Bug#987690: openafs-fileserver: Servers do not work with des3-cbc-sha1 keys

2021-04-27 Thread Chaskiel Grundman
Package: openafs-fileserver Version: 1.8.2-1+deb10u1 Severity: important Tags: upstream Dear Maintainer, The servers in this release do not work when used with des3-cbc-sha1 (enctype 16) keys. The requested size of the key is computed incorrectly as 21 bytes instead of 24, and

Bug#986702: openafs-fileserver: Upgrade from stretch broken (missing dependency)

2021-04-09 Thread Chaskiel Grundman
Package: openafs-fileserver Version: 1.8.2-1+deb10u1 Severity: important Dear Maintainer, While upgrading a system from stretch (9.9) to buster (10.9), I had a failure in this package: Setting up openafs-fileserver (1.8.2-1+deb10u1) ... /var/lib/dpkg/info/openafs-fileserver.postinst: 24:

Bug#925550: signing cert EKU

2019-08-01 Thread Chaskiel Grundman
The problem openssl has is with the intermediate signing certificate's extendedKeyUsage. openssl wants codeSigning (1.3.6.1.5.5.7.3.3) or emailProtection (1.3.6.1.5.5.7.3.4). The certificate actually has msCTLSign ("Microsoft Trust List Signing", 1.3.6.1.4.1.311.10.3.1) for some reason. The only

Bug#847493: The bug is in pyside

2017-01-03 Thread Chaskiel Grundman
The real bug is in pyside (#744741) which does not publish egg-info. If/when pyside is fixed, this package will have to depend on the pyside package that provides the egg-info, which will probably be the current metapackage. Alternatively, the easy_install generated script could be replaced with

Bug#760860: sa-exim: Causes spamassassin --lint to display warnings; makes cronjobs send error reports

2014-09-08 Thread Chaskiel Grundman
Package: sa-exim Version: 4.2.1-14 Severity: minor Tags: patch As reported by others (#687149), installing sa-exim causes spamassassin's daily cronjobs to emit warnings, which are sent to root. e.g. /etc/cron.daily/spamassassin: Sep 8 07:33:57.584 [8468] warn: Couldn't get Connecting IP header

Bug#687149: Does not only affect squeeze

2014-09-08 Thread Chaskiel Grundman
The sa-exim part of this does not only affect squeeze. Both wheezy (3.3.2-5+deb7u1) and backports (3.4.0-2~bpo70+1) produce the Couldn't get Connecting IP header X-SA-Exim-Connect-IP for message 1410186651@lint_rules, skipping greylisting call messages. I have filed 760860 against sa-exim,

Bug#746643: OpenCL not supported by lastest NVIDIA driver

2014-05-16 Thread Chaskiel Grundman
In order for the uvm module to import the proper symbol versions from the main nvidia module, the Modules.symvers file must be copied into the uvm subdirectory after nvidia.ko is built and before nvidia-uvm.ko is built

Bug#719943: I am also having this problem

2013-12-12 Thread Chaskiel Grundman
I am using the debian kernel from jessie (3.11-2-amd64) and also have this problem. The kernel debug package was not installed when the crashes occurred. the crash 'log' command shows the log normally For, now, I am commenting out the makedumpfile --dump-dmesg line from the kdump-config

Bug#699789: FTBFS: samples/wrapper depends on zip library

2013-02-04 Thread Chaskiel Grundman
Source: boinc Version: 7.0.45+dfsg-1 Severity: normal Dear Maintainer, I wanted to use the experimental version to provide app_config.xml support. Unfortunately, the binary deb for amd64 depends on the experimental libc, so I tried building it with sbuild. That did not work, since samples/wrapper

Bug#682819: fwknop-client: not compatible with old fwknop-server

2012-07-25 Thread Chaskiel Grundman
Package: fwknop-client Version: 2.0.0rc2-2 Severity: important It appears that 2.0.0rc2 is not completely compatible with 1.9.12. I have a squeeze machine that I run fwknop-server on, and connect from my wheezy laptop. When I try to connect with this command line: fwknop -A

Bug#682819: Apparently unreproduceable.

