Bug#1028251: [Pkg-xen-devel] Bug#1028251: New Patch (Was: Re: Bug#1028251: xen: FTBFS when building xen binary packages for sid on x86_64)

2023-01-14 Thread Sebastien KOECHLIN
On Sat, Jan 14, 2023 at 12:59:04AM +0100, Hans van Kranenburg wrote:
> I like this very much. This is the kind of thing that helps admins of
> systems that have just local disks and a few domUs. Like, the case where
> you support some non-profit organization with their server stuff running
> on donated hardware.

As a week-end admin of a non-profit organization running Xen on donated
hardware (and having already spent one or two night trying to get back the
system online for the morning), I thank you for this invisible work for us.



Bug#1017944: Availability in Debian Stable?

2022-10-01 Thread Sebastien KOECHLIN
Hello,

Thanks a lot for the correction.

The 2.06-3~deb11u2 is now out for two weeks, but not available in Debian
Stable.  Any new XEN installation will not be functionnal since Sept-10
(publication of Debian 11.5).  Rollback is paintfull.

https://packages.debian.org/source/bullseye/grub2 -> 2.06-3~deb11u1

Will it be push into Bullseye? Or do we have to wait for 11.6?



Bug#1017944: Included in Debian 11.5

2022-09-12 Thread Sebastien KOECHLIN
Hello,

This bug is included in the Debian 11.5 released and the faultly package is
now use as an update on many systems that will be useless.

I vote for critical too:

> critical
>makes unrelated software on the system (or the whole system) break, or
>causes serious data loss, or introduces a security hole on systems where
>you install the package.



Bug#903821: linux-image-4.9.0-7-amd64: Can not boot 4.9.0_7_amd64 with Xen

2018-07-15 Thread Sebastien KOECHLIN
Package: src:linux
Followup-For: Bug #903821

When booting with the new kernel, I got the following Dom0 crash:

Loading Xen 4.8-amd64 ...
Loading Linux 4.9.0-7-amd64 ...
Loading initial ramdisk ...
(XEN) Xen version 4.8.4-pre (Debian 4.8.3+xsa267+shim4.10.1+xsa267-1+deb9u9) 
(ijack...@chiark.greenend.org.uk) (gcc (Debian 6.3.0-18+deb9u1) 6.3.0 20170516) 
debug=n  Fri Jun 22 15:50:19 UTC 2018
(XEN) Bootloader: GRUB 2.02~beta3-5
(XEN) Command line: placeholder dom0_mem=4096M,max:4096M com2=57600,8n1 
console=com2,vga
(XEN) Video information:
(XEN)  VGA is text mode 80x25, font 8x16
(XEN)  VBE/DDC methods: none; EDID transfer time: 2 seconds
(XEN)  EDID info not retrieved because no DDC retrieval method detected
(XEN) Disc information:
(XEN)  Found 4 MBR signatures
(XEN)  Found 4 EDD information structures
(XEN) Xen-e820 RAM map:
(XEN)   - 000a (usable)
(XEN)  0010 - 7faa (usable)
(XEN)  7faa - 7fab6000 (reserved)
(XEN)  7fab6000 - 7fad5c00 (ACPI data)
(XEN)  7fad5c00 - 8000 (reserved)
(XEN)  e000 - f000 (reserved)
(XEN)  fe00 - 0001 (reserved)
(XEN)  0001 - 00068000 (usable)
(XEN) ACPI: RSDP 000F23D0, 0024 (r2 DELL  )
(XEN) ACPI: XSDT 000F245C, 00AC (r1 DELL   PE_SC3  1 DELL1)
(XEN) ACPI: FACP 7FAD34F8, 00F4 (r3 DELL   PE_SC3  1 DELL1)
(XEN) ACPI: DSDT 7FAB6000, 3E0D (r1 DELL   PE_SC3  1 INTL 20050624)
(XEN) ACPI: FACS 7FAD5C00, 0040
(XEN) ACPI: APIC 7FAD3078, 008A (r1 DELL   PE_SC3  1 DELL1)
(XEN) ACPI: SPCR 7FAD3104, 0050 (r1 DELL   PE_SC3  1 DELL1)
(XEN) ACPI: HPET 7FAD3158, 0038 (r1 DELL   PE_SC3  1 DELL1)
(XEN) ACPI: MCFG 7FAD3194, 003C (r1 DELL   PE_SC3  1 DELL1)
(XEN) ACPI: WD__ 7FAD31D4, 0134 (r1 DELL   PE_SC3  1 DELL1)
(XEN) ACPI: SLIC 7FAD330C, 0024 (r1 DELL   PE_SC3  1 DELL1)
(XEN) ACPI: ERST 7FABBB88, 0210 (r1 DELL   PE_SC3  1 DELL1)
(XEN) ACPI: HEST 7FABBD98, 027C (r1 DELL   PE_SC3  1 DELL1)
(XEN) ACPI: BERT 7FABBA08, 0030 (r1 DELL   PE_SC3  1 DELL1)
(XEN) ACPI: EINJ 7FABBA38, 0150 (r1 DELL   PE_SC3  1 DELL1)
(XEN) ACPI: TCPA 7FAD3490, 0064 (r1 DELL   PE_SC3  1 DELL1)
(XEN) ACPI: SSDT 7FAB9E0D, 0454 (r1 DELL   PE_SC3 11 INTL 20050624)
(XEN) ACPI: SSDT 7FABA4B3, 0454 (r1 DELL   PE_SC3 11 INTL 20050624)
(XEN) ACPI: SSDT 7FABAB59, 0454 (r1 DELL   PE_SC3 11 INTL 20050624)
(XEN) ACPI: SSDT 7FABB1FF, 0454 (r1 DELL   PE_SC3 11 INTL 20050624)
(XEN) ACPI: SSDT 7FABB8A5, 0162 (r1 DELL   PE_SC3 10 INTL 20050624)
(XEN) System RAM: 24570MB (25159936kB)
(XEN) Domain heap initialised
(XEN) IOAPIC[0]: apic_id 4, version 32, address 0xfec0, GSI 0-23
(XEN) IOAPIC[1]: apic_id 5, version 32, address 0xfec1, GSI 256-279
(XEN) IOAPIC[2]: apic_id 6, version 32, address 0xfec1, GSI 64-87
(XEN) Enabling APIC mode:  Flat.  Using 3 I/O APICs
(XEN) Failed to get Error Log Address Range.
(XEN) xstate: size: 0x240 and states: 0x3
(XEN) Unrecognised CPU model 0x17 - assuming vulnerable to LazyFPU
(XEN) Speculative mitigation facilities:
(XEN)   Hardware features:
(XEN)   Compiled-in support: INDIRECT_THUNK
(XEN)   Xen settings: BTI-Thunk RETP(XEN) Allocated console ring of 16 KiB.
(XEN) VMX: Supported advanced features:
(XEN)  - APIC MMIO access virtualisation
(XEN)  - APIC TPR shadow
(XEN)  - Virtual NMI
(XEN)  - MSR direct-access bitmap
(XEN) HVM: ASIDs disabled.
(XEN) HVM: VMX enabled
(XEN) HVM: Hardware Assisted Paging (HAP) not detected
(XEN) Brought up 4 CPUs
(XEN) Dom0 has maximum 856 PIRQs
(XEN) *** LOADING DOMAIN 0 ***
(XEN)  Xen  kernel: 64-bit, lsb, compat32
(XEN)  Dom0 kernel: 64-bit, PAE, lsb, paddr 0x100 -> 0x1f66000
(XEN) PHYSICAL MEMORY ARRANGEMENT:
(XEN)  Dom0 alloc.:   00066a00->00066c00 (1035540 pages to be 
allocated)
(XEN)  Init. ramdisk: 00067ed14000->00067e7e
(XEN) VIRTUAL MEMORY ARRANGEMENT:
(XEN)  Loaded kernel: 8100->81f66000
(XEN)  Init. ramdisk: ->
(XEN)  Phys-Mach map: 0080->00800080
(XEN)  Start info:81f66000->81f664b4
(XEN)  Page tables:   81f67000->81f7a000
(XEN)  Boot stack:81f7a000->81f7b000
(XEN)  TOTAL: 8000->8200
(XEN)  ENTRY ADDRESS: 81d3d180
(XEN) Dom0 has maximum 4 VCPUs
(XEN) Scrubbing Free RAM on 1 nodes using 4 CPUs
(XEN) done.
(XEN) Initial low memory virq threshold set at 0x4000 pages.
(XEN) Std. Loglevel: Errors and warnings
(XEN) Guest Loglevel: Nothing (Rate-limited: Errors and warnings)
(XEN) Xen is relinquishing VGA console.
(XEN) *** Serial input -> DOM0 (type 'CTRL-a' three times to switch 

Bug#859622: rkhunter: False positive /tmp/config and /tmp/servers created by package websvn

2017-04-05 Thread Sebastien Koechlin
Package: rkhunter
Version: 1.4.2-0.4
Severity: minor

Dear Maintainer,

I'm not sure if it's rkhunter or websvn responsability.

When using the websvn package; it create two configuration files in the /tmp 
directory
called config and servers owned by www-data.

Thoses two files create anoying and false positive warnings:

Warning: File '/tmp/config' (score: 292) contains some suspicious content and 
should be checked.
Warning: File '/tmp/servers' (score: 241) contains some suspicious content and 
should be checked.
Warning: Checking for files with suspicious contents [ Warning ]

It would be good if thoses warning can be removed from an out-of-the-box
installation.

-- System Information:
Debian Release: 8.7
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 3.16.0-4-amd64 (SMP w/4 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash
Init: systemd (via /run/systemd/system)

Versions of packages rkhunter depends on:
ii  binutils   2.25-5
ii  debconf [debconf-2.0]  1.5.56
ii  file   1:5.22+15-2+deb8u3
ii  net-tools  1.60-26+b1
ii  perl   5.20.2-3+deb8u6
ii  ucf3.0030

Versions of packages rkhunter recommends:
ii  curl7.38.0-4+deb8u5
pn  iproute 
ii  lsof4.86+dfsg-1
ii  postfix [mail-transport-agent]  2.11.3-1
ii  unhide  20121229-1+b1
ii  wget1.16-1+deb8u1

Versions of packages rkhunter suggests:
ii  bsd-mailx [mailx] 8.1.2-0.20141216cvs-2
pn  libdigest-whirlpool-perl  
ii  liburi-perl   1.64-1
ii  libwww-perl   6.08-1
pn  powermgmt-base
pn  tripwire  

-- Configuration Files:
/etc/rkhunter.conf changed [not included]

-- debconf information:
* rkhunter/apt_autogen: true
* rkhunter/cron_daily_run: true
* rkhunter/cron_db_update: true


files.tgz
Description: application/gzip


Bug#827258: apache2: Missing default configuration for mod_proxy_html

2016-06-14 Thread Sebastien Koechlin
Package: apache2
Version: 2.4.10-10+deb8u4
Severity: normal

Dear Maintainer,

"a2enmod proxy_html" does not work out of the box and it's really hard to
find why.  Examples does not works as expected and no error messages put
you on the way.  

mod_proxy_html does nothing without ProxyHTMLLinks directives. Please
considere add the following file as
/etc/apache2/mods-available/proxy_html.conf

It define configuration for W3C HTML 4.01 and XHTML 1.0

http://svn.apache.org/viewvc/httpd/httpd/tags/2.4.10/docs/conf/extra/proxy-html.conf.in?view=markup

Thanks.

-- Package-specific info:

-- System Information:
Debian Release: 8.5
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 3.16.0-4-amd64 (SMP w/4 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash
Init: systemd (via /run/systemd/system)

Versions of packages apache2 depends on:
ii  apache2-bin2.4.10-10+deb8u4
ii  apache2-data   2.4.10-10+deb8u4
ii  apache2-utils  2.4.10-10+deb8u4
ii  dpkg   1.17.27
ii  lsb-base   4.1+Debian13+nmu1
ii  mime-support   3.58
ii  perl   5.20.2-3+deb8u5
ii  procps 2:3.3.9-9

Versions of packages apache2 recommends:
ii  ssl-cert  1.0.35

Versions of packages apache2 suggests:
pn  apache2-doc  
pn  apache2-suexec-pristine | apache2-suexec-custom  
ii  w3m [www-browser]0.5.3-19

Versions of packages apache2-bin depends on:
ii  libapr1  1.5.1-3
ii  libaprutil1  1.5.4-1
ii  libaprutil1-dbd-sqlite3  1.5.4-1
ii  libaprutil1-ldap 1.5.4-1
ii  libc62.19-18+deb8u4
ii  libldap-2.4-22.4.40+dfsg-1+deb8u2
ii  liblua5.1-0  5.1.5-7.1
ii  libpcre3 2:8.35-3.3+deb8u4
ii  libssl1.0.0  1.0.1t-1+deb8u2
ii  libxml2  2.9.1+dfsg1-5+deb8u2
ii  perl 5.20.2-3+deb8u5
ii  zlib1g   1:1.2.8.dfsg-2+b1

Versions of packages apache2-bin suggests:
pn  apache2-doc  
pn  apache2-suexec-pristine | apache2-suexec-custom  
ii  w3m [www-browser]0.5.3-19

Versions of packages apache2 is related to:
ii  apache2  2.4.10-10+deb8u4
ii  apache2-bin  2.4.10-10+deb8u4

-- Configuration Files:
/etc/apache2/apache2.conf changed [not included]
/etc/apache2/conf-available/security.conf changed [not included]
/etc/apache2/mods-available/deflate.conf changed [not included]
/etc/apache2/mods-available/ldap.conf changed [not included]
/etc/apache2/mods-available/mime.conf changed [not included]
/etc/apache2/mods-available/mpm_prefork.conf changed [not included]
/etc/apache2/mods-available/negotiation.conf changed [not included]
/etc/apache2/mods-available/ssl.conf changed [not included]
/etc/apache2/mods-available/status.conf changed [not included]
/etc/apache2/ports.conf changed [not included]
/etc/logrotate.d/apache2 changed [not included]

-- no debconf information



Bug#818904: apache2: multiple-instances and systemd

2016-03-21 Thread Sebastien KOECHLIN
Package: apache2
Version: 2.4.10-10+deb8u4
Severity: normal

Dear Maintainer,

For computers using systemd, recommandations in
/usr/share/doc/apache2/README.multiple-instances
are not enough. You need an extra step to run each instance.

