Package: tor
Version: 0.3.1.8-2~d80.jessie+1
Severity: normal

Dear Maintainer,

The tor package for Debian is compiled without capability support, which
prevents KeepBindCapabilities from working.

KeepBindCapabilities instructs Tor to keep CAP_NET_BIND_SERVICE, so that it can
re-bind to low ports after hibernation or changing the config file. This feature
was discussed in #700179 and ultimately implemented, but the Debian package must
be built with libcap for it to work.

Setting KeepBindCapabilities to 1 with the current Debian package causes this
message at startup:

[warn] KeepBindCapabilities set, but no capability support on this system.

To fix this, the package needs to be built with libcap-dev installed on the
build machine. I'm not sure how this is accomplished; perhaps it needs to be
added to Build-Depends.

This seems to affect the package in both the Debian repositories and the
official Tor Project repository at http://deb.torproject.org/torproject.org.

-- System Information:
Debian Release: 8.9
  APT prefers oldstable-updates
  APT policy: (500, 'oldstable-updates'), (500, 'oldstable')
Architecture: amd64 (x86_64)

Kernel: Linux 4.9.36-x86_64-linode85 (SMP w/1 CPU core)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)

-- Configuration Files:
/etc/tor/torrc changed [not included]

-- no debconf information

Reply via email to