Bug#497952: /etc/default/pgpool2 not sourced by init script

2008-09-05 Thread Michael Shuler
PROTECTED]:~$ ls -l /etc/default/pgpool ls: cannot access /etc/default/pgpool: No such file or directory -- Kind Regards, Michael Shuler -- System Information: Debian Release: lenny/sid APT prefers testing APT policy: (700, 'testing') Architecture: i386 (i686) Kernel: Linux 2.6.26-1-686 (SMP w

Bug#464345: New upstream release

2008-09-05 Thread Michael Shuler
Package: pgpool2 Tags: patch Followup-For: Bug #464345 New version allows the use of restart - patch included for restart option in init script. -- Kind Regards, Michael Shuler -- System Information: Debian Release: lenny/sid APT prefers testing APT policy: (700, 'testing') Architecture

Bug#459513: ITP: libdata-password-perl -- Perl extension for assessing password quality

2008-01-06 Thread Michael Shuler
Package: wnpp Severity: wishlist Owner: Michael Shuler [EMAIL PROTECTED] * Package name: libdata-password-perl Version : 1.07 Upstream Author : Raz Information Systems : [EMAIL PROTECTED], [EMAIL PROTECTED] * URL : http://search.cpan.org/dist/Data

Bug#453680: ITP: djbdns -- Replacement for BIND, written by Dan Bernstein

2007-11-30 Thread Michael Shuler
- we run a very large tinydns system at work. -- Warm Regards, Michael Shuler -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#453680: ITP: djbdns -- Replacement for BIND, written by Dan Bernstein

2007-11-30 Thread Michael Shuler
. ;) [0] http://cr.yp.to/distributors.html -- Kind Regards, Michael Shuler -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#453680: ITP: djbdns -- Replacement for BIND, written by Dan Bernstein

2008-01-01 Thread Michael Shuler
http://cr.yp.to/distributors.html was updated 2007.12.28-29 with appropriate public domain notes. Build away! -- Kind Regards, Michael Shuler -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#443263: ITP: libauthen-tacacsplus-perl -- Extension for authentication using tacacs+ server

2007-09-19 Thread Michael Shuler
Package: wnpp Severity: wishlist Owner: Michael Shuler [EMAIL PROTECTED] * Package name: libauthen-tacacsplus-perl Version : 0.16 Upstream Author : Mike Shoyher [EMAIL PROTECTED] : Mike McCauley [EMAIL PROTECTED] * URL : http://search.cpan.org/dist

Bug#443263: ITP: libauthen-tacacsplus-perl -- Extension for authentication using tacacs+ server

2007-09-24 Thread Michael Shuler
will roll up a .deb when time permits. It pays to ask the upstream author(s) for help with licensing clarification ;) -- Kind Regards, Michael Shuler signature.asc Description: OpenPGP digital signature

Bug#438478: djbdns-installer should depend on libc6-dev

2007-08-20 Thread Michael Shuler
on build-essential, it may be appropriate to go ahead and add 'Depends: build-essential' to djbdns-installer dependencies - this would have pulled in the needed packages in Meder's case. -- Kind Regards, Michael Shuler = [EMAIL PROTECTED]:/# aptitude install djbdns-installer Reading package lists

Bug#438478: djbdns-installer should depend on libc6-dev

2007-08-20 Thread Michael Shuler
tags 438478 patch thanks I think this Depends looks about right: Depends: patch, fakeroot | sudo, wget, debhelper, build-essential, daemontools-installer | daemontools Kind Regards, Michael Shuler --- control.orig 2003-11-19 19:16:20.0 + +++ control 2007-08-21 02:22:09.0

Bug#439018: djbdns-installer: update package to current standards

2007-08-21 Thread Michael Shuler
source: native-package-with-dash-version -- Kind Regards, Michael Shuler -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#434661: bind9: vulnerability with cryptographically weak transaction

2007-07-27 Thread Michael Shuler
Looks like this was done on July 25th, 2007 - bug should be closed: # [SECURITY] [DSA 1341-1] New bind9 packages fix DNS cache poisoning Moritz Muehlenhoff # [SECURITY] [DSA 1342-2] New bind9 packages fix DNS cache poisoning Moritz Muehlenhoff Thank you, Moritz. -- To UNSUBSCRIBE, email to

Bug#243323: extra file in package (djbdns-conf-fhs)

2007-07-27 Thread Michael Shuler
root 15 Jul 9 13:08 tinydns-conf-fhs - djbdns-conf-fhs lrwxrwxrwx 1 root root 15 Jul 9 13:08 walldns-conf-fhs - djbdns-conf-fhs Kind Regards, Michael Shuler --- debian/djbdns-conf-fhs.orig 2003-11-18 22:39:05.0 -0600 +++ debian/djbdns-conf-fhs 2007-07-27 23:44:17.0 -0500