You probably should add indication to run
systemctl enable apache2-xxx
for the systemd case.


-- Package-specific info:

-- System Information:
Debian Release: 8.3
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 3.16.0-4-amd64 (SMP w/4 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash
Init: systemd (via /run/systemd/system)

Versions of packages apache2 depends on:
ii  apache2-bin2.4.10-10+deb8u4
ii  apache2-data   2.4.10-10+deb8u4
ii  apache2-utils  2.4.10-10+deb8u4
ii  dpkg   1.17.26
ii  lsb-base   4.1+Debian13+nmu1
ii  mime-support   3.58
ii  perl   5.20.2-3+deb8u4
ii  procps 2:3.3.9-9

Versions of packages apache2 recommends:
ii  ssl-cert  1.0.35

Versions of packages apache2 suggests:
pn  apache2-doc  
pn  apache2-suexec-pristine | apache2-suexec-custom  
pn  www-browser  

Versions of packages apache2-bin depends on:
ii  libapr1  1.5.1-3
ii  libaprutil1  1.5.4-1
ii  libaprutil1-dbd-sqlite3  1.5.4-1
ii  libaprutil1-ldap 1.5.4-1
ii  libc62.19-18+deb8u3
ii  libldap-2.4-22.4.40+dfsg-1+deb8u2
ii  liblua5.1-0  5.1.5-7.1
ii  libpcre3 2:8.35-3.3+deb8u2
ii  libssl1.0.0  1.0.1k-3+deb8u4
ii  libxml2  2.9.1+dfsg1-5+deb8u1
ii  perl 5.20.2-3+deb8u4
ii  zlib1g   1:1.2.8.dfsg-2+b1

Versions of packages apache2-bin suggests:
pn  apache2-doc  
pn  apache2-suexec-pristine | apache2-suexec-custom  
pn  www-browser  

Versions of packages apache2 is related to:
ii  apache2  2.4.10-10+deb8u4
ii  apache2-bin  2.4.10-10+deb8u4

-- Configuration Files:
/etc/apache2/apache2.conf changed [not included]
/etc/apache2/conf-available/security.conf changed [not included]
/etc/apache2/mods-available/deflate.conf changed [not included]
/etc/apache2/mods-available/ldap.conf changed [not included]
/etc/apache2/mods-available/mime.conf changed [not included]
/etc/apache2/mods-available/mpm_prefork.conf changed [not included]
/etc/apache2/mods-available/negotiation.conf changed [not included]
/etc/apache2/mods-available/ssl.conf changed [not included]
/etc/apache2/mods-available/status.conf changed [not included]
/etc/apache2/ports.conf changed [not included]
/etc/logrotate.d/apache2 changed [not included]

-- no debconf information



Bug#781051: php-wikidiff2: Not configured correctly when short_open_tag is false

2015-03-23 Thread Sebastien Koechlin
Package: php-wikidiff2
Version: 0.0.1+svn109581-1
Severity: normal

Dear Maintainer,

The file /etc/mediawiki-extensions/extensions-available/wikidiff2.php start
with ? instead of ?php.  

When PHP is configured with short_open_tag false which is the recommanded
setting for production; the content of the file is displayed at the start of
every page instead of being parsed and executed.

Can you switch to ?php which will work with both settings?

Thanks,

-- System Information:
Debian Release: 7.8
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable')
Architecture: i386 (x86_64)

Kernel: Linux 3.17.7.skc2 (SMP w/4 CPU cores)
Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash

Versions of packages php-wikidiff2 depends on:
ii  libapache2-mod-php5 [phpapi-20100525+lfs]  5.4.39-0+deb7u1
ii  libc6  2.13-38+deb7u8
ii  libgcc11:4.7.2-5
ii  libstdc++6 4.7.2-5
ii  libthai0   0.1.18-2
ii  php5   5.4.39-0+deb7u1
ii  php5-cli [phpapi-20100525+lfs] 5.4.39-0+deb7u1

Versions of packages php-wikidiff2 recommends:
ii  mediawiki  1:1.19.20+dfsg-0+deb7u3

php-wikidiff2 suggests no packages.

-- no debconf information


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#734593: clamav-unofficial-sigs: Homepage no more valid (Homepage: http://www.inetmsg.com/pub/)

2014-01-08 Thread Sebastien Koechlin
Package: clamav-unofficial-sigs
Version: 3.7.1-3
Severity: minor

Package informations reference http://www.inetmsg.com/pub/ as the homepage,
but at the moment, it looks like it's no more the case. We are redirected to
commercial announces.

-- System Information:
Debian Release: 6.0.8
  APT prefers oldstable-updates
  APT policy: (500, 'oldstable-updates'), (500, 'oldstable')
Architecture: i386 (x86_64)

Kernel: Linux 3.12.6.skc2 (SMP w/4 CPU cores)
Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#663227: wrong permissions for /etc/shadow?

2012-10-03 Thread Sebastien Koechlin
I just had the same problem on Ubuntu and find that /etc/shadow was in the
root group (bad upgrade?).

Make sure you have the right owner, group and permissions.

$ ls -l /etc/shadow
-rw-r- 1 root shadow 3180 May 15 16:56 /etc/shadow

This may become a feature request on PAM: on a problem to read /etc/shadow,
log an useful message in syslog instead of 'user unkown'.


-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#678504: apache2: request failed: error reading the headers with SSL and Firefox/13.0.1

2012-06-22 Thread Sebastien Koechlin
Package: apache2.2-common
Version: 2.2.16-6+squeeze7
Severity: normal

I have this error while doing a POST of a large file on a VirtualHost using SSL.

error:

 [Wed Jun 20 12:10:31 2012] [error] [client 82.226.xx.xxx] request failed:
 error reading the headers, referer:
 https://xxx.example.org/Programme/integration_xxx_x.html

 [Wed Jun 20 12:12:50 2012] [error] [client 82.226.xx.xxx] request failed:
 error reading the headers, referer:
 https://xxx.example.org/Programme/integration_xxx_x.html

access log for the first (default) SSL virtual host. It was not the expected
virtualHost (probably because the host header was not properly parsed):

 82.226.xx.xxx 21913997 - [20/Jun/2012:12:10:09 +0200] POST
 /Programme/transfert.php HTTP/1.1 400 235
 https://xxx.example.org/Programme/integration_xxx_x.html; Mozilla/5.0
 (Windows NT 6.0; rv:13.0) Gecko/20100101 Firefox/13.0.1

 82.226.xx.xxx 22144249 - [20/Jun/2012:12:12:28 +0200] POST
 /Programme/transfert.php HTTP/1.1 400 235
 https://xxx.example.org/Programme/integration_xxx_x.html; Mozilla/5.0
 (Windows NT 6.0; rv:13.0) Gecko/20100101 Firefox/13.0.1

Everything was working fine for years; windows-Firefox and debian-Apache
updated at each release.

LogFormat %h %D %u %t \%r\ %s %b \%{Referer}i\ \%{User-Agent}i\

-- Package-specific info:
List of /etc/apache2/mods-enabled/*.load:
  actions alias auth_basic authn_file authnz_ldap authz_default
  authz_host authz_user autoindex-nuvola dav dav_fs dav_svn deflate
  dir env expires headers info ldap mime negotiation php5 proxy
  proxy_http reqtimeout rewrite setenvif ssl status wsgi
List of enabled php5 extensions:
  adodb apc curl gd imagick imap ldap mcrypt mysql mysqli pdo
  pdo_mysql pspell recode tidy xmlrpc xsl

-- System Information:
Debian Release: 6.0.5
  APT prefers stable
  APT policy: (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 3.1.4.skc2 (SMP w/2 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash

Versions of packages apache2 depends on:
ii  apache2-mpm-prefork2.2.16-6+squeeze7 Apache HTTP Server - traditional n
ii  apache2.2-common   2.2.16-6+squeeze7 Apache HTTP Server common files

apache2 recommends no packages.

apache2 suggests no packages.

Versions of packages apache2.2-common depends on:
ii  apache2-utils  2.2.16-6+squeeze7 utility programs for webservers
ii  apache2.2-bin  2.2.16-6+squeeze7 Apache HTTP Server common binary f
ii  libmagic1  5.04-5+squeeze2   File type determination library us
ii  lsb-base   3.2-23.2squeeze1  Linux Standard Base 3.2 init scrip
ii  mime-support   3.48-1MIME files 'mime.types'  'mailcap
ii  perl   5.10.1-17squeeze3 Larry Wall's Practical Extraction 
ii  procps 1:3.2.8-9squeeze1 /proc file system utilities

-- no debconf information



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#672349: puppetca: Wrong option in help, --subject-alt-name versus --dns_alt_names

2012-05-10 Thread Sebastien Koechlin
Package: puppetmaster
Version: 2.6.2-5+squeeze5
Severity: normal
Tags: upstream

puppet cert --help and puppetca --help both report:

(...)
generate:Generate a certificate for a named client. A
 certificate/keypair will be generated for each client
 named on the command line.

When generate is used the additional `--subject-alt-name` argument
can be used.  The names, separated by `:`, passed will be added as
the subjectAltName of the final certificate.

But --subject-alt-name does not exists, it is called --dns_alt_names

-- System Information:
Debian Release: 6.0.4
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 2.6.32-5-xen-amd64 (SMP w/3 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash

Versions of packages puppetmaster depends on:
ii  facter   1.5.7-3 a library for retrieving facts fro
ii  lsb-base 3.2-23.2squeeze1Linux Standard Base 3.2 init scrip
ii  puppet-common2.6.2-5+squeeze5Centralized configuration manageme
ii  ruby1.8  1.8.7.302-2squeeze1 Interpreter of object-oriented scr

Versions of packages puppetmaster recommends:
pn  libldap-ruby1.8   none (no description available)
pn  rails none (no description available)
pn  rdoc  none (no description available)

Versions of packages puppetmaster suggests:
pn  apache2 | nginx   none (no description available)
pn  libactiverecord-ruby1.8   none (no description available)
pn  libapache2-mod-passenger  none (no description available)
pn  libmysql-ruby1.8 | libpgsql-r none (no description available)
pn  librack-ruby  none (no description available)
pn  libstomp-ruby1.8  none (no description available)
pn  mongrel   none (no description available)
pn  puppet-el none (no description available)
pn  stompserver   none (no description available)
pn  vim-puppetnone (no description available)

-- no debconf information



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#666505: rsyslog-pgsql: nonstandard use of escape filling logs

2012-03-31 Thread Sebastien Koechlin
Package: rsyslog-pgsql
Version: 4.6.4-2
Severity: normal

My /var/log/messages is full of the following message (multi-lines without
date):

HINT:  Use the escape string syntax for escapes, e.g., E'\r\n'.
WARNING:  nonstandard use of escape in a string literal
LINE 1: ...dTime, ReceivedAt, InfoUnitID, SysLogTag) values (' Bad prot...
 ^
HINT:  Use the escape string syntax for escapes, e.g., E'\r\n'.
WARNING:  nonstandard use of escape in a string literal
LINE 1: ...dTime, ReceivedAt, InfoUnitID, SysLogTag) values (' Bad prot...
 ^
HINT:  Use the escape string syntax for escapes, e.g., E'\r\n'.
WARNING:  nonstandard use of escape in a string literal
LINE 1: ...dTime, ReceivedAt, InfoUnitID, SysLogTag) values (' Bad prot...
...

Thoses messages are probably caused by messages containing a single quote or
a backslash:

sshd[23073]: Bad protocol version identification '\026\003' from 190.125.195.94
sshd[23074]: Bad protocol version identification '\026\003\001' from 
190.125.195.94
sshd[23075]: Bad protocol version identification '\026\003\001' from 
190.125.195.94
sshd[28446]: Bad protocol version identification '\026\003' from 107.22.164.65
sshd[16063]: Bad protocol version identification '\200e\001\003\001' from 
67.137.238.164
sshd[17060]: Bad protocol version identification '\026\003\001' from 
83.170.77.64
sshd[21475]: Bad protocol version identification '\026\003\001' from 
79.125.99.176
sshd[22864]: Bad protocol version identification '\026\003\001' from 
193.201.200.142


-- System Information:
Debian Release: 6.0.4
  APT prefers stable
  APT policy: (990, 'stable'), (500, 'stable-updates')
Architecture: i386 (x86_64)

Kernel: Linux 3.1.1.skc1 (SMP w/4 CPU cores)
Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash

Versions of packages rsyslog-pgsql depends on:
ii  dbconfig-common 1.8.46+squeeze.0 common framework for packaging dat
ii  debconf [debconf-2.0]   1.5.36.1 Debian configuration management sy
ii  libc6   2.11.3-2 Embedded GNU C Library: Shared lib
ii  libpq5  8.4.11-0squeeze1 PostgreSQL C client library
ii  rsyslog 4.6.4-2  enhanced multi-threaded syslogd
ii  ucf 3.0025+nmu1  Update Configuration File: preserv

Versions of packages rsyslog-pgsql recommends:
ii  postgresql-client   8.4.11-0squeeze1 front-end programs for PostgreSQL 
ii  postgresql-client-8.3 [ 8.3.17-0lenny1   front-end programs for PostgreSQL 
ii  postgresql-client-8.4 [ 8.4.11-0squeeze1 front-end programs for PostgreSQL 

Versions of packages rsyslog-pgsql suggests:
ii  postgresql  8.4.11-0squeeze1 object-relational SQL database (su

-- debconf information:
  rsyslog-pgsql/db/app-user: rsyslog
  rsyslog-pgsql/pgsql/manualconf:
* rsyslog-pgsql/pgsql/authmethod-user: password
  rsyslog-pgsql/db/dbname: Syslog
  rsyslog-pgsql/dbconfig-reinstall: false
  rsyslog-pgsql/missing-db-package-error: abort
  rsyslog-pgsql/pgsql/admin-user: postgres
  rsyslog-pgsql/database-type: pgsql
  rsyslog-pgsql/internal/skip-preseed: false
  rsyslog-pgsql/install-error: abort
  rsyslog-pgsql/remote/port:
  rsyslog-pgsql/dbconfig-upgrade: true
  rsyslog-pgsql/pgsql/no-empty-passwords:
  rsyslog-pgsql/remote/newhost:
  rsyslog-pgsql/remote/host:
  rsyslog-pgsql/upgrade-backup: true
  rsyslog-pgsql/passwords-do-not-match:
  rsyslog-pgsql/purge: false
  rsyslog-pgsql/upgrade-error: abort
  rsyslog-pgsql/pgsql/method: unix socket
  rsyslog-pgsql/remove-error: abort
  rsyslog-pgsql/internal/reconfiguring: false
  rsyslog-pgsql/pgsql/changeconf: false
  rsyslog-pgsql/pgsql/authmethod-admin: ident
  rsyslog-pgsql/dbconfig-remove:
* rsyslog-pgsql/dbconfig-install: true



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#613073: Perhaps fixed in 2.6.32-34

2011-05-16 Thread Sebastien Koechlin
On Thu, Apr 21, 2011 at 09:41:16AM +0100, Ian Campbell wrote:
 In 2.6.32-34 we will fix a bunch of similar, but not identical, issues
 (#614400 and #613634 plus various duplicates).

