Control: tags -1 patch On Tue, Jun 28, 2016 at 11:06:57AM +0200, Nicolas Braud-Santoni wrote: > > It seems to me we have two issues at play here: > - auditd violating the adm group convention; > - apparmor-notify using a suboptimal mechanism to stream auditd logs. > > Could we fix the permissions on /var/log/auditd and open an issue > upstream for apparmor-notify to use the unix socket plugin, esp. > since no-one finds the permissions change problematic?
Regarding the first part, I pushed to the packaging repo, in the nicoo/debian branch, a patch for this issue along with various other fixes: https://anonscm.debian.org/cgit/collab-maint/audit.git/log/?h=nicoo/debian Best, nicoo