delay)
+# Note: When PAM is used, some modules may enforce a minimum delay (e.g.
+#       pam_unix(8) enforces a 2s delay)
 #
 FAIL_DELAY             3
 
 #
-# Enable logging and display of /var/log/faillog login failure info.
+# Enable logging and display of /var/log/faillog login(1) failure info.
 #
 FAILLOG_ENAB           yes
 
 #
-# Enable display of unknown usernames when login failures are recorded.
+# Enable display of unknown usernames when login(1) failures are recorded.
 #
 LOG_UNKFAIL_ENAB       no
 
@@ -27,7 +27,7 @@ LOG_UNKFAIL_ENAB      no
 LOG_OK_LOGINS          no
 
 #
-# Enable logging and display of /var/log/lastlog login time info.
+# Enable logging and display of /var/log/lastlog login(1) time info.
 #
 LASTLOG_ENAB           yes
 
@@ -50,13 +50,13 @@ OBSCURE_CHECKS_ENAB yes
 PORTTIME_CHECKS_ENAB   yes
 
 #
-# Enable setting of ulimit, umask, and niceness from passwd gecos field.
+# Enable setting of ulimit, umask, and niceness from passwd(5) gecos field.
 #
 QUOTAS_ENAB            yes
 
 #
-# Enable "syslog" logging of su activity - in addition to sulog file logging.
-# SYSLOG_SG_ENAB does the same for newgrp and sg.
+# Enable "syslog" logging of su(1) activity - in addition to sulog file 
logging.
+# SYSLOG_SG_ENAB does the same for newgrp(1) and sg(1).
 #
 SYSLOG_SU_ENAB         yes
 SYSLOG_SG_ENAB         yes
@@ -64,13 +64,13 @@ SYSLOG_SG_ENAB              yes
 #
 # If defined, either full pathname of a file containing device names or
 # a ":" delimited list of device names.  Root logins will be allowed only
-# upon these devices.
+# from these devices.
 #
 CONSOLE                /etc/securetty
 #CONSOLE       console:tty01:tty02:tty03:tty04
 
 #
-# If defined, all su activity is logged to this file.
+# If defined, all su(1) activity is logged to this file.
 #
 #SULOG_FILE    /var/log/sulog
 
@@ -82,33 +82,33 @@ MOTD_FILE   /etc/motd
 #MOTD_FILE     /etc/motd:/usr/lib/news/news-motd
 
 #
-# If defined, this file will be output before each login prompt.
+# If defined, this file will be output before each login(1) prompt.
 #
 #ISSUE_FILE    /etc/issue
 
 #
 # If defined, file which maps tty line to TERM environment parameter.
-# Each line of the file is in a format something like "vt100  tty01".
+# Each line of the file is in a format similar to "vt100  tty01".
 #
 #TTYTYPE_FILE  /etc/ttytype
 
 #
-# If defined, login failures will be logged here in a utmp format.
-# last, when invoked as lastb, will read /var/log/btmp, so...
+# If defined, login(1) failures will be logged here in a utmp format.
+# last(1), when invoked as lastb(1), will read /var/log/btmp, so...
 #
 FTMP_FILE      /var/log/btmp
 
 #
-# If defined, name of file whose presence which will inhibit non-root
-# logins.  The contents of this file should be a message indicating
+# If defined, name of file whose presence will inhibit non-root
+# logins.  The content of this file should be a message indicating
 # why logins are inhibited.
 #
 NOLOGINS_FILE  /etc/nologin
 
 #
 # If defined, the command name to display when running "su -".  For
-# example, if this is defined as "su" then a "ps" will display the
-# command is "-su".  If not defined, then "ps" would display the
+# example, if this is defined as "su" then ps(1) will display the
+# command as "-su".  If not defined, then ps(1) will display the
 # name of the shell actually being run, e.g. something like "-sh".
 #
 SU_NAME                su
@@ -158,10 +158,10 @@ ENV_PATH  PATH=/bin:/usr/bin
 #      TTYGROUP        Login tty will be assigned this group ownership.
 #      TTYPERM         Login tty will be set to this permission.
 #
-# If you have a "write" program which is "setgid" to a special group
-# which owns the terminals, define TTYGROUP to the group number and
-# TTYPERM to 0620.  Otherwise leave TTYGROUP commented out and assign
-# TTYPERM to either 622 or 600.
+# If you have a write(1) program which is "setgid" to a special group
+# which owns the terminals, define TTYGROUP as the number of such group
+# and TTYPERM as 0620.  Otherwise leave TTYGROUP commented out and
+# set TTYPERM to either 622 or 600.
 #
 TTYGROUP       tty
 TTYPERM                0600
@@ -183,13 +183,13 @@ ERASECHAR 0177
 KILLCHAR       025
 #ULIMIT                2097152
 