I upgraded saturday to 2.6.32-34, I was able to do a lot of modifications on
LVM2 volumes without any kernel panic nor reboot.

I think it's corrected, you can close this bug report.

Thanks a lot.

-- 
Seb, autocuiseur



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#613073: Perhaps fixed in 2.6.32-34

2011-05-05 Thread Sebastien Koechlin
On Thu, Apr 21, 2011 at 09:41:16AM +0100, Ian Campbell wrote:
 If you are able to reproduce this it would be very much appreciated if
 you could test on 2.6.32-34 once it is uploaded to
 stable-proposed-updates.

Thanks,

As 2.6.32-34 is now in stable-proposed-updates, I'm planning a test session
on this production server May 14.

-- 
Seb, autocuiseur



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#617220: linux-image-2.6.32-5-xen-amd64: NETDEV WATCHDOG: pethx11 (r8169): transmit queue 0 timed out

2011-03-07 Thread Sebastien Koechlin
Package: linux-2.6
Version: 2.6.32-30
Severity: normal

Got the following WARNING in dmesg:
[1062387.509572] BIOS EDD facility v0.16 2004-Jun-25, 0 devices found
[1062387.509575] EDD information not available.
[1093555.812090] [ cut here ]
[1093555.812101] WARNING: at 
/build/buildd-linux-2.6_2.6.32-30-amd64-d4MbNM/linux-2.6-2.6.32/debian/build/source_amd64_xen/net/sched/sch_generic.c:261
 dev_watchdog+0xe2/0x194()
[1093555.812106] Hardware name: PowerEdge T300
[1093555.812109] NETDEV WATCHDOG: pethx11 (r8169): transmit queue 0 timed out
[1093555.812112] Modules linked in: cpufreq_stats st ide_gd_mod ide_cd_mod 
ide_core ipt_REJECT xt_tcpudp xt_state xt_physdev xen_evtchn xenfs nfsd 
exportfs nfs lockd fscache nfs_acl auth_rpcgss sunrpc bridge stp iptable_mangle 
iptable_nat nf_nat nf_conntrack_ipv4 nf_conntrack nf_defrag_ipv4 iptable_filter 
ip_tables x_tables ext4 jbd2 crc16 dm_snapshot loop radeon ttm drm_kms_helper 
drm snd_pcm snd_timer i2c_algo_bit snd soundcore i2c_core snd_page_alloc 
i5100_edac shpchp ioatdma edac_core psmouse pci_hotplug dca evdev joydev pcspkr 
serio_raw dcdbas processor button acpi_processor ext3 jbd mbcache dm_mod raid10 
raid456 async_raid6_recov async_pq raid6_pq async_xor xor async_memcpy async_tx 
raid1 raid0 multipath linear md_mod sd_mod crc_t10dif sg sr_mod cdrom usbhid 
hid ata_generic mptsas uhci_hcd mptscsih mptbase scsi_transport_sas r8169 mii 
ata_piix ehci_hcd libata tg3 libphy usbcore nls_base scsi_mod thermal 
thermal_sys [last unloaded: scsi_wait_scan]
[1093555.812267] Pid: 0, comm: swapper Not tainted 2.6.32-5-xen-amd64 #1
[1093555.812270] Call Trace:
[1093555.812273]  IRQ  [812726a2] ? dev_watchdog+0xe2/0x194
[1093555.812283]  [812726a2] ? dev_watchdog+0xe2/0x194
[1093555.812289]  [8104ed9c] ? warn_slowpath_common+0x77/0xa3
[1093555.812294]  [812725c0] ? dev_watchdog+0x0/0x194
[1093555.812298]  [8104ee24] ? warn_slowpath_fmt+0x51/0x59
[1093555.812305]  [8101f7f0] ? mce_setup+0xb0/0xbe
[1093555.812310]  [81272594] ? netif_tx_lock+0x3d/0x69
[1093555.812316]  [8125d038] ? netdev_drivername+0x3b/0x40
[1093555.812320]  [812726a2] ? dev_watchdog+0xe2/0x194
[1093555.812327]  [8100ecf2] ? check_events+0x12/0x20
[1093555.812333]  [8105b46f] ? run_timer_softirq+0x1c9/0x268
[1093555.812339]  [81054b23] ? __do_softirq+0xdd/0x1a2
[1093555.812345]  [81012cac] ? call_softirq+0x1c/0x30
[1093555.812349]  [8101422b] ? do_softirq+0x3f/0x7c
[1093555.812354]  [81054992] ? irq_exit+0x36/0x76
[1093555.812360]  [811f1e8d] ? xen_evtchn_do_upcall+0x33/0x42
[1093555.812365]  [81012cfe] ? xen_do_hypervisor_callback+0x1e/0x30
[1093555.812368]  EOI  [810093aa] ? hypercall_page+0x3aa/0x1001
[1093555.812376]  [810093aa] ? hypercall_page+0x3aa/0x1001
[1093555.812382]  [8100e6bb] ? xen_safe_halt+0xc/0x15
[1093555.812386]  [8100bfc7] ? xen_idle+0x37/0x40
[1093555.812391]  [81010eb1] ? cpu_idle+0xa2/0xda
[1093555.812396]  [81508cd1] ? start_kernel+0x3dc/0x3e8
[1093555.812401]  [8150ac87] ? xen_start_kernel+0x586/0x58a
[1093555.812404] ---[ end trace ab8976cc161d6dfc ]---
[1093555.830631] r8169: pethx11: link up
[1097910.576742] tg3: pethnet: Link is down.
[1097910.598632] brnet: port 1(pethnet) entering disabled state
[1097919.919412] tg3: pethnet: Link is up at 100 Mbps, full duplex.
[1097919.919416] tg3: pethnet: Flow control is on for TX and on for RX.
[1097919.921726] brnet: port 1(pethnet) entering learning state
[1097934.920079] brnet: port 1(pethnet) entering forwarding state




-- Package-specific info:
** Version:
Linux version 2.6.32-5-xen-amd64 (Debian 2.6.32-30) (b...@decadent.org.uk) (gcc 
version 4.3.5 (Debian 4.3.5-4) ) #1 SMP Wed Jan 12 05:46:49 UTC 2011

** Command line:
root=/dev/mapper/vg_root-lv_ramoth ro quiet

** Tainted: W (512)
 * Taint on warning.

** Kernel log:
[1446237.738757] brnet: port 1(pethnet) entering disabled state
[1446244.685874] tg3: pethnet: Link is up at 100 Mbps, full duplex.
[1446244.685879] tg3: pethnet: Flow control is on for TX and on for RX.
[1446244.688549] brnet: port 1(pethnet) entering learning state
[1446259.688104] brnet: port 1(pethnet) entering forwarding state
[1460944.690769] tg3: pethnet: Link is down.
[1460944.718891] brnet: port 1(pethnet) entering disabled state
[1460947.748065] tg3: pethnet: Link is up at 100 Mbps, full duplex.
[1460947.748070] tg3: pethnet: Flow control is on for TX and on for RX.
[1460947.750350] brnet: port 1(pethnet) entering learning state
[1460962.748090] brnet: port 1(pethnet) entering forwarding state
[1494387.761010] BIOS EDD facility v0.16 2004-Jun-25, 0 devices found
[1494387.761013] EDD information not available.
[1526850.729912] tg3: pethnet: Link is down.
[1526850.755081] brnet: port 1(pethnet) entering disabled state
[1526856.608532] tg3: pethnet: Link is up at 100 Mbps, full duplex.

Bug#613073: linux-image-2.6.32-5-xen-amd64: Kernel BUG while creating LVM snapshot in Dom0

2011-02-12 Thread Sebastien Koechlin
Package: linux-2.6
Version: 2.6.32-30
Severity: important

lvcreate hand uninterruptible with 100% CPU for about 2 minutes, then got the 
following oops.

-- Package-specific info:
** Version:
Linux version 2.6.32-5-xen-amd64 (Debian 2.6.32-30) (b...@decadent.org.uk) (gcc 
version 4.3.5 (Debian 4.3.5-4) ) #1 SMP Wed Jan 12 05:46:49 UTC 2011

** Command line:
root=/dev/mapper/vg_root-lv_ramoth ro quiet

** Tainted: D (128)
 * Kernel has oopsed before.

** Kernel log:
[77056.924215] physdev match: using --physdev-out in the OUTPUT, FORWARD and 
POSTROUTING chains for non-bridged traffic is not supported anymore.
[77058.606752] blkback: ring-ref 8, event-channel 20, protocol 1 (x86_64-abi)
[77058.616329] blkback: ring-ref 9, event-channel 21, protocol 1 (x86_64-abi)
[77058.625539] blkback: ring-ref 10, event-channel 22, protocol 1 (x86_64-abi)
[77067.604078] vif22.0: no IPv6 routers present
[77071.904087] brlocal: port 3(vif22.0) entering forwarding state
[89450.088992] Uniform Multi-Platform E-IDE driver
[89450.092503] ide-cd driver 5.00
[89450.11] ide-gd driver 1.18
[89450.108144] st: Version 20081215, fixed bufsize 32768, s/g segs 256
[89450.161756] BIOS EDD facility v0.16 2004-Jun-25, 0 devices found
[89450.161760] EDD information not available.
[89776.997074] kjournald starting.  Commit interval 5 seconds
[89777.000843] EXT3 FS on dm-15, internal journal
[89777.000850] EXT3-fs: mounted filesystem with ordered data mode.
[89911.583082] kjournald starting.  Commit interval 5 seconds
[89911.604376] EXT3 FS on dm-16, internal journal
[89911.604384] EXT3-fs: mounted filesystem with ordered data mode.
[91298.369848] kjournald starting.  Commit interval 5 seconds
[91298.398185] EXT3 FS on dm-13, internal journal
[91298.398193] EXT3-fs: mounted filesystem with ordered data mode.
[92593.788340] kjournald starting.  Commit interval 5 seconds
[92593.811199] EXT3 FS on dm-17, internal journal
[92593.811206] EXT3-fs: mounted filesystem with ordered data mode.
[92859.086791] kjournald starting.  Commit interval 5 seconds
[92859.111950] EXT3 FS on dm-17, internal journal
[92859.111956] EXT3-fs: mounted filesystem with ordered data mode.
[92972.424775] device vif23.0 entered promiscuous mode
[92972.428701] brlocal: port 4(vif23.0) entering learning state
[92972.441918] physdev match: using --physdev-out in the OUTPUT, FORWARD and 
POSTROUTING chains for non-bridged traffic is not supported anymore.
[92972.441922] physdev match: using --physdev-out in the OUTPUT, FORWARD and 
POSTROUTING chains for non-bridged traffic is not supported anymore.
[92972.445393] physdev match: using --physdev-out in the OUTPUT, FORWARD and 
POSTROUTING chains for non-bridged traffic is not supported anymore.
[92972.445398] physdev match: using --physdev-out in the OUTPUT, FORWARD and 
POSTROUTING chains for non-bridged traffic is not supported anymore.
[92972.445401] physdev match: using --physdev-out in the OUTPUT, FORWARD and 
POSTROUTING chains for non-bridged traffic is not supported anymore.
[92973.011717] blkback: ring-ref 8, event-channel 10, protocol 1 (x86_64-abi)
[92983.188085] vif23.0: no IPv6 routers present
[92987.424085] brlocal: port 4(vif23.0) entering forwarding state
[93252.668817] brlocal: port 4(vif23.0) entering disabled state
[93252.686539] brlocal: port 4(vif23.0) entering disabled state
[93252.732450] physdev match: using --physdev-out in the OUTPUT, FORWARD and 
POSTROUTING chains for non-bridged traffic is not supported anymore.
[93252.732456] physdev match: using --physdev-out in the OUTPUT, FORWARD and 
POSTROUTING chains for non-bridged traffic is not supported anymore.
[93252.732460] physdev match: using --physdev-out in the OUTPUT, FORWARD and 
POSTROUTING chains for non-bridged traffic is not supported anymore.
[93252.735469] physdev match: using --physdev-out in the OUTPUT, FORWARD and 
POSTROUTING chains for non-bridged traffic is not supported anymore.
[93252.735475] physdev match: using --physdev-out in the OUTPUT, FORWARD and 
POSTROUTING chains for non-bridged traffic is not supported anymore.
[93348.713168] EXT4-fs (dm-17): mounted filesystem with ordered data mode
[93541.918056] EXT4-fs (dm-18): mounted filesystem with ordered data mode
[94130.637867] EXT4-fs (dm-18): mounted filesystem with ordered data mode
[94205.849258] EXT4-fs (dm-17): mounted filesystem with ordered data mode
[94362.361061] EXT4-fs (dm-19): mounted filesystem with ordered data mode
[95104.318227] BUG: unable to handle kernel paging request at 88006b132010
[95104.318307] IP: [8100e428] xen_set_pmd+0x15/0x2c
[95104.318352] PGD 1002067 PUD 2d8067 PMD 431067 PTE 80106b132065
[95104.318434] Oops: 0003 [#1] SMP 
[95104.318478] last sysfs file: /sys/devices/virtual/block/dm-20/removable
[95104.318519] CPU 1 
[95104.318553] Modules linked in: dm_snapshot st ide_gd_mod ide_cd_mod ide_core 
ext4 jbd2 crc16 xt_state xt_physdev xen_evtchn xenfs nfsd exportfs nfs lockd 
fscache nfs_acl auth_rpcgss sunrpc bridge stp 