Bug#433183: djbdns-installer: init.d script failed if installed in non-FHS fashion

2007-07-30 Thread Michael Shuler
/): *) echo 'Usage: /etc/init.d/dnscache {start|stop|restart}' exit 1 Kind Regards, Michael Shuler -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#447950: Advisory - L.ROOT-SERVERS.NET changing to 199.7.83.42 on 2007-11-01

2007-10-24 Thread Michael Shuler
Package: djbdns-installer Version: 1.05-11 Severity: normal Tags: patch Please update L.ROOT-SERVERS.NET IP address in djbdns. A new dnsroots.diff is attached (which includes the B.ROOT change in bug #432459). Kind Regards, Michael Shuler Original Message Subject: [dns

Bug#421662: libexo-0.3-0 missing dependency on liburi-perl

2007-04-30 Thread Michael Shuler
aborted at /usr/lib/libexo-0.3-0/exo-compose-mail-0.3 line 26. A quick 'apt-get install install liburi-perl' solved this problem. Kind Regards, Michael Shuler Debian GNU/Linux 4.0 Etch, kernel 2.6.18.dfsg.1-12, libc6 2.3.6.ds1-13 -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject

Bug#432459: B.ROOT-SERVERS.NET IP address changed

2007-07-09 Thread Michael Shuler
for the new IP address: B.ROOT-SERVERS.NET. 360 A 192.228.79.201 A new dnsroots.diff is attached. Kind Regards, Michael Shuler --- dnsroots.global.orig 2001-02-11 21:11:45.0 + +++ dnsroots.global 2007-07-09 23:14:38.0 + @@ -1,5 +1,5 @@ 198.41.0.4

Bug#274000: djbdns-installer: typo in description of tinydns

2007-07-09 Thread Michael Shuler
Tags: + patch patch attached --- debian/control.orig 2003-11-19 13:16:20.0 -0600 +++ debian/control 2007-07-09 21:29:25.0 -0500 @@ -19,7 +19,7 @@ save time later. . tinydns is a DNS server. It accepts iterative DNS queries from hosts - taround he Internet, and responds

Bug#432471: Truncation of alias chains by tinydns and axfrdns

2007-07-09 Thread Michael Shuler
IN NS ns2.dyndns.org. ;; Received 268 bytes from 64.39.2.170#53(64.39.2.170) in 21 ms Kind Regards, Michael Shuler --- djbdns-1.05-original/tdlookup.c Sun Feb 11 21:11:45 2001 +++ djbdns-1.05/tdlookup.c Thu Apr 3 11:56:47 2003 @@ -103,12 +103,13 @@ return response_addname(d1

Bug#432903: Please add native SRV type to tinydns-data / axfr-get

2007-07-12 Thread Michael Shuler
data type is far more useful than the opaque SRV handling in the stock djbdns source. Kind Regards, Michael Shuler From: Michael Handler [EMAIL PROTECTED] To: [EMAIL PROTECTED] Subject: tinydns-data SRV axfr-get SRV/PTR patches Date: Thu, 14 Sep 2000 20:37:50 -0400 Here's a combined patch

Bug#432900: Please add one-second.patch for performance

2007-07-12 Thread Michael Shuler
that the database file needs to be mapped and unmapped (patch credit goes to Lennert Buytenhek). Kind Regards, Michael Shuler From [EMAIL PROTECTED] Sat Jul 23 15:19:58 2005 X-VM-v5-Data: ([nil nil nil nil nil nil nil nil nil] [1512 Tuesday 20 April 2004 13:06:49 +0200 Lennert Buytenhek [EMAIL

Bug#418449: submission entry for ignore.d.server/postfix

2007-04-09 Thread Michael Shuler
Package: logcheck Version: 1.2.54 When Postfix is configured to listen on port tcp/587 by uncommenting the submission line in the postfix master.cf, logcheck does not ignore the anvil statistics log entries - attached is a patch from the current SVN trunk. Index:

Bug#418449: submission entry for ignore.d.server/postfix

2007-04-10 Thread Michael Shuler
Here is an example of the event entries that prompted me to edit my postfix ignore, after I enabled postfix to listen to the submission port (tcp/587): System Events =-=-=-=-=-=-= Mar 3 13:31:27 aesop postfix/anvil[16286]: statistics: max connection rate 1/60s for (submission:69.153.32.239) at

Bug#485681: Recommends unavailable package in Etch

2008-06-10 Thread Michael Shuler
/main Packages Thanks for looking! -- Kind Regards, Michael Shuler -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble? Contact [EMAIL PROTECTED]

