On Mon, May 09, 2011 at 06:44:11PM +0300, Teodor MICU wrote:
> 2011/5/5 Steve Langasek <[email protected]>:
> > The manpage appears to be inaccurate, then and needs fixing; but that's
> > entirely separate from this bug report, which was about wildcard nofile
> > limits not being applied *at all*.

> I didn't found any reference about this even after re-reading all the
> messages in the BTS. However, this might have been the intention but
> the example given by the reporter is for 'root' user.

The submitter wrote, "I have tried the exact similar setup on an older
server and it works fine."  So he must have compared this as a non-root
user, because wildcard limits have not been applied to root in Debian's
pam package for over a decade.

> >> And in practice this is the only way to make 'nofile' limit work, by
> >> duplicating the wildcard limit for 'root' (see my config below).

> > Correct.  This is a Debian divergence from upstream that's been carried by
> > the pam package for more than a decade.  We should have a conversation about
> > whether we want root to continue to be treated specially by pam_limits given
> > that this has never been upstreamed, but that's not a "bug" per se, and
> > again is not the behavior that this bug report was filed about.

> I think any divergences from upstream should be documented, probably
> in README.Debian? At least for as long as there are divergences.

That's fine.  Please file a separate bug report.

-- 
Steve Langasek                   Give me a lever long enough and a Free OS
Debian Developer                   to set it on, and I can move the world.
Ubuntu Developer                                    http://www.debian.org/
[email protected]                                     [email protected]

Attachment: signature.asc
Description: Digital signature

Reply via email to