Bug#613073: Another oops on the same system

2011-02-12 Thread Sebastien Koechlin
Mostly useless I think:

Got this on my terminal, then connection was lost... and system rebooted

 kernel:[  635.775652] Oops: 0003 [#1] SMP 
 kernel:[  635.775779] last sysfs file: 
/sys/devices/virtual/block/dm-21/dm/suspended
 kernel:[  635.778766] Stack:
 kernel:[  635.778766] Call Trace:
 kernel:[  635.778766] Code: fb ff ff e8 c6 f4 01 00 bf 01 00 00 00 e8 c9 ea
ff ff 59 5e 5b c3 55 48 89 f5 53 48 89 fb 48 83 ec 08 e8 6e e3 ff ff 84 c0
75 08 48 89 2b 41 59 5b 5d c3 41 58 48 89 df 48 89 ee 5b 5d e9 7e ff 
 kernel:[  635.778766] CR2: 8801258638e8




-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#606308: clamav-daemon: same problem here

2010-12-08 Thread Sebastien Koechlin
Package: clamav-daemon
Version: 0.96.5+dfsg-1~volatile1
Followup-For: Bug #606308

gdb say:
Program received signal SIGSEGV, Segmentation fault.
[Switching to Thread 0x7faa8733a6f0 (LWP 24217)]
0x7faa86a1f914 in ?? () from /usr/lib/libclamav.so.6
(gdb) bt
#0  0x7faa86a1f914 in ?? () from /usr/lib/libclamav.so.6
#1  0x7faa8667871d in ?? () from /usr/lib/libclamav.so.6
#2  0x7faa866799be in ?? () from /usr/lib/libclamav.so.6
#3  0x7faa8667a4ed in ?? () from /usr/lib/libclamav.so.6
#4  0x7faa8680354f in ?? () from /usr/lib/libclamav.so.6
#5  0x7faa8680360b in ?? () from /usr/lib/libclamav.so.6
#6  0x7faa8680310f in ?? () from /usr/lib/libclamav.so.6
#7  0x7faa86803256 in ?? () from /usr/lib/libclamav.so.6
#8  0x7faa86671a1d in ?? () from /usr/lib/libclamav.so.6
#9  0x7faa86648a84 in cli_bytecode_prepare2 () from /usr/lib/libclamav.so.6
#10 0x7faa865cb728 in cl_engine_compile () from /usr/lib/libclamav.so.6
#11 0x00407bc4 in ?? ()
#12 0x7faa85fd51a6 in __libc_start_main () from /lib/libc.so.6
#13 0x00403a09 in ?? ()
#14 0x7fffc49ec698 in ?? ()
#15 0x001c in ?? ()
#16 0x0001 in ?? ()
#17 0x7fffc49ece8c in ?? ()
#18 0x in ?? ()

Using Bytecode false in clamd.conf also bypass the bug.

-- Package-specific info:
--- configuration ---
Checking configuration files in /etc/clamav

Config file: clamd.conf
---
LogFile = /var/log/clamav/clamav.log
LogFileUnlock disabled
LogFileMaxSize disabled
LogTime = yes
LogClean disabled
LogSyslog = yes
LogFacility = LOG_LOCAL6
LogVerbose disabled
ExtendedDetectionInfo = yes
PidFile = /var/run/clamav/clamd.pid
TemporaryDirectory disabled
DatabaseDirectory = /var/lib/clamav
OfficialDatabaseOnly disabled
LocalSocket = /var/run/clamav/clamd.ctl
LocalSocketGroup = clamav
LocalSocketMode = 666
FixStaleSocket = yes
TCPSocket disabled
TCPAddr disabled
MaxConnectionQueueLength = 15
StreamMaxLength = 52428800
StreamMinPort = 1024
StreamMaxPort = 2048
MaxThreads = 12
ReadTimeout = 180
CommandReadTimeout = 5
SendBufTimeout = 200
MaxQueue = 100
IdleTimeout = 30
ExcludePath disabled
MaxDirectoryRecursion = 50
FollowDirectorySymlinks disabled
FollowFileSymlinks disabled
CrossFilesystems = yes
SelfCheck = 3600
VirusEvent disabled
ExitOnOOM disabled
Foreground disabled
Debug disabled
LeaveTemporaryFiles disabled
User = clamav
AllowSupplementaryGroups = yes
Bytecode = yes
BytecodeSecurity = Paranoid
BytecodeTimeout = 6
BytecodeMode = Auto
DetectPUA = yes
ExcludePUA disabled
IncludePUA disabled
AlgorithmicDetection = yes
ScanPE = yes
ScanELF = yes
DetectBrokenExecutables disabled
ScanMail = yes
ScanPartialMessages disabled
PhishingSignatures = yes
PhishingScanURLs = yes
PhishingAlwaysBlockCloak disabled
PhishingAlwaysBlockSSLMismatch disabled
HeuristicScanPrecedence disabled
StructuredDataDetection disabled
StructuredMinCreditCardCount = 3
StructuredMinSSNCount = 3
StructuredSSNFormatNormal = yes
StructuredSSNFormatStripped disabled
ScanHTML = yes
ScanOLE2 = yes
OLE2BlockMacros disabled
ScanPDF = yes
ScanArchive = yes
ArchiveBlockEncrypted disabled
MaxScanSize = 104857600
MaxFileSize = 26214400
MaxRecursion = 16
MaxFiles = 1
ClamukoScanOnAccess disabled
ClamukoScannerCount = 3
ClamukoScanOnOpen disabled
ClamukoScanOnClose disabled
ClamukoScanOnExec disabled
ClamukoIncludePath disabled
ClamukoExcludePath disabled
ClamukoMaxFileSize = 5242880
DevACOnly disabled
DevACDepth disabled
DevLiblog disabled

Config file: freshclam.conf
---
LogFileMaxSize disabled
LogTime = yes
LogSyslog disabled
LogFacility = LOG_LOCAL6
LogVerbose disabled
PidFile = /var/run/clamav/freshclam.pid
DatabaseDirectory = /var/lib/clamav/
Foreground disabled
Debug disabled
AllowSupplementaryGroups disabled
UpdateLogFile = /var/log/clamav/freshclam.log
DatabaseOwner = clamav
Checks = 24
DNSDatabaseInfo = current.cvd.clamav.net
DatabaseMirror = db.local.clamav.net, database.clamav.net
MaxAttempts = 5
ScriptedUpdates = yes
TestDatabases = yes
CompressLocalDatabase disabled
ExtraDatabase disabled
DatabaseCustomURL disabled
HTTPProxyServer disabled
HTTPProxyPort disabled
HTTPProxyUsername disabled
HTTPProxyPassword disabled
HTTPUserAgent disabled
NotifyClamd = /etc/clamav/clamd.conf
OnUpdateExecute disabled
OnErrorExecute disabled
OnOutdatedExecute disabled
LocalIPAddress disabled
ConnectTimeout = 30
ReceiveTimeout = 30
SubmitDetectionStats disabled
DetectionStatsCountry disabled
DetectionStatsHostID disabled
SafeBrowsing disabled
Bytecode = yes

Config file: clamav-milter.conf
---
LogFile = /var/log/clamav/clamav-milter.log
LogFileUnlock disabled
LogFileMaxSize disabled
LogTime = yes
LogSyslog = yes
LogFacility = LOG_LOCAL6
LogVerbose disabled
PidFile = /var/run/clamav/clamav-milter.pid
TemporaryDirectory = /tmp
FixStaleSocket = yes
MaxThreads = 10
ReadTimeout = 180
Foreground disabled
User = clamav
AllowSupplementaryGroups = yes
MaxFileSize = 

Bug#605053: mediawiki-extensions-ldapauth: Does not work with mediawiki 1:1.12.0-2lenny5, may require a newer version

2010-11-26 Thread Sebastien Koechlin
Package: mediawiki-extensions-ldapauth
Version: 2.3~bpo50+1
Severity: normal

Does not work with: 

ii  mediawiki 1:1.12.0-2lenny5  website engine for
pn  mediawiki-extensions  none(no description
ii  mediawiki-extensions-base 2.3~bpo50+1   Extensions for
ii  mediawiki-extensions-fcke 2.3~bpo50+1   Extensions for
ii  mediawiki-extensions-ldap 2.3~bpo50+1   Extensions for

It report an error: Fatal error: Class 'AuthPlugin' not found in
/usr/share/mediawiki-extensions/ldapauth/LdapAuthentication.php on line 65


-- System Information:
Debian Release: 5.0.6
  APT prefers stable
  APT policy: (990, 'stable'), (200, 'testing')
Architecture: amd64 (x86_64)

Kernel: Linux 2.6.35.5-skc3 (SMP w/1 CPU core)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash

Versions of packages mediawiki-extensions-ldapauth depends on:
ii  mediawiki-extensio 2.3~bpo50+1   Extensions for MediaWiki -- Base p
ii  php5-ldap  5.2.6.dfsg.1-1+lenny9 LDAP module for php5

mediawiki-extensions-ldapauth recommends no packages.

mediawiki-extensions-ldapauth suggests no packages.

-- no debconf information



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#522969: linkchecker: Warnings about empty interfaces

2009-04-07 Thread Sebastien Koechlin
Package: linkchecker
Version: 4.9-1
Severity: normal

When checking a private website, I have the strange following warnings:

$ linkchecker --output=none --threads=5 --no-status --no-warnings \
--file-output=html/UTF8//tmp/linkchecker.html http://example.com/
WARNING error getting flags for interface '': [Errno 19] No such device
WARNING error getting flags for interface '': [Errno 19] No such device
WARNING error getting flags for interface '\x02': [Errno 19] No such device
$ echo $?
0


-- System Information:
Debian Release: 5.0
  APT prefers stable
  APT policy: (990, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 2.6.24.5-grsec--grs-ipv4-64 (SMP w/1 CPU core)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/bash

Versions of packages linkchecker depends on:
ii  libc6 2.7-18 GNU C Library: Shared libraries
ii  python2.5.2-3An interactive high-level object-o
ii  python-central0.6.8  register and build utility for Pyt
ii  python2.4 2.4.6-1An interactive high-level object-o

linkchecker recommends no packages.

Versions of packages linkchecker suggests:
ii  apache2-mpm-prefork [htt 2.2.9-10+lenny2 Apache HTTP Server - traditional n
pn  python-geoip none  (no description available)
pn  python-optcomplete   none  (no description available)
pn  python-profiler  none  (no description available)

-- no debconf information



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#495683: sshguard - iptables non-builtin chains defaults to return?!

2009-01-29 Thread Sebastien Koechlin
On Tue, Jan 13, 2009 at 01:30:19PM +0100, Andreas Henriksson wrote:
 Maybe I'm missing something obvious because I haven't looked any closer
 at this, but to me the debian sshguard bug report #495683 seems bogus!
 
 AFAIK the default action of a non-builtin chain (the ones you create 
 yourself)
 is to RETURN. No need to explicitly append a last entry jumping to RETURN.

You're right. I was confused because fail2ban explicitely add a RETURN rule
at the end.

-- 
Seb, autocuiseur



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org



Bug#497941: logwatch: Logwatch does not know milter log lines

2008-09-05 Thread Sebastien Koechlin
Package: logwatch
Version: 7.3.1-5
Severity: wishlist
Tags: patch

Logwatch does not undestand lines about milter filtering

For example:
Sep  5 16:55:01 ks358063 postfix/cleanup[26108]: 8A41F401B9: 
milter-reject:
END-OF-MESSAGE from unknown[89.215.222.182]: 5.7.1 Blocked by 
SpamAssassin;
from=[EMAIL PROTECTED] to=[EMAIL PROTECTED] proto=ESMTP
helo=mx1.performance.bg

Sep  4 09:13:50 ks358063 postfix/cleanup[26074]: F0D6F401B9: 
milter-reject: 
END-OF-MESSAGE from 147-153.2-85.cust.bluewin.ch[85.2.153.147]: 5.7.1 
virus 
Worm.SomeFool.P detected by ClamAV - http://www.clamav.net; 
from=[EMAIL PROTECTED] to=[EMAIL PROTECTED] proto=ESMTP
helo=example.org

Here is a patch to count filtered message for each address.

Ideally, it should be configurable to only report highest values, and ratio
of accepted and rejected messages.

