Bug#1064044: change Debian's default umask to a more secure value such as umask 0077

2024-02-16 Thread Patrick Schleizer
Package: general Severity: wishlist Feature request: Change Debian's default umask to a more secure value such as umask 0077. Why? Quote Securing Debian Manual [1] > Debian's default umask setting is 022 this means that files (and directories) can be read and accessed by the user's group and

Re: convention on listen port local or all network interfaces etc. - revision 2

2017-03-26 Thread Patrick Schleizer
A convention on listen port local or all network interfaces etc. would be desirable. At the moment it looks like there is no convention for where server applications are configured to listen by default, on localhost vs. all interfaces. Looks like deciding that is up to the upstream author of the s

Re: convention on listen port local or all network interfaces etc.

2017-02-22 Thread Patrick Schleizer
Tomas Pospisek: > Am 21.02.2017 um 01:55 schrieb Patrick Schleizer: > >> for file_name in /usr/lib/server-config.d/*.conf ; do >>file_list="$file_list $file_name" >> done >> >> for file_name in /etc/server-config.d/*.conf ; do >>

Re: convention on listen port local or all network interfaces etc.

2017-02-22 Thread Patrick Schleizer
Marco d'Itri: >> So far we at Whonix had discussions with ricochet-im, onionshare, >> ZeroNet and unMessage. They are all interested to make their >> applications compatible with Whonix. However, asking each individual >> project to `/etc/application-specific.d` folder where Whonix then could >> dr

convention on listen port local or all network interfaces etc.

2017-02-20 Thread Patrick Schleizer
A convention on listen port local or all network interfaces etc. would be desirable. At the moment it looks like there is no convention for where server applications are configured to listen by default, on localhost vs. all interfaces. Looks like deciding that is up to the upstream author of the s

convention on listen port local or all network interfaces etc.

2017-02-20 Thread Patrick Schleizer
A convention on listen port local or all network interfaces etc. would be desirable. At the moment it looks like there is no convention for where server applications are configured to listen by default, on localhost vs. all interfaces. Looks like deciding that is up to the upstream author of the s