2012-07-25 Thread Chaskiel Grundman
tags 682819 + unreproduceable thanks I restarted the perl server (in part so I could run it with debugging), and now it is working for me. I'm not sure what if anything should be done about this now. -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of

Bug#673414: libwine-gecko-unstable: Should be multi-arch: foreign

2012-05-18 Thread Chaskiel Grundman
Package: libwine-gecko-unstable Version: 1.0.0+dfsg-1.1 Severity: normal I am trying to install wine-unstable from i386 on amd64, so as to not have ia32-libs present. Ignoring lcms and printing, the only thing that I think is still blocking this is wine-bin-unstable's dependency on

Bug#633656: opensc: Remove dev files if libraries really are private

2011-07-27 Thread Chaskiel Grundman
Package: opensc Version: 0.12.1-1.1 Followup-For: Bug #633656 Since the maintainer has decided to go along with the upstreams idea that the library interface is private and should not be used by applications, the job should be finished. libopensc.la, libopensc.a, and libopensc.so should not be

Bug#607204: awstats produces invalid XHTML

2011-06-18 Thread Chaskiel Grundman
I think this the validation failures are mostly because it's marked as XHTML Strict whereas it's actually transitional. If I change the doctype (and fix the selected=true thing), the output validates. -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of

Bug#630943: awstats: HTML output nits

2011-06-18 Thread Chaskiel Grundman
Package: awstats Version: 6.9.5~dfsg-5 Severity: minor Tags: patch I have noticed several minor issues with the HTML output of awstats 1) it mis-marks its xhtml output as conforming to xhtml 1.0 strict, but it is really transitional (as the non-xml html output is marked) 2) the non-xml html

Bug#621875: krb5-config: Update config for Carnegie Mellon University (ANDREW.CMU.EDU)

2011-04-10 Thread Chaskiel Grundman
On Sun, 10 Apr 2011, Sam Hartman wrote: Any reason to keep the entry around at all? We could just drop it and depend on SRV records. If all relevant implementations do SRV, then that would be fine. -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of

Bug#621875: krb5-config: Update config for Carnegie Mellon University (ANDREW.CMU.EDU)

2011-04-09 Thread Chaskiel Grundman
Package: krb5-config Version: 2.2 Severity: wishlist Please replace the ANDREW.CMU.EDU realm configuration with ANDREW.CMU.EDU = { kdc = kerberos.andrew.cmu.edu kdc = kerberos2.andrew.cmu.edu kdc = kerberos3.andrew.cmu.edu

Bug#615086: /usr/lib32/libX11.so.6: Please update libx11 to compensate for missing XKeySymDB

2011-02-25 Thread Chaskiel Grundman
Package: ia32-libs Version: 20110117 Severity: normal File: /usr/lib32/libX11.so.6 I have a (commercial) 32bit binary that's now failing with a set of errors like this: Warning: translation table syntax error: Unknown keysym name: osfHelp Warning: ... found while parsing '~Shift ~Ctrl

Bug#594236: shishi: no libresolv, SRV RRs not used

2010-08-24 Thread Chaskiel Grundman
Package: shishi Version: 1.0.0-1 Severity: important shishi's build log includes: configure: WARNING: no libresolv, SRV RRs not used checking for res_query in -lresolv... no and indeed, shishi fails to find kdcs using SRV records. This seems to be because libresolv exports __res_query, not

Bug#517478: krb5-auth-dialog: Does not implement X session

2010-06-10 Thread Chaskiel Grundman
On Tue, 8 Jun 2010, Guido Günther wrote: Hi, I rechecked and it works fine here with GNOME 2.30. No additional arguments being passed - it seems that gnome-session got fixed to not pass these deprecated arguments. Could you check if it works for you to? I'll close the report then. I don't see

Bug#578334: devscripts: bts is using sendmail/exim even though --smtp-host is used

2010-04-18 Thread Chaskiel Grundman
Package: devscripts Version: 2.10.61 Severity: normal My MTA is not configured to send non-local mail because it's usually on a dsl network. Instead, all my MUA's use smtp auth to a server at my employer. bts doesn't seem to be honoring this anymore: If I run it like so (or with stuff