-- System Information:
Debian Release: 4.0
  APT prefers stable
  APT policy: (500, 'stable')
Architecture: amd64 (x86_64)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.24.5-grsec--grs-ipv4-64
Locale: LANG=en_GB, LC_CTYPE=en_GB (charmap=ISO-8859-1)

Versions of packages logwatch depends on:
ii  perl 5.8.8-7etch3Larry Wall's Practical Extraction 
ii  postfix [mail-transport- 2.5.1-1~bpo40+1 High-performance mail transport ag

Versions of packages logwatch recommends:
pn  libdate-manip-perlnone (no description available)

-- no debconf information
--- /usr/share/logwatch/scripts/services/postfix2006-12-04 
23:36:08.0 +0100
+++ /etc/logwatch/scripts/services/postfix  2008-09-02 12:06:23.0 
+0200
@@ -389,6 +391,8 @@
   $ProcessExit{$Status}{$Process}++;
} elsif ( ($Option,$Reason) = ($ThisLine =~ /^fatal: config variable ([^ 
]*): (.*)$/)) {
   $ConfigError{$Option}{$Reason}++;
+   } elsif ( ($Milter,$User) = ($ThisLine =~ /milter-reject: END-OF-MESSAGE 
from [^ ]+\[[^ ]+\]: 5.7.1 (.+); from=.+? to=(.+?) proto=/)) {
+  $Milter{$Milter}{$User}++;
} elsif ( ($Warn) = ($ThisLine =~ /^warning: (.*)/)) {
   # keep this as the next to last condition
   $UnknownWarnings{$Warn}++;
@@ -911,6 +915,16 @@
}
 }
 
+if (keys %Milter) {
+   print \n\nMilter rejected:\n;
+   foreach $Milter (sort {$a cmp $b} keys %Milter) {
+  printMilter: $Milter\n;
+  foreach $User (sort {$a cmp $b} keys %{$Milter{$Milter}} ) {
+ print   $User: $Milter{$Milter}{$User} Time(s)\n;
+  }
+   }
+}
+
 if (keys %RejectRBL) {
print \n\nMessages rejected using Anti-Spam site $RejectedRBL Time(s)\n;
foreach $Site (sort {$a cmp $b} keys %RejectRBL) {


Bug#497535: backupninja: Daily error message from cron df: `': No such file or directory

2008-09-02 Thread Sebastien Koechlin
Package: backupninja
Version: 0.9.4-6
Severity: normal

Here is the end of the script:

 541previous=
 542for i in $(ls $configdirectory); do
 543backuploc=$(grep ^directory $configdirectory/$i | awk 
'{print $3}')
 544if [ $backuploc != $previous ]; then
 545mountdev=$(mount | grep $backuploc | awk '{print $1}')
 546df -h $mountdev
 547previous=$backuploc
 548fi
 549done

If directory is not a mount point, mount | grep $backuploc does not work,
and return an empty string. df -h on it produce an error message sent by
cron.

This code will probably also report errors if:
- A MySQL backup is after a directory backup (mysql does not have ^directory
and backuploc will be an empty string).
- backuplog contain one or more mountpoints (mount | grep will produce more
than one line)

-- System Information:
Debian Release: 4.0
  APT prefers stable
  APT policy: (500, 'stable')
Architecture: amd64 (x86_64)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.24.5-grsec--grs-ipv4-64
Locale: LANG=en_GB, LC_CTYPE=en_GB (charmap=ISO-8859-1)

Versions of packages backupninja depends on:
ii  bash  3.1dfsg-8  The GNU Bourne Again SHell
ii  dialog1.0-20060221-3 Displays user-friendly dialog boxe
ii  mawk  1.3.3-11   a pattern scanning and text proces

backupninja recommends no packages.

-- no debconf information



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#495811: /etc/default/milter-greylist is not used

2008-08-20 Thread Sebastien Koechlin
Package: milter-greylist
Version: 3.0-3~bpo40+1
Severity: normal

In file /etc/init.d/milter-greylist, /etc/default/milter-greylist is read
AFTER setting startup command line:

 29 USER=greylist
 30 SOCKET=/var/run/milter-greylist/milter-greylist.sock
 31 DOPTIONS=-P $PIDFILE -u $USER -p $SOCKET

DOPTIONS is set using defaults values

 45 test -f /etc/default/milter-greylist  . /etc/default/milter-greylist

/etc/default/milter-greylist is read, but DOPTIONS does not change

 66 start-stop-daemon --start --pidfile $PIDFILE --name $PNAME \
 67 $NICE --oknodo --startas $DAEMON -- $OPTIONS $DOPTIONS

milter-greylist is launched without /etc/default/milter-greylist values.


-- System Information:
Debian Release: 4.0
  APT prefers stable
  APT policy: (500, 'stable')
Architecture: amd64 (x86_64)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.24.5-grsec--grs-ipv4-64
Locale: LANG=en_GB, LC_CTYPE=en_GB (charmap=ISO-8859-1)

Versions of packages milter-greylist depends on:
ii  adduser3.102 Add and remove users and groups
ii  libc6  2.3.6.ds1-13etch7 GNU C Library: Shared libraries
ii  libmilter0 8.13.8-3  Sendmail Mail Filter API (Milter)
ii  libspf2-2  1.2.5-4   Sender Policy Framework library, w

Versions of packages milter-greylist recommends:
pn  sendmail  none (no description available)

-- no debconf information



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#495683: sshguard: Current implementation skip any other iptables rules

2008-08-19 Thread Sebastien Koechlin
Package: sshguard
Version: 1.0-2~bpo40+1
Severity: normal

Current implementation is based on:
1. add a chain named sshguard
2. redirect any request on tcp/22 from INPUT to this chain

If any other mecanism add rules to INPUT, they will not apply for tcp/22

Solution:

1. add a chain named sshguard
1b. add a default rule to sshguard to return : 
iptables -a -t sshguard -j RETURN
2. redirect any request on tcp/22 from INPUT to this chain
3. Change sshguard to insert new rules at the begining of the chain and not
   at the end.

When receiving a tcp/22 packet, rules from sshguard and INPUT will BOTH be
applied.

By the way, you can include in the package a file named
/etc/network/if-up.d/sshguard
#!/bin/sh
iptables -N sshguard
iptables -A INPUT -p tcp --dport 22 -j sshguard
iptables -A sshguard -j RETURN

and a similar /etc/network/if-down.d/sshguard to destroy rules chain.

-- System Information:
Debian Release: 4.0
  APT prefers stable
  APT policy: (990, 'stable'), (100, 'oldstable')
Architecture: amd64 (x86_64)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.22-4-amd64
Locale: [EMAIL PROTECTED], [EMAIL PROTECTED] (charmap=ISO-8859-15)

Versions of packages sshguard depends on:
ii  libc6  2.3.6.ds1-13etch7 GNU C Library: Shared libraries

sshguard recommends no packages.

-- no debconf information



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#481265: fail2ban: Poll interval is not configurable

2008-05-14 Thread Sebastien Koechlin
Package: fail2ban
Version: 0.7.5-2etch1
Severity: minor

It's not possible to set the poll interval. 
On my light server, fail2ban is continuously running, generating 80% of
CPU wakeup according to powertop.

I have 7 process to monitor ssh and exim, as following:

 6068 python2.4 /usr/bin/fail2ban-server -b -s /var/run/fail2ban.sock
 6069  \_ python2.4 /usr/bin/fail2ban-server -b -s /var/run/fail2ban.sock
 6070  \_ python2.4 /usr/bin/fail2ban-server -b -s /var/run/fail2ban.sock
 6114  \_ python2.4 /usr/bin/fail2ban-server -b -s /var/run/fail2ban.sock
 6115  \_ python2.4 /usr/bin/fail2ban-server -b -s /var/run/fail2ban.sock
 6120  \_ python2.4 /usr/bin/fail2ban-server -b -s /var/run/fail2ban.sock
 6121  \_ python2.4 /usr/bin/fail2ban-server -b -s /var/run/fail2ban.sock

6068 is running continously (strace):
gettimeofday({1210801673, 533845}, NULL) = 0
select(0, NULL, NULL, NULL, {0, 5}) = 0 (Timeout)
with a timeout of 5µs, or 0,05 seconds, it's fired 20 times per seconds

6069 is better, only every other second
getppid()   = 6068
poll([{fd=4, events=POLLIN}], 1, 2000)  = 0
timeout is 2000ms, or 2 seconds; it's better, but what is it doing?

6070 is once a second
poll([{fd=3, events=POLLIN}], 1, 1000)  = 0
timeout is 1000ms or 1 sec

6114, 6115, 6120, 6121 are also once a second
stat64(/var/log/exim/mainlog, {st_mode=S_IFREG|0640, st_size=442383, 
...}) = 0
select(0, NULL, NULL, NULL, {1, 0}) = 0 (Timeout)
timeout is 1 second.

So I have 20 + 0.5 + 1 + 4x1 = 25.5 CPU wake-up every second to monitor 2
files; I think it's a bit too high and I expect it to be configurable to
about 1 wakeup for 5 seconds or 15 seconds.


-- System Information:
Debian Release: 4.0
  APT prefers stable
  APT policy: (990, 'stable'), (100, 'oldstable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.25.3.skc3
Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8)

Versions of packages fail2ban depends on:
ii  iptables1.3.6.0debian1-5 administration tools for packet fi
ii  lsb-base3.1-23.2etch1Linux Standard Base 3.1 init scrip
ii  python  2.4.4-2  An interactive high-level object-o
ii  python-central  0.5.12   register and build utility for Pyt
ii  python2.4   2.4.4-3+etch1An interactive high-level object-o

fail2ban recommends no packages.

-- no debconf information



--
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#236829: Info received (Patch to make /etc/default/clamav-milter more verbose)

2008-04-21 Thread Sebastien Koechlin
Sorry, message #59 and patch was supposed to be a new wishlist bug. I'm
going to resubmit it as a new one.



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#477178: Patch to make /etc/default/clamav-milter more verbose

2008-04-21 Thread Sebastien Koechlin
Package: clamav-milter
Version: 0.92.1~dfsg-1volatile2
Severity: wishlist
Tags: patch

Default /etc/default/clamav-milter can be a little bit more verbose, here is 
a patch for debian/clamav-milter.default.

-- System Information:
Debian Release: 4.0
  APT prefers stable
  APT policy: (990, 'stable'), (100, 'oldstable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.22.13.skc7
Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8)

Versions of packages clamav-milter depends on:
ii  clamav-base   0.92.1~dfsg-1volatile2 base package for clamav, an anti-v
ii  clamav-freshclam  0.92.1~dfsg-1volatile2 downloads clamav virus databases f
ii  libc6 2.3.6.ds1-13etch5  GNU C Library: Shared libraries
ii  libclamav30.92.1~dfsg-1volatile2 virus scanner library
ii  libmilter08.13.8-3   Sendmail Mail Filter API (Milter)
ii  libwrap0  7.6.dbs-13 Wietse Venema's TCP wrappers libra
ii  lsb-base  3.1-23.2etch1  Linux Standard Base 3.1 init scrip

Versions of packages clamav-milter recommends:
ii  clamav-daemon 0.92.1~dfsg-1volatile2 antivirus scanner daemon

-- no debconf information
--- clamav-milter.default.orig  2008-04-15 19:37:44.0 +0200
+++ clamav-milter.default   2008-04-15 19:37:44.0 +0200
@@ -1,6 +1,12 @@
+# Default options: 2 children max and scan outgoing and local messages
 OPTIONS=--max-children=2 -ol
-#If you want to set an alternate pidfile (why?) please do it here:
+
+# If you want to set an alternate pidfile (why?) please do it here:
 #PIDFILE=/var/run/clamav/clamav-milter.pid
-#If you want to set an alternate socket, do so here (remember to change 
-#  sendmail.mc):
+
+# If you want to set an alternate socket, do so here (remember to change 
+# sendmail.mc for sendmail and main.cf for postfix)
 #SOCKET=local:/var/run/clamav/clamav-milter.ctl
+
+# If you have troubles because of locale, uncomment the following line
+#unset LANG


Bug#477184: Patch to improve /etc/default/spamass-milter and /etc/init.d script

2008-04-21 Thread Sebastien Koechlin
Package: spamass-milter
Version: 0.3.1-2
Severity: wishlist
Tags: patch

Thoses patch improve /etc/default/spamass-milter to allow to choose an
alternative socket and to choose an user to run as.

/etc/init.d/spamass-milter is also improved to create a /var/run/spamass
subdirectory and to launch spamass-milter as specified user.

-- System Information:
Debian Release: 4.0
  APT prefers stable
  APT policy: (990, 'stable'), (100, 'oldstable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.22.13.skc7
Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8)
--- spamass-milter.default.orig 2008-04-16 12:46:02.0 +0200
+++ spamass-milter.default  2008-04-16 12:49:25.0 +0200
@@ -12,3 +12,10 @@
 
 # Do not modify Subject:, Content-Type: or body.
 #OPTIONS=-m
+
+# If you want to set an alternate socket, do so here (remember to change
+#  sendmail.mc for Sendmail and main.cf for Postfix):
+#SOCKET=/var/run/sendmail/spamass.sock
+
+# User spamass-milter run as (default to root)
+#RUNAS=spamd
--- spamass-milter.init.orig2008-04-16 12:46:06.0 +0200
+++ spamass-milter.init 2008-04-21 18:16:11.0 +0200
@@ -34,11 +34,12 @@
 PATH=/sbin:/bin:/usr/sbin:/usr/bin
 DAEMON=/usr/sbin/spamass-milter
 SOCKET=/var/run/sendmail/spamass.sock
-PIDFILE=/var/run/spamass.pid
+PIDFILE=/var/run/spamass/spamass.pid
 DESC=Sendmail milter plugin for SpamAssassin
 
 DEFAULT=/etc/default/spamass-milter
 OPTIONS=
+RUNAS=root
 
 test -x $DAEMON || exit 0
 
@@ -46,6 +47,16 @@
 . $DEFAULT;
 fi;
 
+# Fix owner on /var/run/spamass/
+PIDDIR=$(dirname $PIDFILE)
+if [ $PIDDIR = /var/run/spamass ]; then
+   if [ ! -d $PIDDIR ]; then
+   mkdir $PIDDIR
+   fi
+   chown -h $RUNAS $PIDDIR
+fi
+
+# Exit on error
 set -e
 
 case $1 in
@@ -55,7 +66,7 @@
if [ ! -d $(basename $SOCKET) ]; then
mkdir -p $(basename $SOCKET);
fi;
-   start-stop-daemon --start -p $PIDFILE --exec $DAEMON -- -P $PIDFILE -f 
-p $SOCKET $OPTIONS
+   start-stop-daemon --start --chuid $RUNAS -p $PIDFILE --exec $DAEMON -- 
-P $PIDFILE -f -p $SOCKET $OPTIONS
 
echo ${DAEMON}
;;
@@ -74,7 +85,7 @@
start-stop-daemon --stop -p $PIDFILE --signal 3 --exec $DAEMON
/bin/sleep 5s
/bin/rm -f $SOCKET
-start-stop-daemon --start -p $PIDFILE --exec $DAEMON -- -P $PIDFILE -f 
-p $SOCKET $OPTIONS
+start-stop-daemon --start --chuid $RUNAS -p $PIDFILE --exec $DAEMON -- 
-P $PIDFILE -f -p $SOCKET $OPTIONS
 
 echo ${DAEMON}
 


Bug#477192: /etc/init.d/spamass-milter create unwanted directory

2008-04-21 Thread Sebastien Koechlin
Package: spamass-milter
Version: 0.3.1-2
Severity: normal

The initscript include following lines:
 52   start)
 53 echo -n Starting $DESC: 
 54
 55 if [ ! -d $(basename $SOCKET) ]; then
 56 mkdir -p $(basename $SOCKET);
 57 fi;
 58 start-stop-daemon --start -p $PIDFILE ...

