-------------------------------------------------------------------------------- Fedora Update Notification FEDORA-2012-10823 2012-07-19 08:31:28 --------------------------------------------------------------------------------
Name : monkeysphere Product : Fedora 17 Version : 0.35 Release : 5.fc17 URL : http://web.monkeysphere.info/ Summary : Use the OpenPGP web of trust to verify SSH connections Description : SSH key-based authentication is tried-and-true, but it lacks a true Public Key Infrastructure for key certification, revocation and expiration. Monkeysphere is a framework that uses the OpenPGP web of trust for these PKI functions. It can be used in both directions: for users to get validated host keys, and for hosts to authenticate users. -------------------------------------------------------------------------------- Update Information: This update should fix the attached bugs. -------------------------------------------------------------------------------- ChangeLog: * Wed Jul 18 2012 Patrick Uiterwijk <[email protected]> - 0.35-5 - Set owner correctly for /var/lib/monkeysphere and /var/lib/monkeysphere/authorized_keys for sshd to read them (RHBZ #732203) - Make monkeysphere use sudo instead of su to make it able to execute privileged operations with /sbin/nologin login shell (RHBZ #732191) -------------------------------------------------------------------------------- References: [ 1 ] Bug #732191 - privileged operations don't work because user "monkeysphere" has /sbin/nologin as shell https://bugzilla.redhat.com/show_bug.cgi?id=732191 [ 2 ] Bug #732203 - ssh authentication fails: "bad ownership or modes for directory /var/lib/monkeysphere/authorized_keys" https://bugzilla.redhat.com/show_bug.cgi?id=732203 -------------------------------------------------------------------------------- This update can be installed with the "yum" update program. Use su -c 'yum update monkeysphere' at the command line. For more information, refer to "Managing Software with yum", available at http://docs.fedoraproject.org/yum/. All packages are signed with the Fedora Project GPG key. More details on the GPG keys used by the Fedora Project can be found at https://fedoraproject.org/keys -------------------------------------------------------------------------------- _______________________________________________ package-announce mailing list [email protected] https://admin.fedoraproject.org/mailman/listinfo/package-announce
