Your message dated Sat, 26 Dec 2015 03:51:28 +0000
with message-id <[email protected]>
and subject line Bug#705063: fixed in kstart 4.2-1
has caused the Debian Bug report #705063,
regarding kstart: Does not retry in the event of temporary DNS errors
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)
--
705063: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=705063
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: kstart
Version: 4.1-2
Severity: normal
Whilst troubleshooting an issue with startup of a daemon invoked via
k5start and supervise, we noticed that k5start appears to exit, rather
than retrying, if it is unable to resolve DNS (in this case, the local
caching resolver was not started, owing to system startup dependency
issues), whist getting AFS tokens. Here's a manual test with the resolver
down.
flexible-demeanour:/home/dom# /usr/bin/k5start -f
/etc/apache2-instances/sysdev.oucs-register/krb5.keytab -l 10h -K 10 -t -I
ox.ac.uk -S afs -v -U -- /usr/bin/fghack /usr/sbin/apache2 -f
/etc/apache2-instances/sysdev.oucs-register/apache2.conf -k start
Kerberos initialization for www-data/[email protected]
for service afs/ox.ac.uk
k5start: authenticating as www-data/[email protected]
k5start: getting tickets for afs/[email protected]
k5start: error getting credentials: Resource temporarily unavailable
flexible-demeanour:/home/dom# echo $?
1
I wasn't sure whether this counted as a normal bug or a wishlist feature
request, although I note that the manpage says, of -K:
If an error occurs in refreshing the ticket cache, the wake-up
interval will be shortened to one minute and the operation retried
at that interval for as long as the error persists.
which one might interpret to mean that this error should be caught and
retries should happen.
The system in question wasn't the one where I'm writing this report,
but it was also a wheezy system.
Thanks,
Dominic.
-- System Information:
Debian Release: 7.0
APT prefers testing-updates
APT policy: (500, 'testing-updates'), (500, 'testing')
Architecture: amd64 (x86_64)
Kernel: Linux 3.2.0-4-amd64 (SMP w/4 CPU cores)
Locale: LANG=en_GB.UTF-8, LC_CTYPE=en_GB.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Versions of packages kstart depends on:
ii libc6 2.13-38
ii libkrb5-3 1.10.1+dfsg-4+nmu1
kstart recommends no packages.
kstart suggests no packages.
-- no debconf information
--- End Message ---
--- Begin Message ---
Source: kstart
Source-Version: 4.2-1
We believe that the bug you reported is fixed in the latest version of
kstart, which is due to be installed in the Debian FTP archive.
A summary of the changes between this version and the previous one is
attached.
Thank you for reporting the bug, which will now be closed. If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.
Debian distribution maintenance software
pp.
Russ Allbery <[email protected]> (supplier of updated kstart package)
(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256
Format: 1.8
Date: Fri, 25 Dec 2015 17:19:54 -0800
Source: kstart
Binary: kstart
Architecture: source amd64
Version: 4.2-1
Distribution: unstable
Urgency: medium
Maintainer: Russ Allbery <[email protected]>
Changed-By: Russ Allbery <[email protected]>
Description:
kstart - Kerberos kinit supporting AFS and ticket refreshing
Closes: 705063 725175
Changes:
kstart (4.2-1) unstable; urgency=medium
.
* New upstream release.
- k5start with -K or a command no longer exits if the initial
authentication fails (unless -x was given). (Closes: #705063)
- k5start and krenew retry the initial authentication with exponential
backoff, before running any command. (Closes: #725175)
- k5start cleans up temporary ticket caches in failures.
- The -H flag can now be used in combination with -K.
- Add new -a flag to both k5start and krenew to attempt authentication
or ticket renewal each time the daemon wakes up.
- Fix k5start and krenew to not reject the -b flag with -K or a
command.
* Drop all patches, merged upstream.
* Add debian/gbp.conf reflecting the branch layout of the default
packaging repository.
* Refresh upstream signing key.
* Enable all compiler hardening options.
* Update standards version to 3.9.6 (no changes required).
Checksums-Sha1:
4b3d553c10f26c91072ad253bca8b11159c78835 1490 kstart_4.2-1.dsc
6cc330aae3d9040cce3895b425cd17d5e70ac978 219144 kstart_4.2.orig.tar.xz
1d496cedea77a89845867ea9b7c76642a70a9bd2 16100 kstart_4.2-1.debian.tar.xz
65e55fc5b346abc9039348d298582d951a63ab32 61422 kstart-dbgsym_4.2-1_amd64.deb
7db56666e4720963316a881fc0cb893783213cd4 60184 kstart_4.2-1_amd64.deb
Checksums-Sha256:
419561fee759bf4b4b2a22c99499eb3ba73ce612295f88aacd6556f6e2ad8e2b 1490
kstart_4.2-1.dsc
86a67ad6183e811b01510c918a760cb5681184a13134d224c5731120fbf920c4 219144
kstart_4.2.orig.tar.xz
37151309f1a74860a15b9b1171a74e96229adbb0569f43746a62737d37ce6e64 16100
kstart_4.2-1.debian.tar.xz
fec2e1df539dc88275eb29a160758d07c0fad7ac126e2736e79f5d7330462933 61422
kstart-dbgsym_4.2-1_amd64.deb
d52a1c6fe9f285633338c9c3bab05dc03c25b064299182fae545fa1e3255ddcf 60184
kstart_4.2-1_amd64.deb
Files:
808d841ef83cf60cb7bcd6cb1045b743 1490 net optional kstart_4.2-1.dsc
4df787abdb38e5d0164fefb9900e0b2c 219144 net optional kstart_4.2.orig.tar.xz
5ef8068f0b66a367d53b99005f239253 16100 net optional kstart_4.2-1.debian.tar.xz
a1a761af0dd02a7bae0768219a3f9795 61422 debug extra
kstart-dbgsym_4.2-1_amd64.deb
0c564ad50a7824d05210d6fa7cf5e2d0 60184 net optional kstart_4.2-1_amd64.deb
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2
iQEcBAEBCAAGBQJWff3qAAoJEH2AMVxXNt513OkH/02KHiWiTZKp7UXqau3rFAp3
APlePWV4wrmd63HiS8t5ko/7/PJeGkI9XSotowdzyfkUh1KAp4ZiYUOcL8WSED8u
heh+PHTfB5c7emP+GQcgTE1N6+uYdR6YfPgyjcf+x87KQyJRE9vj2epSqGIwyj8P
IP0COSh07v2gWNyASy29YqY0TeTCj1SjcieXGYdvRJJV4B83jZzu55M+DM/bMOA6
cZM6PfpnYoqBX36GNtICIJ2ZFHE/R2a++en23Z2/jIZv4Et4weIezbVTPz8ZTk/G
SSf08N/rKg/RsEHE4QU/SXIbac0aKVbmy8DmcFJ9aaFxbDzpOK3iMjjJTKP8XBg=
=E6T9
-----END PGP SIGNATURE-----
--- End Message ---