$(basename $SOCKET) is evaluated as 'spamass.sock' and this relative
direcory is created in current working directory.

Lines 55 to 57 should be removed.

-- System Information:
Debian Release: 4.0
  APT prefers stable
  APT policy: (990, 'stable'), (100, 'oldstable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.22.13.skc7
Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8)



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#236829: Patch to make /etc/default/clamav-milter more verbose

2008-04-15 Thread Sebastien Koechlin
Package: clamav-milter
Version: 0.92.1~dfsg-1volatile1
Followup-For: Bug #236829

Default /etc/default/clamav-milter can be a little bit more verbose, here is 
a patch for debian/clamav-milter.default.

-- System Information:
Debian Release: 4.0
  APT prefers stable
  APT policy: (990, 'stable'), (100, 'oldstable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.22.13.skc7
Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8)

Versions of packages clamav-milter depends on:
ii  clamav-base   0.92.1~dfsg-1volatile1 base package for clamav, an anti-v
ii  clamav-freshclam  0.92.1~dfsg-1volatile1 downloads clamav virus databases f
ii  libc6 2.3.6.ds1-13etch5  GNU C Library: Shared libraries
ii  libclamav30.92.1~dfsg-1volatile1 virus scanner library
ii  libmilter08.13.8-3   Sendmail Mail Filter API (Milter)
ii  libwrap0  7.6.dbs-13 Wietse Venema's TCP wrappers libra
ii  lsb-base  3.1-23.2etch1  Linux Standard Base 3.1 init scrip

Versions of packages clamav-milter recommends:
ii  clamav-daemon 0.92.1~dfsg-1volatile1 antivirus scanner daemon

-- no debconf information
--- clamav-milter.default.orig  2008-04-15 19:37:44.0 +0200
+++ clamav-milter.default   2008-04-15 19:37:44.0 +0200
@@ -1,6 +1,12 @@
+# Default options: 2 children max and scan outgoing and local messages
 OPTIONS=--max-children=2 -ol
-#If you want to set an alternate pidfile (why?) please do it here:
+
+# If you want to set an alternate pidfile (why?) please do it here:
 #PIDFILE=/var/run/clamav/clamav-milter.pid
-#If you want to set an alternate socket, do so here (remember to change 
-#  sendmail.mc):
+
+# If you want to set an alternate socket, do so here (remember to change 
+# sendmail.mc for sendmail and main.cf for postfix)
 #SOCKET=local:/var/run/clamav/clamav-milter.ctl
+
+# If you have troubles because of locale, uncomment the following line
+#unset LANG


Bug#445961: libxml2-utils: xmllint fails to report line-numbers above 65535

2007-10-09 Thread Sebastien Koechlin
Package: libxml2-utils
Version: 2.6.27.dfsg-1
Severity: normal

xmllint is unable to report line number for lines above 65535. Every line
after this line is wrongly reported as 65535.

Output example (65530 to 65540 are blank lines):
$ xmllint --noout --schema ../../osisCore.2.1.1.xsd 5-darby.xml
...
5-darby.xml:57325: element lg: Schemas validity error : Element
'{http://www.bibletechnologies.net/2003/OSIS/namespace}lg': Character
content other than whitespace is not allowed because the content type is
'element-only'.
5-darby.xml:65535: element lg: Schemas validity error : Element
'{http://www.bibletechnologies.net/2003/OSIS/namespace}lg': Character
content other than whitespace is not allowed because the content type is
'element-only'.
5-darby.xml:65535: element lg: Schemas validity error : Element
'{http://www.bibletechnologies.net/2003/OSIS/namespace}lg': Character
content other than whitespace is not allowed because the content type is
'element-only'.
5-darby.xml:65535: element note: Schemas validity error : Element
'{http://www.bibletechnologies.net/2003/OSIS/namespace}note': This element
is not expected.
5-darby.xml fails to validate
$ 

-- System Information:
Debian Release: 4.0
  APT prefers stable
  APT policy: (990, 'stable'), (100, 'oldstable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.22.5.skc6
Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8)

Versions of packages libxml2-utils depends on:
ii  libc6  2.3.6.ds1-13etch2 GNU C Library: Shared libraries
ii  libncurses55.5-5 Shared libraries for terminal hand
ii  libreadline5   5.2-2 GNU readline and history libraries
ii  libxml22.6.27.dfsg-1 GNOME XML library
ii  zlib1g 1:1.2.3-13compression library - runtime

libxml2-utils recommends no packages.

-- no debconf information



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#442163: postgresql-7.4: /etc/postgresql/7.4/main/log symlink recreated daily

2007-09-13 Thread Sebastien Koechlin
Package: postgresql-7.4
Version: 1:7.4.17-0etch1
Severity: minor

Security systems usually send an alert everytime a configuration inode is
changed to detect unwanted activity on system and to trace configuration
changes. The /etc/postgresql/7.4/main/log symlink is recreated daily,
probably by logrotate. This result in a daily alert and a daily growing
configuration history.

-- System Information:
Debian Release: 4.0
  APT prefers stable
  APT policy: (990, 'stable'), (100, 'oldstable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.22.5.skc6
Locale: [EMAIL PROTECTED], [EMAIL PROTECTED] (charmap=ISO-8859-15)

Versions of packages postgresql-7.4 depends on:
ii  libc62.3.6.ds1-13etch2   GNU C Library: Shared libraries
ii  libcomer 1.39+1.40-WIP-2006.11.14+dfsg-2 common error description library
ii  libkrb53 1.4.4-7etch4MIT Kerberos runtime libraries
ii  libpam0g 0.79-4  Pluggable Authentication Modules l
ii  libssl0. 0.9.8c-4SSL shared libraries
ii  postgres 1:7.4.17-0etch1 front-end programs for PostgreSQL 
ii  postgres 71  manager for PostgreSQL database cl

postgresql-7.4 recommends no packages.

-- no debconf information



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#440658: mysql-server-5.0: Unable to set back the old_passwords option

2007-09-03 Thread Sebastien Koechlin
Package: mysql-server-5.0
Version: 5.0.32-7etch1
Severity: normal

First configured without the old_passwords option, during upgrade from
sarge. After install, a binary is not working (static link against old mysql
lib). Reading README.Debian.gz, I run dpkg-reconfigure mysql-server-5.0 to
change the old_passwords option but this question is not asked. I can not
set the old_passwords option.

-- System Information:
Debian Release: 4.0
  APT prefers stable
  APT policy: (990, 'stable'), (100, 'oldstable')
Architecture: i386 (i686)
Shell:  /bin/sh linked to /bin/bash
Kernel: Linux 2.6.22.5.skc6
Locale: [EMAIL PROTECTED], [EMAIL PROTECTED] (charmap=ISO-8859-15)

Versions of packages mysql-server-5.0 depends on:
ii  adduser3.102 Add and remove users and groups
ii  debconf [debconf-2.0]  1.5.11Debian configuration management sy
ii  libc6  2.3.6.ds1-13etch2 GNU C Library: Shared libraries
ii  libdbi-perl1.53-1Perl5 database interface by Tim Bu
ii  libgcc11:4.1.1-21GCC support library
ii  libmysqlclient15off5.0.32-7etch1 mysql database client library
ii  libncurses55.5-5 Shared libraries for terminal hand
ii  libreadline5   5.2-2 GNU readline and history libraries
ii  libstdc++6 4.1.1-21  The GNU Standard C++ Library v3
ii  libwrap0   7.6.dbs-13Wietse Venema's TCP wrappers libra
ii  lsb-base   3.1-23.2etch1 Linux Standard Base 3.1 init scrip
ii  mysql-client-5.0   5.0.32-7etch1 mysql database client binaries
ii  mysql-common   5.0.32-7etch1 mysql database common files (e.g. 
ii  passwd 1:4.0.18.1-7  change and administer password and
ii  perl   5.8.8-7   Larry Wall's Practical Extraction 
ii  psmisc 22.3-1Utilities that use the proc filesy
ii  zlib1g 1:1.2.3-13compression library - runtime

Versions of packages mysql-server-5.0 recommends:
ii  mailx1:8.1.2-0.20050715cvs-1 A simple mail user agent

-- debconf information:
  mysql-server-5.0/really_downgrade: false
  mysql-server-5.0/start_on_boot: true
* mysql-server-5.0/nis_warning:
  mysql-server-5.0/postrm_remove_databases: false
* mysql-server-5.0/need_sarge_compat: false
  mysql-server/error_setting_password:
  mysql-server-5.0/need_sarge_compat_done: true


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#397921: fcheck: Unable to ignore time changes on /etc/resolv.conf updated daily by dhclient

2006-11-10 Thread Sebastien Koechlin
Package: fcheck
Version: 2.7.59-7sarge1
Severity: wishlist

When using DHCP to get IP address and DNS servers, the /etc/resolv.conf file
is updated each time dhclient (or any DHCP client) ask for a new address.
DNS servers are usually the sames, the file have the same content, but time
is changed and fcheck report and mail an error.

fcheck need an option to ignore a particular test (date, size, CRC, owner...
all) on a particular file.



-- System Information:
Debian Release: 3.1
  APT prefers testing
  APT policy: (66, 'testing')
Architecture: i386 (i686)
Kernel: Linux 2.6.12.6-xen
Locale: [EMAIL PROTECTED], [EMAIL PROTECTED] (charmap=ISO-8859-15)

Versions of packages fcheck depends on:
ii  bsdutils 1:2.12p-4sarge1 Basic utilities from 4.4BSD-Lite
ii  file 4.12-1  Determines file type using magic

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#346357: rsync: Do not handle hard links on remote source

2006-01-07 Thread Sebastien Koechlin
Package: rsync
Version: 2.6.4-6
Severity: normal

When using rsync to do backup of a remote host, rsync is doing a copy for
each name of a hard link:

rsync  --archive --delete --partial-dir=/tmp/rsync [EMAIL PROTECTED]:/data 
/backup/host/

On the remote host, I have:
-rw-rw-rw-   2   user group 509 Jul 25 17:19 A test file
-rw-rw-rw-   2   user group 509 Jul 25 17:19 A_test_file


On the local host, I have
-rw-rw-rw-   1  backup backup 509 Jul 25 17:19 A test file
-rw-rw-rw-   1  backup backup 509 Jul 25 17:19 A_test_file

When the file is 509 bytes, it's not a problem, but with big files, I need
twice the disk space and twice the time to backup.

-- System Information:
Debian Release: 3.1
  APT prefers testing
  APT policy: (66, 'testing')
Architecture: i386 (i686)
Kernel: Linux 2.4.31
Locale: [EMAIL PROTECTED], [EMAIL PROTECTED] (charmap=ISO-8859-15)

Versions of packages rsync depends on:
ii  libc6   2.3.2.ds1-22 GNU C Library: Shared libraries an
ii  libpopt01.7-5lib for parsing cmdline parameters

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#276948: vncserver: Start of a solution

2005-12-17 Thread Sebastien Koechlin
On 12/16/05, Ola Lundqvist [EMAIL PROTECTED] wrote:
 I have nothing to test on so I can hardly make a working patch
 but if you could create a patch for me, that would help a lot!

I have no hope of making Xvnc work. It's written as old KR C coding
style, lots of warning when compiled with -Wall. No automake, tons of
ifdef, auto-rewriten Makefiles... Just adding -Wall -g to build was
painfull.

I corrected all includes about functions returning pointers, there are
other errors. If I patch code until I have a working binary for my
needs; other peoples will have a lot of troubles with differents
fonts, bpp, geometry or things like that, triggering bugs that I
didn't. Also any patch I will write can broke non-amd64, non-linux,
non-debian, non-sarge build because I don't know who is it supposed to
be build.

I think you should update this code to a more recent and 64bits aware
version; this code will not work unless lot and lot of work; and I
don't think it worth it.

