Your message dated Thu, 21 Apr 2016 13:19:50 +0000
with message-id <e1atewm-0000fm...@franck.debian.org>
and subject line Bug#822070: fixed in courier 0.75.0-19
has caused the Debian Bug report #822070,
regarding courier-mta: Transition from "daemon" user to "courier" user is 
handled terribly
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact ow...@bugs.debian.org
immediately.)


-- 
822070: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=822070
Debian Bug Tracking System
Contact ow...@bugs.debian.org with problems
--- Begin Message ---
Package: courier-mta
Version: 0.75.0-18
Severity: grave
Justification: renders package unusable

Recently I decided to upgrade courier (mta and imap) on one of my mail servers. 
It was a disaster. The quality of these packages is abysmal and dangerous. This 
is one of the many serious, grave, and critical bugs I ran into during that 
process.



It appears that recently a change was made to transition the courier-* system 
away from the generic "daemon" user towards the "courier" user. This is good 
and probably should have been a done a long time ago.

However, this process is being handled terribly and will almost certainly 
result in broken mail systems and possibly (confirmed in my case) data loss.

First, the administrator needs to be made aware of this change. It needs to be 
a NEWS item, there should probably be a confirmation dialog prompting the user 
for acknowledgment, and it needs to be documented, which it currently is not 
short of a tiny changelog line.

In the case of /etc/courier/esmtpd, the MAILUSER and MAILGROUP parameters need 
to be checked and the administrator should be VIOLENTLY notified if these need 
to get updated. There may be other configuration items which need updating 
which I am not aware of. I use only a portion of the courier suite.

Proper file permissions need to be set. in my case, the courier system could 
not read any of my .pem files and some other files/directories because they 
were set to ownership root:courier but had permissions -rw-------. A chmod g+r 
should probably be done against similar files.

A change like this needs to be done carefully and with consideration.



-- System Information:
Debian Release: stretch/sid
  APT prefers unstable
  APT policy: (500, 'unstable'), (500, 'testing'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 4.3.0-1-amd64 (SMP w/2 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: sysvinit (via /sbin/init)

Versions of packages courier-mta depends on:
ii  courier-authlib        0.66.4-7
ii  courier-base           0.75.0-18
ii  debconf [debconf-2.0]  1.5.59
ii  libc6                  2.22-7
ii  libcourier-unicode1    1.4-2
ii  libgcc1                1:5.3.1-14
ii  libgdbm3               1.8.3-13.1
ii  libidn11               1.32-3
ii  libnet-cidr-perl       0.17-1
ii  libperl5.22            5.22.1-10
ii  libstdc++6             5.3.1-14
ii  sysvinit-utils         2.88dsf-59.3

courier-mta recommends no packages.

Versions of packages courier-mta suggests:
ii  bsd-mailx [mail-reader]  8.1.2-0.20160123cvs-2
ii  courier-doc              0.75.0-18
ii  courier-filter-perl      0.200+ds-4
pn  couriergrey              <none>
ii  emacs24 [mail-reader]    24.5+1-6+b2
ii  mutt [mail-reader]       1.5.24-1+b1
ii  s-nail [mail-reader]     14.8.8-1

-- Configuration Files:
/etc/courier/aliases/system [Errno 13] Permission denied: 
u'/etc/courier/aliases/system'
/etc/courier/courierd changed [not included]
/etc/courier/dsnheader.txt changed [not included]
/etc/courier/esmtpauthclient [Errno 13] Permission denied: 
u'/etc/courier/esmtpauthclient'
/etc/courier/esmtpd changed [not included]
/etc/courier/esmtpd-msa changed [not included]
/etc/courier/esmtpd-ssl changed [not included]
/etc/courier/esmtpd.cnf [Errno 13] Permission denied: u'/etc/courier/esmtpd.cnf'
/etc/courier/smtpaccess/default [Errno 13] Permission denied: 
u'/etc/courier/smtpaccess/default'
/etc/init.d/courier-mta changed [not included]
/etc/init.d/courier-mta-ssl changed [not included]

-- debconf information excluded

--- End Message ---
--- Begin Message ---
Source: courier
Source-Version: 0.75.0-19

We believe that the bug you reported is fixed in the latest version of
courier, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to 822...@bugs.debian.org,
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Ondřej Surý <ond...@debian.org> (supplier of updated courier package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing ftpmas...@ftp-master.debian.org)


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA512

Format: 1.8
Date: Thu, 21 Apr 2016 14:40:26 +0200
Source: courier
Binary: courier-base courier-maildrop courier-mlm courier-mta courier-faxmail 
courier-webadmin sqwebmail courier-pcp courier-pop courier-imap courier-ldap 
courier-doc courier-ssl courier-mta-ssl courier-pop-ssl courier-imap-ssl
Architecture: source
Version: 0.75.0-19
Distribution: unstable
Urgency: medium
Maintainer: Stefan Hornburg (Racke) <ra...@linuxia.de>
Changed-By: Ondřej Surý <ond...@debian.org>
Description:
 courier-base - Courier mail server - base system
 courier-doc - Courier mail server - additional documentation
 courier-faxmail - Courier mail server - Fax<->mail gateway
 courier-imap - Courier mail server - IMAP server
 courier-imap-ssl - Courier mail server - IMAP over SSL [transitional]
 courier-ldap - Courier mail server - LDAP support
 courier-maildrop - Courier mail server - mail delivery agent [transitional 
package]
 courier-mlm - Courier mail server - mailing list manager
 courier-mta - Courier mail server - ESMTP daemon
 courier-mta-ssl - Courier mail server - ESMTP over SSL
 courier-pcp - Courier mail server - PCP server
 courier-pop - Courier mail server - POP3 server
 courier-pop-ssl - Courier mail server - POP3 over SSL [transitional]
 courier-ssl - Courier mail server - SSL/TLS Support [transitional]
 courier-webadmin - Courier mail server - web-based administration frontend
 sqwebmail  - Courier mail server - webmail server
Closes: 822065 822066 822070 822071
Changes:
 courier (0.75.0-19) unstable; urgency=medium
 .
   * Fix cut&paste error in courier-mta init.d script (Closes: #822065)
   * Fix cut&paste error in courier-mta-ssl init.d script (Closes: #822066)
   * Add NEWS file about default user changes and
     courier-maildrop->maildrop changes (Closes: #822071, #822070)
Checksums-Sha1:
 c90fb88b772cf6795d78f1458ac14b22d26854e0 3180 courier_0.75.0-19.dsc
 04a782d4dd9c937d4e046b9328693e2b66be2946 93584 courier_0.75.0-19.debian.tar.xz
Checksums-Sha256:
 e350abfbb4a09515863e40d0d4cffc504f569eb5dcdedcf4a5c2d7b111af5007 3180 
courier_0.75.0-19.dsc
 d5df836830c6e7feb26d22f0fb6c9b51e0964d5a3cc4bfae514055f67c4c7136 93584 
courier_0.75.0-19.debian.tar.xz
Files:
 a012eb4277413461fce86643f41a298f 3180 mail optional courier_0.75.0-19.dsc
 700686b22981b1eddaf71d2a821a0057 93584 mail optional 
courier_0.75.0-19.debian.tar.xz

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v2
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=12b6
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to