Bug#443933: metacity window position also affected by font changes

2008-04-30 Thread Michael Shuler
to be the standard behavior of metacity from a bit of research I did [0], and this is the one serious annoyance I have testing out moving to gnome. [0] http://chad.glendenin.com/metacity/ -- Kind Regards, Michael Shuler -- To UNSUBSCRIBE, email to [EMAIL PROTECTED] with a subject of unsubscribe. Trouble

Bug#605614: debian-installer: Ability to configure remote syslog

2010-12-02 Thread Michael Shuler
On 12/01/2010 02:06 PM, Ryan Lovett wrote: I would like to be able to configure debian-installer to log messages to a remote syslog server. I know that I can recover the log messages after installation is complete but it would be convenient for me to be able to monitor netbooted clients as they

Bug#538761: ITP: libnet-mosso-cloudfiles-perl -- Perl interface to Mosso CloudFiles service

2009-07-26 Thread Michael Shuler
Package: wnpp Severity: wishlist Owner: Michael Shuler mich...@pbandjelly.org * Package name: libnet-mosso-cloudfiles-perl Version : 0.43 Upstream Author : Léon Brocard l...@astray.com * URL : http://search.cpan.org/dist/Net-Mosso-CloudFiles/ * License : Perl

Bug#569047: New mysql plugin does not function with default configuration

2010-02-09 Thread Michael Shuler
, Michael Shuler --- debian/plugins.conf.orig 2010-02-09 08:54:14.0 -0600 +++ debian/plugins.conf 2010-02-09 10:23:26.704008243 -0600 @@ -76,7 +76,8 @@ [mysql*] user root env.mysqlopts --defaults-file=/etc/mysql/debian.cnf - +env.mysqluser debian-sys-maint +env.mysqlconnection DBI:mysql:mysql

Bug#508376: rsyslog: /var/log/mail.log and /var/log/mail.info are identical

2009-08-08 Thread Michael Shuler
to mail.log -- Kind regards, Michael Shuler -- System Information: Debian Release: squeeze/sid APT prefers testing APT policy: (700, 'testing'), (300, 'unstable') Architecture: i386 (i686) Kernel: Linux 2.6.26-2-686 (SMP w/2 CPU cores) Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap

Bug#543118: ITP: python-cloudfiles -- Python interface to Rackspace CloudFiles service

2009-08-22 Thread Michael Shuler
Package: wnpp Severity: wishlist Owner: Michael Shuler mich...@pbandjelly.org Package name: python-cloudfiles Version : 1.4.0 Upstream Author : Cloud Files cloudfi...@rackspacecloud.com URL : http://github.com/rackspace/python-cloudfiles/ License : MIT

Bug#574498: aiccu: Package upgrade fails in postinst

2010-03-18 Thread Michael Shuler
Package: aiccu Version: 20070115-12 Severity: important Upgrading from -11 to -12 hangs during postinst with defunct process hanging dist-upgrade: ... Setting up aiccu (20070115-12) ... Installing new version of config file /etc/init.d/aiccu ... Installing new version of config file

Bug#602737: Failure to find iso image from thumb drive

2010-11-07 Thread Michael Shuler
the results you would like - I use this method frequently :-) -- Kind regards, Michael Shuler -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#603409: r-cran-rcmdr: Rcmdr missing packages

2010-11-13 Thread Michael Shuler
Package: r-cran-rcmdr Version: 1.6-0-2 Severity: wishlist On first start of Rcmdr after installation, I was presented with a notification box with the following: The following packages used by Rcmdr are missing: leaps, Hmisc, aplpack Without these packages, some features will not be

Bug#603409: (no subject)

2010-11-13 Thread Michael Shuler
I see there is an ITP for r-cran-aplpack - #588924 -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#508019: trac-git: Defunct git processes left behind

2008-12-06 Thread Michael Shuler
below, I am using apache2 with mod_python to run trac. -- Kind Regards, Michael Shuler ii apache2 2.2.9-10 Apache HTTP Server metapackage ii apache2-mpm-worker 2.2.9-10 Apache HTTP Server - high speed threaded mod ii apache2-utils

Bug#585154: general protection faults triggered by munin-graph

2010-06-11 Thread Michael Shuler
Awoke this morning to another fault (x2) and I've attached the log. -- Kind regards, Michael # This fault resulted in: # # root 2039 0.0 0.0 22168 1020 ?Ss Jun10 0:00 /usr/sbin/cron # root 15252 0.0 0.0 45292 1272 ?S02:55 0:00 \_ /USR/SBIN/CRON #