-# Default initial "umask" value used by login on non-PAM enabled systems.
-# Default "umask" value for pam_umask on PAM enabled systems.
-# UMASK is also used by useradd and newusers to set the mode of new home
-# directories.
+# Default initial "umask" value used by login(1) on non-PAM enabled systems.
+# Default "umask" value for pam_umask(8) on PAM enabled systems.
+# UMASK is also used by useradd(8) and newusers(8) to set the mode for new
+# home directories.
 # 022 is the default value, but 027, or even 077, could be considered
-# better for privacy. There is no One True Answer here: each sysadmin
-# must make up her mind.
+# for increased privacy. There is no One True Answer here: each sysadmin
+# must make up his/her mind.
 UMASK          022
 
 #
@@ -214,12 +214,12 @@ PASS_WARN_AGE     7
 SU_WHEEL_ONLY  no
 
 #
-# If compiled with cracklib support, where are the dictionaries
+# If compiled with cracklib support, sets the path to the dictionaries
 #
 CRACKLIB_DICTPATH      /var/cache/cracklib/cracklib_dict
 
 #
-# Min/max values for automatic uid selection in useradd
+# Min/max values for automatic uid selection in useradd(8)
 #
 UID_MIN                         1000
 UID_MAX                        60000
@@ -228,7 +228,7 @@ SYS_UID_MIN           101
 SYS_UID_MAX              999
 
 #
-# Min/max values for automatic gid selection in groupadd
+# Min/max values for automatic gid selection in groupadd(8)
 #
 GID_MIN                         1000
 GID_MAX                        60000
@@ -237,12 +237,12 @@ SYS_GID_MIN                 101
 SYS_GID_MAX              999
 
 #
-# Max number of login retries if password is bad
+# Max number of login(1) retries if password is bad
 #
 LOGIN_RETRIES          5
 
 #
-# Max time in seconds for login
+# Max time in seconds for login(1)
 #
 LOGIN_TIMEOUT          60
 
@@ -264,12 +264,12 @@ PASS_ALWAYS_WARN  yes
 #PASS_MAX_LEN          8
 
 #
-# Require password before chfn/chsh can make any changes.
+# Require password before chfn(1)/chsh(1) can make any changes.
 #
 CHFN_AUTH              yes
 
 #
-# Which fields may be changed by regular users using chfn - use
+# Which fields may be changed by regular users using chfn(1) - use
 # any combination of letters "frwh" (full name, room number, work
 # phone, home phone).  If not defined, no changes are allowed.
 # For backward compatibility, "yes" = "rwh" and "no" = "frwh".
@@ -294,13 +294,13 @@ CHFN_RESTRICT             rwh
 # Note: If you use PAM, it is recommended to use a value consistent with
 # the PAM modules configuration.
 #
-# This variable is deprecated. You should use ENCRYPT_METHOD.
+# This variable is deprecated. You should use ENCRYPT_METHOD instead.
 #
 #MD5_CRYPT_ENAB        no
 
 #
 # Only works if compiled with ENCRYPTMETHOD_SELECT defined:
-# If set to MD5 , MD5-based algorithm will be used for encrypting password
+# If set to MD5, MD5-based algorithm will be used for encrypting password
 # If set to SHA256, SHA256-based algorithm will be used for encrypting password
 # If set to SHA512, SHA512-based algorithm will be used for encrypting password
 # If set to DES, DES-based algorithm will be used for encrypting password 
(default)
@@ -315,12 +315,12 @@ CHFN_RESTRICT             rwh
 # Only works if ENCRYPT_METHOD is set to SHA256 or SHA512.
 #
 # Define the number of SHA rounds.
-# With a lot of rounds, it is more difficult to brute forcing the password.
-# But note also that it more CPU resources will be needed to authenticate
-# users.
+# With a lot of rounds, it is more difficult to brute-force the password.
+# However, more CPU resources will be needed to authenticate users if
+# this value is increased.
 #
 # If not specified, the libc will choose the default number of rounds (5000).
-# The values must be inside the 1000-999999999 range.
+# The values must be within the 1000-999999999 range.
 # If only one of the MIN or MAX values is set, then this value will be used.
 # If MIN > MAX, the highest value will be used.
 #
@@ -329,18 +329,18 @@ CHFN_RESTRICT             rwh
 