I'm on a step where code jump to short, and I don't understand why.
It is supposed inside InitKbdFeedbackClassDeviceStruct() to call NoopDDA()
at 0x427b2d and it goes to 0x00427b26

(gdb) break devices.c:666
Breakpoint 1 at 0x41b86f: file devices.c, line 666.
(gdb) run :6
Starting program: /home/seb/build/vnc-3.3.7/Xvnc/programs/Xserver/Xvnc :6
17/12/05 10:15:28 Xvnc version 3.3.7 - built Dec 13 2005 16:44:32
17/12/05 10:15:28 Copyright (C) 2002-2003 RealVNC Ltd.
17/12/05 10:15:28 Copyright (C) 1994-2000 ATT Laboratories Cambridge.
17/12/05 10:15:28 All Rights Reserved.
17/12/05 10:15:28 See http://www.realvnc.com for information on VNC
17/12/05 10:15:28 Desktop name 'x11' (ramoth:6)
17/12/05 10:15:28 Protocol version supported 3.3
17/12/05 10:15:28 Listening for VNC connections on TCP port 5906

Breakpoint 1, InitKbdFeedbackClassDeviceStruct (dev=0x719680,
bellProc=0x4b5e9e rfbSendBell,
controlProc=0x427b2d NoopDDA) at devices.c:666
666 if (!feedc)
(gdb) s
668 feedc-BellProc = bellProc;
(gdb) s
669 feedc-CtrlProc = controlProc;
(gdb) s
673 feedc-ctrl = defaultKeyboardControl;
(gdb) s
674 feedc-ctrl.id = 0;
(gdb) s
675 if ((feedc-next = dev-kbdfeed) != 0)
(gdb) s
677 dev-kbdfeed = feedc;
(gdb) s
683 (*dev-kbdfeed-CtrlProc)(dev,dev-kbdfeed-ctrl);
(gdb) print *feedc
$1 = {BellProc = 0x4b5e9e rfbSendBell, CtrlProc = 0x427b2d
NoopDDA, ctrl = {click = 0,
bell = 50, bell_pitch = 400, bell_duration = 100, autoRepeat = 1,
autoRepeats = '\0' repeats 31 times, leds = 0, id = 0 '\0'}, next = 0x0}
(gdb) print dev
$2 = 0x719680
(gdb) print *dev
$3 = {public = {devicePrivate = 0x0, processInputProc = 0x42c847
ProcessKeyboardEvent,
realInputProc = 0x42c847 ProcessKeyboardEvent, enqueueInputProc
= 0x4293de EnqueueEvent,
on = 0}, next = 0x0, grabTime = {months = 0, milliseconds =
1134810928573}, startup = 1,
  deviceProc = 0x4a1c54 rfbKeybdProc, inited = 0, grab = 0x0, sync =
{frozen = 0, state = 0,
other = 0x0, event = 0x0, evcount = 0}, type = 0, name = 0x719960
keyboard, id = 0 '\0',
  activatingKey = 0 '\0', fromPassiveGrab = 0, activeGrab = {next =
0x0, resource = 0,
device = 0x0, window = 0x0, ownerEvents = 0, keyboardMode = 0,
pointerMode = 0, coreGrab = 0,
coreMods = 0, type = 0 '\0', modifiersDetail = {exact = 0, pMask =
0x0}, modifierDevice = 0x0,
detail = {exact = 0, pMask = 0x0}, confineTo = 0x0, cursor = 0x0,
eventMask = 0},
  ActivateGrab = 0x429e66 ActivateKeyboardGrab,
  DeactivateGrab = 0x42a079 DeactivateKeyboardGrab, key = 0x71ab90,
valuator = 0x0,
  button = 0x0, focus = 0x71bcc0, proximity = 0x0, kbdfeed = 0x71bd00,
ptrfeed = 0x0,
  intfeed = 0x0, stringfeed = 0x0, bell = 0x0, leds = 0x0}
(gdb) print dev-kbdfeed-ctrl
$4 = (KeybdCtrl *) 0x71bd10
(gdb) print dev-kbdfeed-ctrl
$5 = {click = 0, bell = 50, bell_pitch = 400, bell_duration = 100,
autoRepeat = 1,
  autoRepeats = '\0' repeats 31 times, leds = 0, id = 0 '\0'}
(gdb) print dev-kbdfeed-CtrlProc
$6 = 0x427b2d NoopDDA
(gdb) print *dev-kbdfeed-CtrlProc
$7 = {void (DeviceIntPtr, KeybdCtrl *)} 0x427b2d NoopDDA
(gdb) s

Program received signal SIGSEGV, Segmentation fault.
0x00427957 in AlterSaveSetForClient (client=0x427aff,
pWin=0x60, mode=1) at dixutils.c:343
343 while ((j  numnow)  (pTmp[j] != (pointer)pWin))
(gdb) bt
#0  0x00427957 in AlterSaveSetForClient (client=0x427aff,
pWin=0x60, mode=1)
at dixutils.c:343
#1  0x00427b26 in DeleteWindowFromAnySaveSet (pWin=0x60) at
dixutils.c:396
#2  0x0041b98b in InitKbdFeedbackClassDeviceStruct (dev=0x719680,
bellProc=0x4b5e9e rfbSendBell, controlProc=0x427b2d NoopDDA)
at devices.c:683
#3  0x0041bf6e in InitKeyboardDeviceStruct (device=0x719680,
pKeySyms=0x7fbfffef20,
pModifiers=0x7fbfffee20 , bellProc=0x4b5e9e rfbSendBell,
controlProc=0x427b2d NoopDDA)
at devices.c:867
#4  0x004a1cec in rfbKeybdProc (pDevice=0x719680, onoff=0) at init.c:606
#5  0x0041a83c in 

Bug#276948: vncserver: Start of a solution

2005-12-12 Thread Sebastien Koechlin
Package: vncserver
Version: 3.3.7-7
Followup-For: Bug #276948

I spend some time with a friend to find the problem.

In the default configuration, -Wall is not used for compilation.
When I add it, I have warnings about implicit declaration of time, 
strftime and localtime 

Implicit declaration means the function return int (it is not as
localtime return a pointer struct tm *).

BUT! On amd64, we have sizeof(int) = 4 and sizeof(void *) = 8.

So we loose the upper 32 bits of the result, filled with uninitialized data
instead.

I added '#include time.h' in Xvnc/programs/Xserver/hw/vnc/init.c,
killed the boss monster and finished the first stage of having a working Xvnc :

(gdb) run :2
Starting program: /home/seb/build/vnc-3.3.7/Xvnc/programs/Xserver/Xvnc
:2
13/12/05 00:32:39 Xvnc version 3.3.7 - built Dec 13 2005 00:32:04
13/12/05 00:32:39 Copyright (C) 2002-2003 RealVNC Ltd.
13/12/05 00:32:39 Copyright (C) 1994-2000 ATT Laboratories Cambridge.
13/12/05 00:32:39 All Rights Reserved.
13/12/05 00:32:39 See http://www.realvnc.com for information on VNC
13/12/05 00:32:39 Desktop name 'x11' (ramoth:2)
13/12/05 00:32:39 Protocol version supported 3.3
13/12/05 00:32:39 Listening for VNC connections on TCP port 5902

Program received signal SIGSEGV, Segmentation fault.
0x00427afc in DeleteWindowFromAnySaveSet (pWin=0x60) at
dixutils.c:394
394 client = clients[i];
(gdb) bt
#0  0x00427afc in DeleteWindowFromAnySaveSet (pWin=0x60) at
dixutils.c:394
#1  0x0041b98b in InitKbdFeedbackClassDeviceStruct
(dev=0x719680, bellProc=0x4b5eae rfbSendBell,
controlProc=0x427b2d NoopDDA) at devices.c:683
#2  0x0041bf6e in InitKeyboardDeviceStruct (device=0x719680,
pKeySyms=0x7fbfffe630, pModifiers=0x7fbfffe530 ,
bellProc=0x4b5eae rfbSendBell, controlProc=0x427b2d NoopDDA)
at devices.c:867
#3  0x004a1cfc in rfbKeybdProc (pDevice=0x719680,
onoff=0) at init.c:606
#4  0x0041a83c in InitAndStartDevices () at
devices.c:171
#5  0x00403f61 in main (argc=2, argv=0x7fbfffe7c8) at main.c:376
(gdb)   


There are probably tons of similar problems because
sizeof(int)!=sizeof(void*) :

access.c:701: attention : implicit declaration of function 
`XdmcpRegisterConnection'
access.c:730: attention : implicit declaration of function 
`XdmcpRegisterBroadcastAddress'
connection.c:317: attention : implicit declaration of function `atoi'
utils.c:589: attention : implicit declaration of function `XdmcpUseMsg'
utils.c:730: attention : implicit declaration of function 
`ParseGlyphCachingMode'
utils.c:911: attention : implicit declaration of function `XdmcpOptions'
utils.c:1417: attention : implicit declaration of function `waitpid'
dispatch.c:3509: attention : implicit declaration of function 
`ProcessWorkQueueZombies'
auth.c:207: attention : implicit declaration of function 
`XdmcpRegisterAuthorization'
xdmauth.c:76: attention : implicit declaration of function `XdmcpCompareKeys'
xdmauth.c:91: attention : implicit declaration of function `XdmcpAllocARRAY8'
xdmauth.c:159: attention : implicit declaration of function 
`XdmcpRegisterAuthentication'
xdmauth.c:312: attention : implicit declaration of function `time'
xdmcp.c:289: attention : implicit declaration of function `atoi'
xdmcp.c:379: attention : implicit declaration of function `XdmcpAllocARRAY8'
xdmcp.c:390: attention : implicit declaration of function 
`XdmcpReallocARRAYofARRAY8'
xdmcp.c:465: attention : implicit declaration of function `XdmcpReallocARRAY16'
xdmcp.c:570: attention : implicit declaration of function 
`XdmAuthenticationInit'
xdmcp.c:1376: attention : implicit declaration of function `exit'
../../../lib/xtrans/Xtranssock.c:858: attention : implicit declaration of 
function `atoi'
../../../lib/xtrans/Xtrans.c:305: attention : implicit declaration of function 
`_XSERVTransGetHostname'
dixfonts.c:1924: attention : implicit declaration of function 
`PrinterFontRegisterFpeFunctions'
dixfonts.c:1925: attention : implicit declaration of function 
`FontFileCheckRegisterFpeFunctions'
dixfonts.c:1926: attention : implicit declaration of function 
`check_fs_register_fpe_functions'
dixfonts.c:1928: attention : implicit declaration of function 
`FontFileRegisterFpeFunctions'
dixfonts.c:1929: attention : implicit declaration of function 
`fs_register_fpe_functions'
shm.c:282: attention : implicit declaration of function `geteuid'
shm.c:283: attention : implicit declaration of function `getegid'
mbuf.c:1315: attention : implicit declaration of function `ClientSleepUntil'
xtest.c:262: attention : implicit declaration of function `ClientSleepUntil'
xtest1dd.c:411: attention : implicit declaration of function 
`XTestGetPointerPos'
xtest1dd.c:1316: attention : implicit declaration of function `XTestJumpPointer'
xtest1dd.c:1326: attention : implicit declaration of function 
`XTestGenerateEvent'
xprint.c:1075: attention : implicit declaration of function 

Bug#276948: vncserver: Stacktrace with debug enabled (-g)

2005-12-11 Thread Sebastien Koechlin
Package: vncserver
Version: 3.3.7-7
Followup-For: Bug #276948

I compiled Xvnc using :
apt-get source vncserver
added -g in compile flags
run ./configure --with-x --with-installed-zlib
run make World in Xvnc directory

I got:

$ gdb ./Xvnc
GNU gdb 6.3-debian
Copyright 2004 Free Software Foundation, Inc.
GDB is free software, covered by the GNU General Public License, and you
are
welcome to change it and/or distribute copies of it under certain
conditions.
Type show copying to see the conditions.
There is absolutely no warranty for GDB.  Type show warranty for
details.
This GDB was configured as x86_64-linux...Using host libthread_db
library /lib/libthread_db.so.1.

(gdb) run :2
Starting program: /home/seb/build/vnc-3.3.7/Xvnc/programs/Xserver/Xvnc
:2

Program received signal SIGSEGV, Segmentation fault.
0x002a95c8efd7 in strftime () from /lib/libc.so.6
(gdb) bt
#0  0x002a95c8efd7 in strftime () from /lib/libc.so.6
#1  0x0046ce9b in rfbLog ()
#2  0x0046bead in InitOutput ()
#3  0x00403c57 in main ()
(gdb)

-- System Information:
Debian Release: 3.1
Architecture: amd64 (x86_64)
Kernel: Linux 2.6.8-11-em64t-p4-smp
Locale: [EMAIL PROTECTED], [EMAIL PROTECTED] (charmap=ISO-8859-15)

Versions of packages vncserver depends on:
ii  dpkg   1.10.28   Package maintenance system for Deb
ii  libc6  2.3.2.ds1-22  GNU C Library: Shared libraries an
ii  libgcc11:3.4.3-13GCC support library
ii  libice64.3.0.dfsg.1-14sarge1 Inter-Client Exchange library
ii  libsm6 4.3.0.dfsg.1-14sarge1 X Window System Session Management
ii  libstdc++5 1:3.3.5-13The GNU Standard C++ Library v3
ii  libx11-6   4.3.0.dfsg.1-14sarge1 X Window System protocol client li
ii  libxext6   4.3.0.dfsg.1-14sarge1 X Window System miscellaneous exte
ii  perl   5.8.4-8   Larry Wall's Practical Extraction 
ii  vnc-common 3.3.7-7   Virtual network computing server s
ii  xbase-clients  4.3.0.dfsg.1-14sarge1 miscellaneous X clients
ii  xlibs  4.3.0.dfsg.1-14sarge1 X Keyboard Extension (XKB) configu
ii  xserver-common 4.3.0.dfsg.1-14sarge1 files and utilities common to all 
ii  zlib1g 1:1.2.2-4.sarge.2 compression library - runtime

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#276948: vncserver: Trace with -O0 and -g

2005-12-11 Thread Sebastien Koechlin
Package: vncserver
Version: 3.3.7-7
Followup-For: Bug #276948

Here is a warning from compilation:

-
gcc -c -O0 -g -I. -I../../../../exports/include/X11 -I../../../../include/fonts 
-I../../../../exports/include/X11 -I../../cfb -I../../mfb -I../../mi 
-I../../include -I../../os -I../../../../.. -I../../../.. 
-I../../../../exports/include -Dlinux
-D__x86_64__ -D_POSIX_C_SOURCE=199309L -D_POSIX_SOURCE -D_XOPEN_SOURCE 
-D_BSD_SOURCE -D_SVID_SOURCE
-D_GNU_SOURCE -DSHAPE -DGCCUSESGAS -DSTATIC_COLOR -DAVOID_GLYPHBLT -DPIXPRIV 
-D_XSERVER64
-DNDEBUG -DFUNCPROTO=15 -DNARROWPROTO -DDDXOSINIT -DSERVER_LOCK 
-DDDXOSFATALERROR -DDDXTIME
-DPART_NET -DXVNCRELEASE=\3.3.7\ init.c
init.c: In function `rfbLog': 
init.c:907: warning: assignment makes pointer from integer without a cast
-

I changed code to call localtime() before for easier debugging.
Inside strftime, parameters seems really wrongs.