Bug#585154: general protection faults triggered by munin-graph

2010-06-11 Thread Michael Shuler
I see Holger marked this bug as unreproducible - that's a good thing, but would anyone have any suggestions on how I might track this down to an actual cause? At this point, it's a bit of a mystery on where I might look next.. Thanks! Michael -- To UNSUBSCRIBE, email to

Bug#585154: general protection faults triggered by munin-graph

2010-06-09 Thread Michael Shuler
is a bit of a mystery to me, but due to the process pattern during the fault, I'm opening under munin. Kind regards, Michael Shuler -- System Information: Debian Release: squeeze/sid APT prefers testing APT policy: (700, 'testing'), (300, 'unstable') Architecture: amd64 (x86_64) Kernel: Linux

Bug#585625: linux-image-2.6 2.6.32-19 works for me

2010-08-17 Thread Michael Shuler
On 08/16/2010 09:49 PM, Ben Hutchings wrote: Is i915 also working for you in this version? Yes, i915 started working correctly for me with 2.6.32-19 (currently using 2.6.32-20 with i915 successfully). Andrew pointed me to this bug at DebConf10 - I had just purchased a ThinkPad X201, installed

Bug#585625: linux-image-2.6 2.6.32-19 works for me

2010-08-12 Thread Michael Shuler
I am tracking Squeeze and yesterday installed linux-image-2.6.32-5-686-bigmem version 2.6.32-19 from Sid on a Lenovo ThinkPad X201 with the identical video chipset as listed by Andrew in #585910 - so far, version 2.6.32-19 is working well for me and I thought I would pass along my success. --

Bug#546629: nginx_0.6.32-3+lenny2_i386 uninstallable because of libpcre3 (= 7.7)

2009-09-14 Thread Michael Shuler
Package: nginx Version: 0.6.32-3+lenny2 Severity: grave Justification: renders package unusable Security release of nginx on i386 is uninstallable (amd64 is ok on the 64-bit machines I have) mshu...@linode:~$ apt-cache policy nginx nginx: Installed: 0.6.32-3 Candidate: 0.6.32-3+lenny2

Bug#546629: thank you

2009-09-15 Thread Michael Shuler
nginx_0.6.32-3+lenny2+b1_i386 installs fine Thanks to all for the rebuild and quick release. Kind regards, Michael -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#464345: pgpool2 packaging

2009-10-09 Thread Michael Shuler
of ITA #471826, on a list message regarding this ITA [0] to see what his plans might be. [0] http://lists.alioth.debian.org/pipermail/pkg-postgresql-public/2009-October/000471.html -- Kind regards, Michael Shuler signature.asc Description: OpenPGP digital signature

Bug#624203: verbose iproute makes vpnc fail connecting

2011-06-07 Thread Michael Shuler
for the concentrator IP address was not set, due to the extra data not being correct for 'ip route add ...' After the attached sed line fix, I get a static route for the concentrator again. Kind regards, Michael Shuler -- System Information: Debian Release: wheezy/sid APT prefers testing APT

Bug#588219: ca-certificate's maintenance

2011-09-07 Thread Michael Shuler
On 09/07/2011 06:49 PM, Raphael Geissert wrote: Stefan doesn't seem to be active, at least regarding the adoption of ca-certs. I have not received a reply from Stefan, either. Michael: Thijs and I are interested in maintaining ca-certificates. What were your plans regarding its maintenance?

Bug#597537: Looking for seconds to add the Amazon EC2 public certificate in ca-certificates.

2011-08-23 Thread Michael Shuler
On 08/22/2011 10:56 PM, Russ Allbery wrote: Charles Plessy ple...@debian.org writes: as per /usr/share/doc/ca-certificates/README.Debian, I am looking for additional signed recommendations for the addition of the Amazon Elastic Computer Cloud (EC2) public certificate to the ca-certificates

Bug#588219: ca-certificate's maintenance

2011-09-16 Thread Michael Shuler
On 09/16/2011 01:21 AM, Raphael Geissert wrote: I don't think that some bits of vcs history should become a blocker. Let's better work with what we already have at hand. This sounds acceptable, but I thought of using snapshot.d.o to see if I could fill in some history, and I have some time

Bug#588219: ca-certificate's maintenance

2011-09-17 Thread Michael Shuler
On 09/16/2011 07:08 AM, Michael Shuler wrote: On 09/16/2011 01:21 AM, Raphael Geissert wrote: I init'ed collab-maint/ca-certificates, but I would like to see if I can at least fill in the release history, as mentioned above. I pulled all the missing releases from snapshot.d.o and imported them

Bug#588219: ITA - ca-certificates -- Common CA certificates

2011-07-26 Thread Michael Shuler
Hello Stefan, I would like to take over this ITA, since the package needs some care. I am starting to work on updates, today, so please, reply to #588219 if you intend to follow through with the adoption and we can merge some work, if you like. Kind regards, Michael Shuler signature.asc