Bug#574769: nut postinst changes my system clock

2010-03-20 Thread Chaskiel Grundman
Package: nut Version: 2.4.3-1 Severity: normal r...@whitestar:~# date;dpkg-reconfigure nut;date Sun Mar 21 04:39:43 EDT 2010 nut disabled, please adjust the configuration to your needs. Then set MODE to a suitable value in /etc/nut/nut.conf to enable it. nut disabled, please adjust the

Bug#533588: trousers: segfault due to symbol conflict with libselinux

2009-06-18 Thread Chaskiel Grundman
Package: trousers Version: 0.3.1-9 Severity: normal When used with firefox via opencryptoki, trousers causes a crash when Tspi_Context_Close is called: #6 0x7f8044bd34c3 in context_free () from /lib/libselinux.so.1 #7 0x7f802fb71cde in obj_list_close (list=0x7f802fdc6780,

Bug#533489: trousers: FTBFS if built twice in a row

2009-06-17 Thread Chaskiel Grundman
tag 533489 +patch thanks There's an easy fix for this: --- trousers-0.3.1/debian/rules 2009-06-17 22:36:36.0 -0400 +++ trousers-0.3.1-build/debian/rules 2009-06-15 00:02:21.0 -0400 @@ -17,9 +17,9 @@ dh_testdir dh_testroot rm -f build-stamp - rm -f

Bug#530774: no ActivateServer with signature s on iface org.bluez.Manager found

2009-06-04 Thread Chaskiel Grundman
Bluez 4.x changed some of the dbus apis around. In this case, audio runs inside of blutoothd (new name of hcid) and so uses the org.bluez destination and not a dynamic destination looked up with ActivateService. (the bluez 4.x method for connecting an audio device is shown in the

Bug#521245: Still fails if all keyhandles are invalid

2009-05-31 Thread Chaskiel Grundman
found 521245 0.3.1-9 thanks I happened to run into this problem this weekend (noticed now only because the upgrade to 0.3.1-9 failed because the prerm's invocation of the stop script failed), and the 0.3.1-9 tcsd failed to start too. I'm pretty sure (can't test anymore because I evicted the

Bug#517478: krb5-auth-dialog: Does not implement X session management

2009-03-01 Thread Chaskiel Grundman
In future sessions, .xsession-errors includes this error message: Unknown option --sm-config-prefix Run 'krb5-auth-dialog --help' to see a full list of available command line options But krb5-auth-dialog is running as desired? It is running -- To UNSUBSCRIBE, email to

Bug#517478: krb5-auth-dialog: Does not implement X session management

2009-02-27 Thread Chaskiel Grundman
Package: krb5-auth-dialog Version: 0.7.hit7cc1d84-1 Severity: minor I would like for krb5-auth-dialog to be started whenever I log in, even though I do not authenticate to the local system with kerberos. I created a 'startup program' entry (system-preferences-sessions) to launch krb5-auth-dialog

Bug#513454: libevolution3.0-cil: Does not work with mono 2.0 because it is delay signed

2009-01-28 Thread Chaskiel Grundman
Package: libevolution3.0-cil Version: 0.17.1-2 Severity: normal evolution-sharp.dll is delay signed and does not install correctly when mono 2.0.x (from experimental) is used: Setting up libevolution3.0-cil (0.17.1-2) ... * Installing 1 assembly from libevolution3.0-cil into Mono E: installing

Bug#511283: hdparm: contributed scripts have become irrelevant

2009-01-08 Thread Chaskiel Grundman
Package: hdparm Version: 8.9-3 Severity: minor /usr/share/doc/hdparm/contrib/idectl relies on hdparm -R/-U, which have been removed (presumably because the underlying ioctls have been removed from linux). The scripts should be removed or replaced with something that uses

Bug#497756: strongswan: not compiled with curl support; crl fetching not available

2008-09-03 Thread Chaskiel Grundman
Package: strongswan Version: 4.2.4-3 Severity: normal strongswan 4.1.10-1 and earlier were compiled with libcurl support, and were able to update cached crls if so configured. 4.2.4-3 does not have libcurl support, and connections fail if crls are expired: 002 localnets #1: crl update is overdue