(gdb) break rfbLog
Breakpoint 1 at 0x4a2527: file init.c, line 905.
(gdb) run :2
The program being debugged has been started already.
Start it from the beginning? (y or n) y

Starting program: /home/seb/build/vnc-3.3.7/Xvnc/programs/Xserver/Xvnc
:2

Breakpoint 1, rfbLog (format=0x5b51d3 Xvnc version %s - built %s\n) at
init.c:905
905 va_start(args, format);
(gdb) s
907 time(clock); tp = localtime(clock);
(gdb) n
908 strftime(buf, 255, %d/%m/%y %T , tp);
(gdb) s
strftime (s=0x7fbfffd1e0  Óÿ¿\177, maxsize=182894109488, format=0x2a9566a000 
, tp=0x1004503c4)
at strftime.c:522
522 strftime.c: Aucun fichier ou répertoire de ce type.
in strftime.c
(gdb) s
565 in strftime.c
(gdb) s
522 in strftime.c
(gdb) s
579 in strftime.c
(gdb) s

Program received signal SIGSEGV, Segmentation fault.
strftime (s=0x7fbfffd1e0  Óÿ¿\177, maxsize=0, format=0x5b5a32 %d/%m/%y %T , 
tp=0x0)
at strftime.c:579
579 in strftime.c


-- System Information:
Debian Release: 3.1
Architecture: amd64 (x86_64)
Kernel: Linux 2.6.8-11-em64t-p4-smp
Locale: [EMAIL PROTECTED], [EMAIL PROTECTED] (charmap=ISO-8859-15)

Versions of packages vncserver depends on:
ii  dpkg   1.10.28   Package maintenance system for Deb
ii  libc6  2.3.2.ds1-22  GNU C Library: Shared libraries an
ii  libgcc11:3.4.3-13GCC support library
ii  libice64.3.0.dfsg.1-14sarge1 Inter-Client Exchange library
ii  libsm6 4.3.0.dfsg.1-14sarge1 X Window System Session Management
ii  libstdc++5 1:3.3.5-13The GNU Standard C++ Library v3
ii  libx11-6   4.3.0.dfsg.1-14sarge1 X Window System protocol client li
ii  libxext6   4.3.0.dfsg.1-14sarge1 X Window System miscellaneous exte
ii  perl   5.8.4-8   Larry Wall's Practical Extraction 
ii  vnc-common 3.3.7-7   Virtual network computing server s
ii  xbase-clients  4.3.0.dfsg.1-14sarge1 miscellaneous X clients
ii  xlibs  4.3.0.dfsg.1-14sarge1 X Keyboard Extension (XKB) configu
ii  xserver-common 4.3.0.dfsg.1-14sarge1 files and utilities common to all 
ii  zlib1g 1:1.2.2-4.sarge.2 compression library - runtime

-- no debconf information



Bug#276948: vncserver: Same problem

2005-12-10 Thread Sebastien Koechlin
Package: vncserver
Version: 3.3.7-7
Followup-For: Bug #276948

I have the same problem. Xrealvnc SIGSEGV with a crashed stack.

Here is a gdb stacktrace and a strace log.

-- System Information:
Debian Release: 3.1
Architecture: amd64 (x86_64)
Kernel: Linux 2.6.8-11-em64t-p4-smp
Locale: [EMAIL PROTECTED], [EMAIL PROTECTED] (charmap=ISO-8859-15)

Versions of packages vncserver depends on:
ii  dpkg   1.10.28   Package maintenance system for Deb
ii  libc6  2.3.2.ds1-22  GNU C Library: Shared libraries an
ii  libgcc11:3.4.3-13GCC support library
ii  libice64.3.0.dfsg.1-14sarge1 Inter-Client Exchange library
ii  libsm6 4.3.0.dfsg.1-14sarge1 X Window System Session Management
ii  libstdc++5 1:3.3.5-13The GNU Standard C++ Library v3
ii  libx11-6   4.3.0.dfsg.1-14sarge1 X Window System protocol client li
ii  libxext6   4.3.0.dfsg.1-14sarge1 X Window System miscellaneous exte
ii  perl   5.8.4-8   Larry Wall's Practical Extraction 
ii  vnc-common 3.3.7-7   Virtual network computing server s
ii  xbase-clients  4.3.0.dfsg.1-14sarge1 miscellaneous X clients
ii  xlibs  4.3.0.dfsg.1-14sarge1 X Keyboard Extension (XKB) configu
ii  xserver-common 4.3.0.dfsg.1-14sarge1 files and utilities common to all 
ii  zlib1g 1:1.2.2-4.sarge.2 compression library - runtime

-- no debconf information
execve(/usr/bin/Xrealvnc, [Xrealvnc, :15, -desktop, seb, -auth, 
/home/seb/.Xauthority, -geometry, 1000x730, -depth, 16, -rfbwait, 
12, -rfbauth, /home/seb/.vnc/passwd, -rfbport, 5913, -co, 
/usr/X11R6/lib/X11/rgb], [/* 18 vars */]) = 0
uname({sysname=Linux, nodename=ramoth, release=2.6.8-11-em64t-p4-smp, 
version=#1 SMP Wed Jun 1 01:23:42 CEST 2005, machine=x86_64}) = 0
brk(0)  = 0x67
mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 
0x2a9556a000
access(/etc/ld.so.nohwcap, F_OK)  = -1 ENOENT (No such file or directory)
open(/etc/ld.so.preload, O_RDONLY)= -1 ENOENT (No such file or directory)
open(/etc/ld.so.cache, O_RDONLY)  = 3
fstat(3, {st_dev=makedev(253, 0), st_ino=20735, st_mode=S_IFREG|0644, 
st_nlink=1, st_uid=0, st_gid=0, st_blksize=4096, st_blocks=168, st_size=81556, 
st_atime=2005/12/10-12:24:51, st_mtime=2005/12/08-17:20:39, 
st_ctime=2005/12/08-17:20:39}) = 0
mmap(NULL, 81556, PROT_READ, MAP_PRIVATE, 3, 0) = 0x2a9556b000
close(3)= 0
access(/etc/ld.so.nohwcap, F_OK)  = -1 ENOENT (No such file or directory)
open(/usr/lib/libz.so.1, O_RDONLY)= 3
read(3, \177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0\0\1\0\0\0\200!\0\0..., 640) = 640
fstat(3, {st_dev=makedev(253, 0), st_ino=234560, st_mode=S_IFREG|0644, 
st_nlink=1, st_uid=0, st_gid=0, st_blksize=4096, st_blocks=168, st_size=80872, 
st_atime=2005/12/10-12:24:51, st_mtime=2005/08/03-01:27:16, 
st_ctime=2005/10/20-21:58:28}) = 0
mmap(NULL, 1127808, PROT_READ|PROT_EXEC, MAP_PRIVATE, 3, 0) = 0x2a9566c000
mprotect(0x2a9567f000, 1049984, PROT_NONE) = 0
mmap(0x2a9576c000, 81920, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED, 3, 0) = 
0x2a9576c000
close(3)= 0
access(/etc/ld.so.nohwcap, F_OK)  = -1 ENOENT (No such file or directory)
open(/usr/lib/libstdc++.so.5, O_RDONLY) = 3
read(3, \177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0\0\1\0\0\0\200\333..., 640) = 640
fstat(3, {st_dev=makedev(253, 0), st_ino=232699, st_mode=S_IFREG|0644, 
st_nlink=1, st_uid=0, st_gid=0, st_blksize=4096, st_blocks=1632, 
st_size=830608, st_atime=2005/12/10-12:24:51, st_mtime=2005/05/31-23:53:04, 
st_ctime=2005/10/20-20:01:35}) = 0
mmap(NULL, 4096, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_ANONYMOUS, -1, 0) = 
0x2a9578
mmap(NULL, 1950528, PROT_READ|PROT_EXEC, MAP_PRIVATE, 3, 0) = 0x2a95781000
mprotect(0x2a9582e000, 1241920, PROT_NONE) = 0
mmap(0x2a95881000, 831488, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED, 3, 0) = 
0x2a95881000
mmap(0x2a9594c000, 70464, PROT_READ|PROT_WRITE, 
MAP_PRIVATE|MAP_FIXED|MAP_ANONYMOUS, -1, 0) = 0x2a9594c000
close(3)= 0
access(/etc/ld.so.nohwcap, F_OK)  = -1 ENOENT (No such file or directory)
open(/lib/libm.so.6, O_RDONLY)= 3
read(3, \177ELF\2\1\1\0\0\0\0\0\0\0\0\0\3\0[EMAIL PROTECTED]..., 640) = 640
fstat(3, {st_dev=makedev(253, 0), st_ino=245876, st_mode=S_IFREG|0644, 
st_nlink=1, st_uid=0, st_gid=0, st_blksize=4096, st_blocks=1088, 
st_size=550208, st_atime=2005/12/10-12:24:51, st_mtime=2005/05/12-00:11:06, 
st_ctime=2005/10/20-20:01:33}) = 0
mmap(NULL, 1596072, PROT_READ|PROT_EXEC, MAP_PRIVATE, 3, 0) = 0x2a9595e000
mprotect(0x2a959e1000, 1059496, PROT_NONE) = 0
mmap(0x2a95a5e000, 548864, PROT_READ|PROT_WRITE, MAP_PRIVATE|MAP_FIXED, 3, 0) = 
0x2a95a5e000
close(3)= 0
access(/etc/ld.so.nohwcap, F_OK)  = -1 ENOENT (No such file or directory)
open(/lib/libgcc_s.so.1, O_RDONLY) 

Bug#342352: Example: Script to report kernel to use based on /proc/cpuinfo

2005-12-07 Thread Sebastien Koechlin
Package: fai
Version: 2.8.4
Severity: wishlist
Tags: patch

This /bin/sh script report a class depending of CPU, this allow to
choose which kernel should be installed.

Please, add to examples.

-- System Information:
Debian Release: 3.1
Architecture: amd64 (x86_64)
Kernel: Linux 2.6.8-11-em64t-p4-smp
Locale: [EMAIL PROTECTED], [EMAIL PROTECTED] (charmap=ISO-8859-15)

Versions of packages fai depends on:
ii  libapt-pkg-perl   0.1.13 Perl interface to libapt-pkg
ii  perl  5.8.4-8Larry Wall's Practical Extraction 

-- no debconf information


03-cpu
Description: application/shellscript


Bug#342352: fai: package_config to use with thoses classes

2005-12-07 Thread Sebastien Koechlin
Package: fai
Version: 2.8.4
Followup-For: Bug #342352

Here are two package_config files to install kernel depending on
detected CPU

One is for Kernel 2.4 and one for Kernel 2.6

Please add to examples

-- System Information:
Debian Release: 3.1
Architecture: amd64 (x86_64)
Kernel: Linux 2.6.8-11-em64t-p4-smp
Locale: [EMAIL PROTECTED], [EMAIL PROTECTED] (charmap=ISO-8859-15)

Versions of packages fai depends on:
ii  libapt-pkg-perl   0.1.13 Perl interface to libapt-pkg
ii  perl  5.8.4-8Larry Wall's Practical Extraction 

-- no debconf information
PACKAGES install CPU_I386
kernel-image-2.4-386

PACKAGES install CPU_I486
kernel-image-2.4-386

PACKAGES install CPU_I586
kernel-image-2.4-586tsc

PACKAGES install CPU_I686
kernel-image-2.4-686

PACKAGES install CPU_K6
kernel-image-2.4-k6

PACKAGES install CPU_K7
kernel-image-2.4-k7

PACKAGES install CPU_K8
kernel-image-2.4-k7

PACKAGES install CPU_I386
kernel-image-2.6-386

PACKAGES install CPU_I486
kernel-image-2.6-386

PACKAGES install CPU_I586
kernel-image-2.6-386

PACKAGES install CPU_I686
kernel-image-2.6-686

PACKAGES install CPU_K6
kernel-image-2.6-386

PACKAGES install CPU_K7
kernel-image-2.6-k7

PACKAGES install CPU_K8
kernel-image-2.6-k7


Bug#336644: fai does not connect to faimond

2005-10-31 Thread Sebastien Koechlin
Package: fai
Version: 2.8.4
Severity: minor

In /usr/share/fai/subroutines-linux, fai is using an unknown,
undocumented variable $SERVER:

# check if monitor server is available
[ -z $monserver ]  monserver=$SERVER
faimond=1
sndhostname=$HOSTNAME # save current hostname
if sndmon check; then
echo Monitoring to server $monserver enabled.
else
faimond=0
echo Can't connect daemon on $monserver. Monitoring disabled.
fi

as $SERVER does not exist, fai never connect on the running faimond.


-- System Information:
Debian Release: 3.1
Architecture: amd64 (x86_64)
Kernel: Linux 2.6.8-11-em64t-p4-smp
Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968)

Versions of packages fai depends on:
ii  libapt-pkg-perl   0.1.13 Perl interface to libapt-pkg
ii  perl  5.8.4-8Larry Wall's Practical Extraction 

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#336650: fai should not use /boot

2005-10-31 Thread Sebastien Koechlin
Package: fai
Version: 2.8.4
Severity: important

fai is using /boot to store kernels for client computers. This
filesystem is for and only for booting the computer, not clients. It's a small
partition with only data needed to boot the computer, sometime on
expensive flash drive, mounted read-only, removable, erased on
kernel-update... Fai should not put any file on /boot.

-- System Information:
Debian Release: 3.1
Architecture: amd64 (x86_64)
Kernel: Linux 2.6.8-11-em64t-p4-smp
Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968)

Versions of packages fai depends on:
ii  libapt-pkg-perl   0.1.13 Perl interface to libapt-pkg
ii  perl  5.8.4-8Larry Wall's Practical Extraction 

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]



Bug#336315: fai-kernels should be fai-kernels-i386 and in the all architecture

2005-10-29 Thread Sebastien Koechlin
Package: fai-kernels
Version: 1.9.1
Severity: normal

fai-kernels is a package with kernels for guest computers. 

As thoses kernels are for i386, the package should be named 
fai-kernels-i386 or something like that.

As this package as no link with the host architecture computer, 
it should be in the 'all' arch.

Workaround: dpkg -i --force-architecture fai-kernels_1.9.1_i386.deb

-- System Information:
Debian Release: 3.1
Architecture: amd64 (x86_64)
Kernel: Linux 2.6.8-11-em64t-p4-smp
Locale: LANG=C, LC_CTYPE=C (charmap=ANSI_X3.4-1968)

-- no debconf information


-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]