Bug#624182: ca-certificates: option --fresh not passed down to hook scripts

2012-06-23 Thread Michael Shuler
tags 624182 + moreinfo thanks Torsten, Is this actually still an issue? I see that the java keystore is getting fully updated with -f/--fresh when I was testing. Thanks! -- Kind regards, Michael mshuler@mana:~$ sudo update-ca-certificates Updating certificates in /etc/ssl/certs... 0 added,

Bug#680077: Net::DNS::Header::data: no such method at /usr/share/perl5/Net/DNS/Fingerprint.pm line 669

2012-07-03 Thread Michael Shuler
== PROCESS 69.93.127.10:53 0,IQUERY,0,0,1,0,0,0,NOERROR,0,0,0,0 . IN A Net::DNS::Header::data: no such method at /usr/share/perl5/Net/DNS/Fingerprint.pm line 669 $ -- Kind regards, Michael Shuler -- System Information: Debian Release: wheezy/sid APT prefers unstable APT policy: (900, 'unstable

Bug#680077: Net::DNS::Header::data: no such method at /usr/share/perl5/Net/DNS/Fingerprint.pm line 669

2012-07-03 Thread Michael Shuler
On 07/03/2012 01:01 PM, Thorsten Alteholz wrote: I am using a fresh Sid VM and unfortunately get the following output: What version of libnet-dns-perl on that Sid VM? I run Sid and this appears to be the issue. With the version in testing (0.66-2+b2) fpdns works - with the version in Sid

Bug#624182: ca-certificates: option --fresh not passed down to hook scripts

2012-06-22 Thread Michael Shuler
perhaps? -- Kind regards, Michael Shuler -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#682125: ca-certificates: removes directories that were installed by another package: /etc/ssl/certs/

2012-07-19 Thread Michael Shuler
Thanks for the bug report, Andreas. I'll get this updated and tested as soon as I can. Kind regards, Michael Shuler signature.asc Description: OpenPGP digital signature

Bug#682125: ca-certificates: removes directories that were installed by another package: /etc/ssl/certs/

2012-07-20 Thread Michael Shuler
, Michael Shuler signature.asc Description: OpenPGP digital signature

Bug#682125: ca-certificates: removes directories that were installed by another package: /etc/ssl/certs/

2012-07-21 Thread Michael Shuler
. Or you could pull ca-certificates_20120721 from my repository and report back that it passes, perhaps? http://www.pbandjelly.org/debian/ca-certificates_20120721_all.deb -- Kind regards, Michael Shuler diff --git a/debian/changelog b/debian/changelog index 7736538..89d7d03 100644 --- a/debian

Bug#501123: ca-certificates should be in squeeze-updates

2011-10-24 Thread Michael Shuler
shape, but plan on uploading to squeeze-updates when we're at a good place with some upgrade testing done. Would it make sense to use backports as a sort-of stable-experimental testing ground before upload to ${stable}-updates? Thanks! -- Kind regards, Michael Shuler -- To UNSUBSCRIBE, email

Bug#646767: ca-certificates: Please, remove gouv.fr/cert_igca_rsa.crt - IGC_A.pem RSA CA now included in mozilla bundle

2011-10-26 Thread Michael Shuler
WARNING: Skipping duplicate certificate cert_igca_rsa.pem 164 added, 0 removed; done. Running hooks in /etc/ca-certificates/update.ddone. $ -- Kind regards, Michael Shuler -- System Information: Debian Release: wheezy/sid APT prefers unstable APT policy: (300, 'unstable'), (100

Bug#619587: Update mozilla/certdata.txt

2011-10-28 Thread Michael Shuler
(CCing #619587) I committed an updated mozilla/blacklist.txt to explicitly blacklist the untrusted Bogus * and Explicitly Distrust DigiNotar * certificates, which will show up in the next upload [2]. On 10/28/2011 03:57 AM, Gijs Hillenius wrote: A bit of Googling did not explain me why Debian's

Bug#537051: ca-certificates 20090709: installation error

2011-10-28 Thread Michael Shuler
regards, Michael Shuler -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#538259: ca-certificates: error when attempting to upgrade

2011-10-28 Thread Michael Shuler
! -- Kind regards, Michael Shuler -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#623882: error installing certs with non-ascii characters in their names

2011-10-28 Thread Michael Shuler
Hello Miles, I just wanted to let you know that Debian bug #623882 was closed by a merge with the fixed bug #623671 in ca-certificates-java. -- Kind regards, Michael Shuler -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact

Bug#640696: Exception in thread main

2011-10-28 Thread Michael Shuler
Torsten or someone else can help us out. -- Kind regards, Michael Shuler -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#573857: Where should the EC2 AMI certificate live?

