On Thu, 20 Jun 2019 22:31:15 +0200
Ansgar Burchardt wrote:
> If _apt deserves a special solution, I would suggest assigning the
> _apt user a static uid instead of patching debootstrap.
it seems to me the simplest approach, from a technical point of view,
and it's the one I'm using since _apt us
Hello,
Holger Wansing, le mar. 18 juin 2019 23:55:29 +0200, a ecrit:
> Samuel Thibault wrote:
> > Hello,
> >
> > Changwoo, do you think you can come up with some simple change to let it
> > build on Stretch? We can probably make it conditional, so that it's only
> > the immediate builds which w
Philipp Kern writes:
> 20/06/2019 20:22, Ansgar Burchardt wrote:
>> You look up which uid the _apt user inside the chroot has and use that.
>
> Yeah, but that scales poorly if you have a centralized firewall
> policy. It means that you need to maintain dynamic rules. I know it's
> possible and you
Processing control commands:
> tags -1 + buster-ignore
Bug #929877 [installation-reports] installation-reports: Buster installer hangs
at hard disk step with arabic language
Added tag(s) buster-ignore.
--
929877: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=929877
Debian Bug Tracking Syste
Control: tags -1 + buster-ignore
Hello,
Holger Wansing, le jeu. 20 juin 2019 10:31:39 +0200, a ecrit:
> ButterflyOfFire wrote:
> > I think it is okay for those diacritics.
>
> I have uploaded that fix now.
Thanks!
> Leaving this bug open as a reminder for the "real" problem inside of gtk (?)
On 20/06/2019 20:22, Ansgar Burchardt wrote:
Trek writes:
Ansgar Burchardt wrote:
For limiting network access, I would recommend instead using network
namespaces (to only provide limited network access for all processes)
and/or user namespaces (if filtering for single UIDs is really
needed). Th
On 20/06/2019 09:50, Ansgar Burchardt wrote:
Ansgar Burchardt writes:
(I don't maintain debootstrap.)
I don't think it is a good idea to require debootstrap to know about
such details.
For limiting network access, I would recommend instead using network
namespaces (to only provide limited netw
Trek writes:
> Ansgar Burchardt wrote:
>> For limiting network access, I would recommend instead using network
>> namespaces (to only provide limited network access for all processes)
>> and/or user namespaces (if filtering for single UIDs is really
>> needed). These do not require any uids to matc
Package: apt,dselect
Severity: normal
Hi,
[ X-Debbugs-Cc'ed -boot@ for debootstrap ]
today I learned that debootstrap as special code to create the file
/var/lib/dpkg/cmethopt (contents: "apt apt"); this is the function
setup_dselect_method in functions. It seems wrong that debootstrap
has to
Accepted:
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA256
Format: 1.8
Date: Thu, 20 Jun 2019 10:19:28 +0200
Source: partman-auto
Architecture: source
Version: 149
Distribution: unstable
Urgency: medium
Maintainer: Debian Install System Team
Changed-By: Holger Wansing
Closes: 927535
Changes:
partman-auto_149_source.changes uploaded successfully to localhost
along with the files:
partman-auto_149.dsc
partman-auto_149.tar.xz
partman-auto_149_amd64.buildinfo
Greetings,
Your Debian queue daemon (running on host usper.debian.org)
On Thu, 20 Jun 2019 09:32:17 +0200
Ansgar Burchardt wrote:
> I don't think it is a good idea to require debootstrap to know about
> such details.
_apt user is standard to debian, but not its uid
the _apt user is created by the apt postinst, that cannot know anything
about the host system from w
Your message dated Thu, 20 Jun 2019 08:48:30 +
with message-id
and subject line Bug#927535: fixed in partman-auto 149
has caused the Debian Bug report #927535,
regarding Updating the partman-auto Uploaders list
to be marked as done.
This means that you claim that the problem has been dealt wi
Hi,
ButterflyOfFire wrote:
> Hi,
> I think it is okay for those diacritics.
> Regards,
I have uploaded that fix now.
Leaving this bug open as a reminder for the "real" problem inside of gtk (?)
Holger
> ‐‐‐ Original Message ‐‐‐
> Le mardi 18 juin 2019 22:26, Holger Wansing a écrit
Ansgar Burchardt writes:
> (I don't maintain debootstrap.)
>
> I don't think it is a good idea to require debootstrap to know about
> such details.
>
> For limiting network access, I would recommend instead using network
> namespaces (to only provide limited network access for all processes)
> and/
Michael Schaller writes:
> At the end of the 'apt' package installation the '_apt' user will be
> created without specifying a fixed uid. This typically results in a
> differing '_apt' uid between the host system and the bootstrapped
> system. The differing '_apt' uid is problematic in case the hos
16 matches
Mail list logo