Bug#473043: selinux-policy-default: Also affects mailq; unconfined_r cannot send mail

2008-08-26 Thread Chaskiel Grundman
Package: selinux-policy-default Version: 2:0.0.20080702-6 Followup-For: Bug #473043 Running mailq does not work for any user role (user_r, staff_r, sysadm_r, unconfined_r) debian:/# id uid=0(root) gid=0(root) groups=0(root) context=root:sysadm_r:sysadm_t:s0 debian:/# mailq mailq: fatal: execv

Bug#472356: targeted policy does NOT set user context to unconfined

2008-08-25 Thread Chaskiel Grundman
The targeted policy does not set the context of users to unconfined_t as expected. In stead the context for users logged in on the console is local_login_t and for users logged in through SSH it is system_chkpwd_t. The local_login_t for console logins only happens when the pam_selinux

Bug#492156: Cannot be installed (file conflict with libopencryptoki0)

2008-07-23 Thread Chaskiel Grundman
Package: opencryptoki Version: 2.2.6+dfsg-1 Severity: grave Justification: renders package unusable Trying to install opencryptoki 2.2.6+dfsg-1 fails on amd64 with this error: Unpacking libopencryptoki0 (from ../libopencryptoki0_2.2.6+dfsg-1_amd64.deb) ... Selecting previously deselected package

Bug#489465: /etc/acpi/events/sleepbtn: /etc/acpi/events/sleepbtn runs wrong script

2008-07-05 Thread Chaskiel Grundman
Package: acpi-support Version: 0.109-5 Severity: normal File: /etc/acpi/events/sleepbtn Between 0.109-3 and 0.109-5, the is gnome-power-manager running check moved into /etc/acpi/sleepbtn.sh from /usr/share/acpi-support/suspendorhibernate. Unfortunately, the /etc/acpi/events/sleepbtn config file

Bug#484845: kvm: init script should not load module if package uninstalled

2008-06-06 Thread Chaskiel Grundman
Package: kvm Version: 69+dfsg-1 Severity: wishlist After discovering that vmware is oncompatible with kvm, I uninstalled kvm (at least for now). This caused the kernel module to be unloaded (good). Unfortunately, after a reboot, it was loaded again. It would be nice if the init script checked

Bug#484453: openafs-client: would be nice to have cellservdb updating

2008-06-03 Thread Chaskiel Grundman
Package: openafs-client Version: 1.4.7.dfsg1-2 Severity: wishlist Right now, the openafs-client package includes a CellServDB in /usr/share that is only copied to /etc/openafs/CellServDB when the latter doesn't already exist. I'd really like it to do better than that. The macos packaging

Bug#463899: trousers: /usr/sbin/ps_{inspect,convert} are useless libtool wrappers

2008-02-03 Thread Chaskiel Grundman
Package: trousers Version: 0.3.1-4 Severity: normal The tools/ps_* files are copied into deban/tmp incorrectly. Having been linked with libtool, they need to be copied out using libtool --mode=install -- System Information: Debian Release: lenny/sid APT prefers testing APT policy: (990,

Bug#463760: opencryptoki: FTBFS if automake1.9 is installed

2008-02-02 Thread Chaskiel Grundman
Package: opencryptoki Version: 2.2.5+dfsg-1 Severity: normal if automake1.9 is installed, then building opencryptoki fails: Makefile.am:2: required directory ./testcases does not exist -- System Information: Debian Release: lenny/sid APT prefers testing APT policy: (990, 'testing'), (500,

Bug#463762: opencryptoki-dbg: does not include any debug symbols

2008-02-02 Thread Chaskiel Grundman
Package: opencryptoki-dbg Version: 2.2.5+dfsg-1 Severity: normal opencryptoki is not built with gcc -g, so there are no useful debug symbols for dh_strip to extract. This makes the -dbg package useless. -- System Information: Debian Release: lenny/sid APT prefers testing APT policy: (990,