 #
 # List of groups to add to the user's supplementary group set
-# when logging in on the console (as determined by the CONSOLE
+# when logging in from the console (as determined by the CONSOLE
 # setting).  Default is none.
 #
 # Use with caution - it is possible for users to gain permanent
-# access to these groups, even when not logged in on the console.
+# access to these groups, even when not logged in from the console.
 # How to do it is left as an exercise for the reader...
 #
 #CONSOLE_GROUPS                floppy:audio:cdrom
 
 #
 # Should login be allowed if we can't cd to the home directory?
-# Default in no.
+# Default is no.
 #
 DEFAULT_HOME   yes
 
@@ -362,14 +362,14 @@ ENVIRON_FILE      /etc/environment
 # (examples: 022 -> 002, 077 -> 007) for non-root users, if the uid is
 # the same as gid, and username is the same as the primary group name.
 #
-# This also enables userdel to remove user groups if no members exist.
+# This also enables userdel(8) to remove user groups if no members exist.
 #
 USERGROUPS_ENAB yes
 
 #
-# If set to a non-nul number, the shadow utilities will make sure that
+# If set to a non-zero number, the shadow utilities will make sure that
 # groups never have more than this number of users on one line.
-# This permit to support split groups (groups split into multiple lines,
+# This permits to support split groups (groups split into multiple lines,
 # with the same group ID, to avoid limitation of the line length in the
 # group file).
 #
@@ -378,10 +378,10 @@ USERGROUPS_ENAB yes
 #MAX_MEMBERS_PER_GROUP 0
 
 #
-# If useradd should create home directories for users by default (non
-# system users only)
-# This option is overridden with the -M or -m flags on the useradd command
-# line.
+# If useradd(8) should create home directories for users by default (non
+# system users only).
+# This option is overridden with the -M or -m flags on the useradd(8)
+# command-line.
 #
 #CREATE_HOME     yes
 
 