2011-10-28 Thread Michael Shuler
. Thoughts? [0] http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=597537#18 [1] http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=622946 -- Kind regards, Michael Shuler -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas

Bug#646767: ca-certificates: Please, remove gouv.fr/cert_igca_rsa.crt - IGC_A.pem RSA CA now included in mozilla

2011-10-28 Thread Michael Shuler
Considering the following note that was included with the initial request to Mozilla to Add French Government (DCSSI) CA certificate, I am removing the DSA certificate as well: IMPORTANT! Please close our request for the DSA certificate – the key was created for backup purpose in case of a

Bug#647548: ca-certificates: Mozilla is revoking trust in all certificates issued by DigiCert Sdn. Bhd.

2011-11-03 Thread Michael Shuler
Package: ca-certificates Version: 20111025 Severity: important DigiCert Sdn. Bhd. is an Entrust subordinate CA and has issued 22 certificates with weak keys. An attacker could use one of these weak certificates to impersonate the legitimate owners. Mozilla is revoking trust in all certificates

Bug#647548: Mozilla bug#

2011-11-03 Thread Michael Shuler
Additional reading: https://bugzilla.mozilla.org/show_bug.cgi?id=698753 -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#687693: ca-certificates: Cacert License is missing

2012-11-03 Thread Michael Shuler
Control: severity -1 serious Control: tags -1 pending (Setting to serious, due to policy violation) After reading the -legal thread, comments above, the CAcert mailing list thread, the Fedora explanation, and carefully reading the licensing myself, the cautious side of me says the right thing to

Bug#687693: ca-certificates: Cacert License is missing

2012-11-04 Thread Michael Shuler
On 11/03/2012 08:15 PM, Steve Langasek wrote: On Sat, Nov 03, 2012 at 03:28:08PM -0500, Michael Shuler wrote: After reading the -legal thread, comments above, the CAcert mailing list thread, the Fedora explanation, and carefully reading the licensing myself, the cautious side of me says

Bug#687693: ca-certificates: Cacert License is missing

2012-11-04 Thread Michael Shuler
I meant to include a note that I'm fine with not removing CAcert from ca-certificates, as long as there is consensus with a) include the license in d/copyright, or b) ignore it (for now). We can work on this after wheezy, when we can add another package, if that is what we need to do. Sorry if

Bug#687693: ca-certificates: Cacert License is missing

2012-11-04 Thread Michael Shuler
really appreciate your insight, Steve. -- Warm regards, Michael Shuler signature.asc Description: OpenPGP digital signature

Bug#692323: ca-certificates: cacert.org.pem needs to be split - one cert per file (see: #642314)

2012-11-04 Thread Michael Shuler
as separate files, as opposed to the current concatenation into cacert.org.crt. See openssl bug #642314 for details - -- Michael Shuler - -- System Information: Debian Release: wheezy/sid APT prefers testing APT policy: (900, 'testing') Architecture: amd64 (x86_64) Kernel: Linux 3.2.0-3

Bug#692323: ca-certificates: cacert.org.pem needs to be split - one cert per file (see: #642314)

2012-11-04 Thread Michael Shuler
Control: tags -1 pending Double-checking cert hashes: Before (ver. 20120623): $ ls -l /etc/ssl/certs/|grep cacert.org lrwxrwxrwx 1 root root 14 Nov 4 16:58 590d426f.0 - cacert.org.pem lrwxrwxrwx 1 root root 14 Nov 4 16:58 5ed36f99.0 - cacert.org.pem lrwxrwxrwx 1 root root 14 Nov 4

Bug#692323: ca-certificates: cacert.org.pem needs to be split - one cert per file (see: #642314)

2012-11-04 Thread Michael Shuler
Control: tags -1 - pending + patch Setting to patch for some advice.. - 20090708 removed cacert.org/root.crt and cacert.org/class3.crt (deprecated in 20080809) - 20080809 concatenated both CACert Class 1 and Class 3 certificates into cacert.org.pem for certificate chaining, deprecating the

Bug#690204: ca-certificates{, -java}: many errors during squeeze-wheezy upgrades, probably related to configuration order and update.d/

2012-10-11 Thread Michael Shuler
merge 690204 537051 thanks Same errors in the attached log during a squeeze to wheezy dist-upgrade. However, immediately following the dist-upgrade, re-running 'update-ca-certificates --fresh' completes successfully and sets up the java keystore properly. In all cases, the end of the

Bug#619587: Update mozilla/certdata.txt

2011-11-06 Thread Michael Shuler
On 11/05/2011 01:52 AM, Raphael Geissert wrote: On Friday 28 October 2011 07:37:28 Michael Shuler wrote: I committed an updated mozilla/blacklist.txt to explicitly blacklist the untrusted Bogus * and Explicitly Distrust DigiNotar * certificates, which will show up in the next upload [2