Bug#463763: /etc/init.d/opencryptoki stop does not stop pkcsslotd

2008-02-02 Thread Chaskiel Grundman
Package: opencryptoki Version: 2.2.5+dfsg-1 Severity: normal The stop action of the opencryptoki init script does not successfully stop pkcsslotd. This is because it passes --pidfile to start-stop-daemon, but pkcsslotd does not actually create a pid file. -- System Information: Debian Release:

Bug#463764: removing opencryptoki fails if pkcs11 group is not empty

2008-02-02 Thread Chaskiel Grundman
Package: opencryptoki Version: 2.2.5+dfsg-1 Severity: normal removing the opencryptoki package fails if users have been added to the pkcs11 group (which will always be the case when the package is actually used, as not even the root user can use the pkcs11 module unless /etc/group lists it as a

Bug#463767: trousers: postrm script always fails

2008-02-02 Thread Chaskiel Grundman
Package: trousers Version: 0.3.1-4 Severity: normal The postrm script includes remove) if [ -x /usr/sbin/deluser ] then deluser --system --remove-home tss deluser --group --only-if-empty tss fi if the tss group has members, then the

Bug#463593: pkcsconf requires libopencryptoki.so (from libopencryptoki-dev)

2008-02-01 Thread Chaskiel Grundman
Package: opencryptoki Version: 2.2.5+dfsg-1 Severity: normal pkcsconf tries to load libopencryptoki.so, which doesn't exist in libopencryptoki0. In order for pkcsconf (or any of the tpmtoken_* tools) to work, you have to install libopencryptoki-dev and run ldconfig -- System Information:

Bug#452415: gnome-power-manager: incorrectly reports that suspend failed

2007-11-22 Thread Chaskiel Grundman
Subject: gnome-power-manager: incorrectly reports that suspend failed Package: gnome-power-manager Version: 2.20.0-1+b1 Severity: minor After getting the recent hal update (and fixing hal to suspend my Dell D830), g-p-m reports that suspends fail, even though they succeed. The log does not

Bug#410449: whois.verio.net no longer exists

2007-02-10 Thread Chaskiel Grundman
Package: whois Version: 4.7.20 Severity: normal whois 204.2.240.10 getaddrinfo(whois.verio.net): Name or service not known arin issues a redirect to rwhois.gin.ntt.net for this address, which whois 4.7.20 does not seem to be able to follow (it seems to hang. jwhois-3.2.2 follows it ok) --

Bug#409503: initial udev install creates socket symlinks with wrong name

2007-02-03 Thread Chaskiel Grundman
Package: udev Version: 0.103-2 Severity: normal An initial udev install inside a xen guest domain resulted in the following: [EMAIL PROTECTED]:/$ find /dev -type l -ls | grep static 189670 lrwxrwxrwx 1 root root 24 Feb 3 10:53 /dev/initctl/initctl - /dev/.static/dev/initctl

Bug#406045: nut-usb: udev rule needed for belkin

2007-01-07 Thread Chaskiel Grundman
Package: nut-usb Version: 2.0.4-3 Severity: normal The following line in nut-usbups.rules is needed to allow nut to be used with some belkin ups's (I have a F6C1000-TW-RK) SYSFS{idVendor}==050d, SYSFS{idProduct}==0551, MODE=660, GROUP=nut It would seem to be appropriate to import all the usb

Bug#397758: #397758: xen-utils-3.0.3-1: wrong grub menu entry generated if /boot is a separate partition

2006-11-14 Thread Chaskiel Grundman
FYI: this is the same as #397021: update-grub: gets hypervisor path wrong, which was fixed in grub 0.97-19, now in testing. (not closing the bug since I'm not the maintainer or submitter...) -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL

Bug#379401: ISCAN/PSCAN can't be enabled in hcid.conf

2006-09-24 Thread Chaskiel Grundman
The problem is this code snippet in hcid/main.c:configure_device() /* Set scan mode */ if (!read_device_mode(di.bdaddr, mode, sizeof(mode))) { if (!strcmp(mode, MODE_OFF)) device_opts-scan = SCAN_DISABLED; else if

