Package: ejabberd
Version: 2.1.11
Severity: wishlist

As reported upstream in [1], our permission model makes
log files created by the mod_muc_log module unreadable by any process
not included in the "ejabberd" system group or having UID of the
"ejabberd" system user.

Supposedly, we should do two things to improve the situation:
1) Set the mod_muc_log's directory up in the same way we do
   for regular logs: by setting its group to "adm" and setting
   the SGID bit on it.
2) Allowing the user to use "stat override" mechanism
   to maintain more suitable permissions/access rights
   (such as 2750 ejabberd:www-data).

1. https://support.process-one.net/browse/EJAB-1588


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to