Bug#919391: msmtp: AppArmor profile doesn't include ~/.config/msmtp/

2019-01-15 Thread Mantas Mikulėnas
Package: msmtp Version: 1.8.1-2 Severity: normal Dear Maintainer, As of 1.6.3, msmtp has two default configuration paths: 1. the traditional @{HOME}/.msmtprc, and 2. the XDG Basedir compatible @{HOME}/.config/msmtp/config The new AppArmor profile is missing the latter path. I think both

Bug#898015: iproute2: 'ip addr add' drops capabilities, breaking VirtualBox

2018-05-11 Thread Mantas Mikulėnas
On Fri, May 11, 2018 at 1:50 PM Mantas Mikulėnas <graw...@nullroute.eu.org> wrote: > On Fri, May 11, 2018 at 1:02 PM Luca Boccassi <bl...@debian.org> wrote: > >> >> Hi, >> >> I've added check to see if CAP_NET_ADMIN is set to INHERITABLE, which >>

Bug#898015: iproute2: 'ip addr add' drops capabilities, breaking VirtualBox

2018-05-11 Thread Mantas Mikulėnas
empty, it should call `setcap -r /bin/ip` to remove the xattr, instead of setting it to an empty value. After installing your patched version *and* clearing the empty caps xattr, I verified that zerotier-one finally works correctly. -- Mantas Mikulėnas

Bug#898015: iproute2: 'ip addr add' drops capabilities, breaking ZeroTier

2018-05-08 Thread Mantas Mikulėnas
(and the source code [1] additionally keeps CAP_NET_RAW for some reason). [1]: https://github.com/zerotier/ZeroTierOne/blob/master/one.cpp#L1044-L1110 -- Mantas Mikulėnas

Bug#898015: iproute2: 'ip addr add' drops capabilities, breaking ZeroTier

2018-05-05 Thread Mantas Mikulėnas
Package: iproute2 Version: 4.16.0-2 Severity: normal zerotier-one (a mesh-VPN program) calls `ip addr add` as non-root, but with the necessary capabilities present (ambient, inheritable, and effective). However, the latest iproute2 version made `ip` drop all capabilities unconditionally (except

Bug#820920: libradcli-dev: pkg-config file radcli.pc is missing

2016-04-13 Thread Mantas Mikulėnas
Package: libradcli-dev Version: 1.2.6-1 Severity: normal There doesn't seem to be a radcli.pc pkg-config file in the package; as a result, ocserv gets compiled without RADIUS support. -- System Information: Debian Release: stretch/sid APT prefers testing APT policy: (500, 'testing')

Bug#813690: ocserv: missing RADIUS support

2016-02-04 Thread Mantas Mikulėnas
Package: ocserv Version: 0.10.10-1 Severity: wishlist Dear Maintainer, Could you include RADIUS authentication support in ocserv? (This would need libfreeradius-client2 v1.1.7.) -- System Information: Debian Release: stretch/sid APT prefers testing APT policy: (900, 'testing'), (500,