Bug#364463: gnome-session: only runs one copy of xterm

2006-04-23 Thread Chaskiel Grundman
Package: gnome-session Version: 2.14.0-2 Severity: normal My saved .gnome2/session attempts to run 5 copies of xterm. However, since I upgraded to 2.14, only one actually appears. session file is attached. (I normally run sawfish, but replicated the problem easily under metacity) -- System

Bug#352766: dictionaries-common: update-default-wordlist does not work if miscfiles is installed

2006-02-13 Thread Chaskiel Grundman
Package: dictionaries-common Version: 0.65.0 Severity: normal the 'default' entry for miscfiles/languages is: Default: english (Webster's Second International English wordlist) It has a ' character in it. The ' is not quoted when /var/cache/dictionaries-common/wordlist.db is created, which

Bug#344543: libkrb53: double free + cache corruption if krb5_get_credentials fails

2005-12-25 Thread Chaskiel Grundman
On Sat, 24 Dec 2005, Sam Hartman wrote: Can you reproduce with kvno? yes. It seems that not DNS, but realm jumping, is the problem: [EMAIL PROTECTED]:~$ kinit Password for [EMAIL PROTECTED]: Warning: Your password will expire in 192 days on Wed Jul 5 11:55:18 2006 [EMAIL PROTECTED]:~$ kvno

Bug#344543: libkrb53: double free + cache corruption if krb5_get_credentials fails

2005-12-23 Thread Chaskiel Grundman
Package: libkrb53 Version: 1.4.3-4 Severity: important After the last krb53 update, attempting to authenticate to a host that has no key (or has once in a realm I can't authenticate to) breaks badly. glibc detects a double-free, and the ticket cache is corrupted. when libkrb53 subsuquently tries

Bug#325350: gnome-panel: workspace-switcher fails to save its configuration

2005-09-04 Thread Chaskiel Grundman
It appears that wnck-applet saves the number-of-workspaces configuration in metacity's preferences, not its own, and relies on the window manager to create the workspaces. If you are not running metacity, then you should be able to work around this behavior by configuring your window manager to

Bug#326692: librep9: incorrect platform name results in bad library search path

2005-09-04 Thread Chaskiel Grundman
Package: librep9 Version: 0.17-11 Severity: important on i386, rep is built with the platform name i486-pc-linux-gnu while older reps were built as i386-pc-linux-gnu. The platform name is used to construct the directory name where native libraries are searched for. Packages that provide rep

Bug#321025: greylistd: greylistd-setup-exim4 remove breaks exim config files

2005-08-02 Thread Chaskiel Grundman
Package: greylistd Version: 0.8.3 Severity: normal because greylistd-setup-exim4 does not consider conditionals (.ifdef, etc) to be the beginining of a block, the remove action will break recent exim configurations which introduce lots of conditionals in the exim configuration. Possible solutions

Bug#305298: ssh-krb5: password authentication does not use pam

2005-04-18 Thread Chaskiel Grundman
Package: ssh-krb5 Version: 3.8.1p1-7 Severity: normal README.Debian still states Unfortunately, privilege separation interacts badly with PAM. [...] and PAM keyboard-interactive authentication won't work. but that doesn't seem to be true at all. keyboard-interactive authentication _is_ enabled,

Bug#303753: heimdal-clients: rsh manpage should use alternatives

2005-04-08 Thread Chaskiel Grundman
Package: heimdal-clients Version: 0.6.3-8 Severity: minor rsh.1.gz should use the alternatives mechanism, just like the ftp and telnet manpages. Otherwise, update-alternatives removes it, which causes, among other things, reportbug to complain about package integrity problems. -- System

Bug#298650: cron-apt: error mail does not include apt output

2005-03-08 Thread Chaskiel Grundman
Package: cron-apt Version: 0.2.1 Severity: normal With this configuration: # grep -v ^# /etc/cron-apt/config | sed '/^$/d' FILTERCTRLM=true DIFFONCHANGES=prepend I get mail every day containing something like this: Subject: CRON-APT completed on lily [/etc/cron-apt/config] CRON-APT RUN