Attachment: signature.asc
Description: Digital signature


--- End Message ---
--- Begin Message ---
Source: shadow
Source-Version: 1:4.2-1

We believe that the bug you reported is fixed in the latest version of
shadow, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Christian Perrier <[email protected]> (supplier of updated shadow package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Format: 1.8
Date: Tue, 22 Apr 2014 09:01:42 +0200
Source: shadow
Binary: passwd login uidmap
Architecture: source i386
Version: 1:4.2-1
Distribution: experimental
Urgency: low
Maintainer: Shadow package maintainers 
<[email protected]>
Changed-By: Christian Perrier <[email protected]>
Description: 
 login      - system login tools
 passwd     - change and administer password and group data
 uidmap     - programs to help use subuids
Closes: 583971 670132 675824 677275 677441 677812 679152 685415 688252 688260 
691459 705301 713979 718356 720004 739981 744877
Changes: 
 shadow (1:4.2-1) experimental; urgency=low
 .
   [ Nicolas FRANCOIS (Nekral) ]
   * New upstream release. Fixes:
     - Invalid free() in su fixed by using strdup(). Thanks to Serge
       Hallyn for the patch. Closes: #691459
     - Kill the child process group, rather than just the
       immediate child; this is needed now that su no
       longer starts a controlling terminal when not running an
       interactive shell. Thanks to Colin Watson for the patch.
       Closes: #713979
     - German manpages translation update. Closes: #679152
     - Improve login.defs (typographic errors and better format).
       Closes: #685415
     - Russian translation update. Closes: #718356
     - Do not assume random() is limited by RAND_MAX.  Closes: #677275
     - Support C libraries with unknown fields in struct passwd.
       Closes: #675824
     - su: child cleanup is performed before terminating PAM sessions. This
       avoids anoying "...terminated" messages when PAM module send signal to
       su during session close. Closes: #670132
     - vipw/vigr is checking arguments provided after options. Closes: #677812
     - Updated Japanese translation. Closes: #720004
     - vipw: Fix error reporting when editor fails. Closes: #688260
   * Moved to git: replace Vcs-Git in place of Vcs-Svn and adapt
     Vcs-Browser.
   * Add pam_loginuid to login PAM settings. Closes: #677441
   * passwd.install: add new subuid.5 and subgid.5 manpages
   * debian/rules, debian/control, debian/uidmap.install: create new uidmap
     package containing the new setuid-root binaries newuidmap and newgidmap
     Set uidmap as priority optional.
   * debian/login.su.pam: Enable pam_limits by default. Closes: #705301
   * debian/rules: Set default editor to sensible-editor for vipw.
     Closes: #688252
 .
   [ Micah Anderson ]
   * added debian/patches/userns to enable use of subuids, plus some bugfix
     patches on top of them, patches from Eric Biederman, pulled from
     Ubuntu. Closes: #739981
   * Allow LXC devices (lxc/console, lxc/tty[1234]) in securetty.linux
   * Update documentation of UMASK: Explain that USERGROUPS_ENAB will modify
     this default for UPGs. (Closes: #583971)
   * login.postinst: install a default /etc/subuid and /etc/subgid
   * fix installation of setuid/setgid/newuidmap/newgid/map man pages
 .
   [ Laurent Bigonville ]
   * Switch to dpkg-source 3.0 (quilt) format
   * Add build-dependency against bison
   * Call dh-autoreconf since we need to regenerate all the autofoo files
 .
   [ Philippe Grégoire ]
   * Fix 1000_configure_userns to avoid dropping a needed #endif
     Closes: #744877
 .
   [ Christian Perrier ]
   * Bump Standards to 3.9.5 (checked)
   * Use 'set -e' in postinst scripts and not in thei shebang line
   * Explicitly point to GPL-2 document in debian/copyright
Checksums-Sha1: 
 7a953806327d77d1d28afb499638b28a87f7e2b0 2280 shadow_4.2-1.dsc
 77feddc823a42623462d3c3a9a49f2f6cf213ca9 1088696 shadow_4.2.orig.tar.xz
 e06d4161e168239a3892fcd0678ff318d1959f01 89984 shadow_4.2-1.debian.tar.xz
 07a31e6ccbaa6b60655342d5b7d880cd6ec2030a 936356 passwd_4.2-1_i386.deb
 6b6a43007c59294c10d2c93c862378cfd209db15 715258 login_4.2-1_i386.deb
 7596c5534cbbf515a1e76ae9d79f0ef25b99c50a 253058 uidmap_4.2-1_i386.deb
Checksums-Sha256: 
 c261dd9f07facaf28aac9be7428e6261718352e1b614e009d77868d8478064a7 2280 
shadow_4.2-1.dsc
 c5bd72c4ecb438b99289e4630b22ea0626987a378d084910dbe59eceaa34be1d 1088696 
shadow_4.2.orig.tar.xz
 79334c75ab65c0213ab456676f4202ba8d501c9f5db7b6e854596ea9dd20a857 89984 
shadow_4.2-1.debian.tar.xz
 65922e8615fedf7fc1899ecc013c609b2617f364982874faf24d13db98d8b720 936356 
passwd_4.2-1_i386.deb
 fbbf62a7a782ed008a0b7db1008bea2c703e78a7f6ccb7fadea914b0b2f19e29 715258 
login_4.2-1_i386.deb
 c8de04906b3f69b8868b9847985b510a11b2a0dd727695f2c1d1d0081a74e173 253058 
uidmap_4.2-1_i386.deb
Files: 
 544065f3809d01750af0508224f02d85 936356 admin required passwd_4.2-1_i386.deb
 490d08a75d66fed273cc3d45dfbe09dc 715258 admin required login_4.2-1_i386.deb
 e3ebdc013ae2f49974272dbc6d912e4a 253058 admin optional uidmap_4.2-1_i386.deb
 1c3468e3c632e9d1a2d26d417e2c5aff 2280 admin required shadow_4.2-1.dsc
 912a5957c1471acccedbc2a635e36f5e 1088696 admin required shadow_4.2.orig.tar.xz
 da1fcef9574c7cf2b206439e0fbefb57 89984 admin required 
shadow_4.2-1.debian.tar.xz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.12 (GNU/Linux)
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=0Bgo
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to