Bug#642314: [Pkg-openssl-devel] Bug#642314: Bug#628780: Wrong hash link to cacert.org.pem and wron certificat hash handling at all

2012-07-30 Thread Michael Shuler
On 07/29/2012 07:53 AM, Kurt Roeckx wrote: On Thu, Sep 22, 2011 at 10:15:50AM +0200, Loïc Minier wrote: Just thought of another minor issue with the new c_rehash handling multiple certs in the same file: when a piece of software follows the hashed symlink, the certificate it's looking for

Bug#683403:

2012-08-01 Thread Michael Shuler
strive to properly ship each trusted CA in the mozilla certdata.txt, so I agree and will work on correcting this. Thanks for the report :) -- Kind regards, Michael Shuler -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas

Bug#692911: unblock: ca-certificates/20121105

2012-11-10 Thread Michael Shuler
of /etc/ssl{,/certs} from debian/postrm A debdiff against the package in testing is attached. Although #683728 was requested by Eddy Nigg at StartCom, I think it is important to include the latest available mozilla CA bundle for Wheezy. unblock ca-certificates/20121105 - -- Kind regards, Michael

Bug#692911: unblock: ca-certificates/20121105

2012-11-10 Thread Michael Shuler
On 11/10/2012 12:23 PM, intrigeri wrote: Michael Shuler wrote (10 Nov 2012 17:52:41 GMT) : unblock ca-certificates/20121105 There are multiple instances of: -CKA_TRUST_SERVER_AUTH CK_TRUST CKT_NSS_TRUST_UNKNOWN +CKA_TRUST_SERVER_AUTH CK_TRUST CKT_NSS_MUST_VERIFY_TRUST I guess

Bug#692911: unblock: ca-certificates/20121105

2012-11-11 Thread Michael Shuler
/certdata.txt and re-upload? -- Kind regards, Michael Shuler signature.asc Description: OpenPGP digital signature

Bug#692323: ca-certificates: cacert.org.pem needs to be split - one cert per file (see: #642314)

2012-11-11 Thread Michael Shuler
On 11/04/2012 06:18 PM, Michael Shuler wrote: If we attempt to leave cacert.org.pem around, we disrupt the hashes to the individual files. The openssl maintainers wish us to go back to the split files, so they can remove a faulty patch. I'll need to touch base with this, when I get some

Bug#692323: ca-certificates: cacert.org.pem needs to be split - one cert per file (see: #642314)

2012-11-12 Thread Michael Shuler
Similar to the removal of $CERTBUNDLE prior to calling c_rehash in sbin/update-ca-certificates (see http://bugs.debian.org/cgi-bin/643667), we could (using vars, etc. - this is just an idea): diff --git a/sbin/update-ca-certificates b/sbin/update-ca-certificates index 5375950..72acc5a 100755 ---

Bug#692911: unblock: ca-certificates/20121105

2012-11-15 Thread Michael Shuler
On 11/14/2012 06:12 PM, intrigeri wrote: Michael Shuler wrote (11 Nov 2012 20:59:10 GMT) : In parsing certdata.txt for the ca-certificates package, neither of these flags are used when the CA trust database is created, so both CKT_NSS_MUST_VERIFY_TRUST and CKT_NSS_TRUST_UNKNOWN flags

Bug#692911: unblock: ca-certificates/20121105

2012-11-18 Thread Michael Shuler
On 11/15/2012 08:46 AM, Michael Shuler wrote: On 11/14/2012 06:12 PM, intrigeri wrote: I think it would be even better to replace clean up with some version of parsing certdata.txt for the ca-certificates package, neither of these flags are used when the CA trust database is created, so both

Bug#693405: ca-certificates: Very unfortunate name for debconf.org certificate

2012-11-19 Thread Michael Shuler
On 11/16/2012 01:03 AM, Guillem Jover wrote: The debconf.org certifcate is named just ca.crt [0], which ends up being symlinked from /etc/ssl/certs/ as ca.pem. Please, rename the filename to denote it's coming from Debconf CA, and to avoid using such a generic and confusing name, in the same

Bug#685038: ITP: mailscanner -- email gateway for virus scanning, spam and phishing detection

2012-08-16 Thread Michael Shuler
, Michael Shuler -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#660689: Squeeze update for ca-certificates needs to note DigiNotar removal in NEWS, since previous version notes addition in NEWS

2012-02-20 Thread Michael Shuler
On 02/20/2012 02:50 PM, Josh Triplett wrote: When upgrading ca-certificates from lenny to squeeze, one of the previous ca-certificates NEWS entries mentions the addition of the DigiNotar root CA. The squeeze update to ca-certificates that removes DigiNotar does not include a corresponding

