Package: icinga2 Version: 2.11.3-1 Severity: important
Dear Maintainer, * What led up to the situation? On a fresh Debian testing and icinga2 install I ran: $ sudo icinga2 api setup * What was the outcome of this action? icinga@icinga:~$ sudo icinga2 api setup information/cli: Generating new CA. information/base: Writing private key to '/var/lib/icinga2/ca//ca.key'. information/base: Writing X509 certificate to '/var/lib/icinga2/ca//ca.crt'. information/cli: Generating new CSR in '/var/lib/icinga2/certs//icinga.csr'. information/base: Writing private key to '/var/lib/icinga2/certs//icinga.key'. information/base: Writing certificate signing request to '/var/lib/icinga2/certs//icinga.csr'. information/cli: Signing CSR with CA and writing certificate to '/var/lib/icinga2/certs//icinga.crt'. information/pki: Writing certificate to file '/var/lib/icinga2/certs//icinga.crt'. information/cli: Copying CA certificate to '/var/lib/icinga2/certs//ca.crt'. information/cli: Adding new ApiUser 'root' in '/etc/icinga2/conf.d/api-users.conf'. critical/Application: Error: Function call 'mkstemp' for file '/etc/icinga2/conf.d/api-users.conf.XXXXXX' failed with error code 13, 'Permission denied' Additional information is available in '/var/log/icinga2/crash/report.1583766708.079641' Aborted * What outcome did you expect instead? icinga@icinga:~$ sudo icinga2 api setup information/cli: Generating new CA. information/base: Writing private key to '/var/lib/icinga2/ca//ca.key'. information/base: Writing X509 certificate to '/var/lib/icinga2/ca//ca.crt'. information/cli: Generating new CSR in '/var/lib/icinga2/certs//icinga.csr'. information/base: Writing private key to '/var/lib/icinga2/certs//icinga.key'. information/base: Writing certificate signing request to '/var/lib/icinga2/certs//icinga.csr'. information/cli: Signing CSR with CA and writing certificate to '/var/lib/icinga2/certs//icinga.crt'. information/pki: Writing certificate to file '/var/lib/icinga2/certs//icinga.crt'. information/cli: Copying CA certificate to '/var/lib/icinga2/certs//ca.crt'. information/cli: Adding new ApiUser 'root' in '/etc/icinga2/conf.d/api-users.conf'. information/cli: Enabling the 'api' feature. Enabling feature api. Make sure to restart Icinga 2 for these changes to take effect. information/cli: Updating 'NodeName' constant in '/etc/icinga2/constants.conf'. information/cli: Created backup file '/etc/icinga2/constants.conf.orig'. information/cli: Updating 'ZoneName' constant in '/etc/icinga2/constants.conf'. information/cli: Backup file '/etc/icinga2/constants.conf.orig' already exists. Skipping backup. Done. Now restart your Icinga 2 daemon to finish the installation! -- System Information: Debian Release: bullseye/sid APT prefers testing APT policy: (500, 'testing') Architecture: amd64 (x86_64) Kernel: Linux 5.4.0-4-amd64 (SMP w/1 CPU core) Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8), LANGUAGE=en_US:en (charmap=UTF-8) Shell: /bin/sh linked to /usr/bin/dash Init: systemd (via /run/systemd/system) LSM: AppArmor: enabled Versions of packages icinga2 depends on: ii icinga2-bin 2.11.3-1 ii icinga2-common 2.11.3-1 Versions of packages icinga2 recommends: ii icinga2-doc 2.11.3-1 ii libreadline7 7.0-5 ii monitoring-plugins-basic [nagios-plugins-basic] 2.2-6 Versions of packages icinga2 suggests: pn vim-icinga2 <none> -- no debconf information