Bug#661785: [INTL:tr] Turkish debconf templates translation

2012-03-03 Thread Michael Shuler
tags 661785 pending thanks On 03/01/2012 04:04 AM, Atila KOÇ wrote: Please find attached the Turkish translation of the ca-certificates package. Pending next upload: http://anonscm.debian.org/gitweb/?p=collab-maint/ca-certificates.git;a=commit;h=5a85a493798455e2723c2f24d59b24fdb72dad31

Bug#659508: ca-certificates: Remove Trustwave CA

2012-02-12 Thread Michael Shuler
do you feel about the sneaky nature of the apparently multiple Verisign compromise disclosures, and the subsequent lack of public discussion - should we also remove their CAs? -- Kind regards, Michael Shuler signature.asc Description: OpenPGP digital signature

Bug#660002: [INTL:pl] Polish debconf translation

2012-02-16 Thread Michael Shuler
tags 660002 pending thanks On 02/15/2012 11:21 AM, Michał Kułach wrote: Please add attached Polish debconf translation. Pending next upload: http://anonscm.debian.org/gitweb/?p=collab-maint/ca-certificates.git;a=commit;h=926dd57f44e37eade9a6789c82ebeae7b42a52d0 Thank you! -- Kind regards,

Bug#647849: ca-certificates: removal of signet.pl's CAs

2011-12-05 Thread Michael Shuler
tags 647849 + pending thanks On 11/19/2011 04:55 AM, Thijs Kinkhorst wrote: Given that all the CRL's have expired for years it does seem good to remove them from the next upload of ca-certificates. I'm not sure about the necessity of stable updates. While it indeed seems to have gone out

Bug#647848: ca-certificates: no new CA should be accepted until proper procedure is defined

2011-12-14 Thread Michael Shuler
In my opinion, the first consideration of any new CA inclusion and subsequent update requests for ca-certificates should come from a verifiable representative of the CA organization (outside of additions/updates that come from Mozilla). The Mozilla CA process is well documented, and perhaps

Bug#668793: openshot: Update package to support new version of melt/python-mlt5

2012-04-14 Thread Michael Shuler
Package: openshot Version: 1.4.2-1 Severity: normal Hi Jonathan, The melt packages were updated, which removes python-mlt3 and subsequently openshot: $ sudo apt-get dist-upgrade -Vs Reading package lists... Done Building dependency tree Reading state information... Done Calculating

Bug#717761: [ca-certificates] Cartificates with blank spaces in file name break ca-certificates.conf when running dpkg-reconfigure

2013-07-26 Thread Michael Shuler
further escaping is needed after looking more closely. -- Kind regards, Michael Shuler -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

Bug#718173: ca-certificates: /usr/local/share/ca-certificates/ handling broken

2013-07-28 Thread Michael Shuler
Control: severity -1 normal On 07/27/2013 08:52 PM, Christoph Anton Mitterer wrote: Hi. Hi Christoph - thanks for the bug report. I lowered the severity since I agree that some improvements can be made, but local certificate handling does work fine. Biggest hint I have is to use

Bug#718434: ca-certificates: should CAcert.org be included?

2013-07-31 Thread Michael Shuler
In addition, I had an email conversation (link to thread is escaping me, at the moment) about removal due to their license statement [0] that You are bound by the Root Distribution Licence for any re-distributions of CAcert's roots. [1]. I was convinced by others that the certificates cannot be

Bug#718434: ca-certificates: should CAcert.org be included?

2013-07-31 Thread Michael Shuler
On 07/31/2013 01:55 PM, Michael Shuler wrote: In addition, I had an email conversation (link to thread is escaping me, at the moment) about removal due to their license statement [0] that You are bound by the Root Distribution Licence for any re-distributions of CAcert's roots. [1

Bug#697366: ca-certificates: remove turktrust certificates

2013-01-09 Thread Michael Shuler
Control: tags -1 pending Hello, The decision was made by the Mozilla CA team [0] to remove the recently added new CA for TÜRKTRUST Elektronik Sertifika Hizmet Sağlayıcısı, while leaving the two older Turktrust CA certificates enabled in certdata.txt version 1.87. ca-certificates_20121105

Bug#701081: debian-policy: mandate an encoding for filenames in binary packages

2013-04-07 Thread Michael Shuler
or shouldn't be required for using UTF-8. Agreed. As one of the concerned package maintainers, I think this sounds fine. -- Kind regards, Michael Shuler -- To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org with a subject of unsubscribe. Trouble? Contact listmas...@lists.debian.org

  1   2   3   4   >