Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 18 Mar 2003 11:43:31 +0000
From:      Mike Doyle <relyod@cooperationireland.org>
To:        freebsd-questions@freebsd.org
Subject:   Problem with Majordomo since upgrade
Message-ID:  <5.2.0.9.0.20030318113029.02814150@199.107.2.1>

next in thread | raw e-mail | index | archive | help
Hi

I performed a BINARY upgrade from FreeBSD 4.1 to FreeBSD 4.8RC, mostly due 
to the
sendmail security issue.

Almost everything seems to be fine, but I have had trouble getting 
Majordomo to run.

At the moment, I have it sort-of working (by giving the two mail spool 
directories
group and world writable permissions, which sendmail warns about), but I 
also get the
following messages in my /var/log/messages

 > Mar 18 11:27:13 liffey sendmail[61628]: h2IBQujr061625: 
SYSERR(majordom): openmailer:
    insufficient privileges to change gid, RunAsUid=54, new_gid=0, gid=1, 
egid=25

UID 54 is Majordomo
GID 1 is daemon
GID 25 is smmsp (i.e. part of sendmail)

I understand that this message is warning me that the Majordomo process was 
unable to change
group to the "correct" group to run (if it had worked, I wouldn't need a 
world writeable spool
directory). Any suggestions what I can do to fix this ? Why would majordomo 
be trying to
change group to the wheel group anyway ?

The problem is probably due to my incorrectly merging changes to the 
/etc/passwd or
/etc/group file during an upgrade (originally binary upgraded from FreeBSD 
3.x -> 4.1 and then
from 4.1 -> 4.8RC if I recall correctly).

When 4.8 comes out for real, I may end up doing a complete re-install, and 
re-create
all my users. This server is the mail server for the company (POP accounts, 
users
have no shell accounts, it also doubles as a SQUID server for about half 
users. no
other processes running on the machine) I don't want to have to leave the 
mail spool
directories with excessively generous permissions indefinitely. So help 
getting out
of this hole I appear to have dug for myself would be appreciated. 
Especially if I can avoid
having to do a clean install, and therefore re-creating 70 odd user 
accounts and re-issuing
all those passwords.

<>< ============================================================= ><>
Michael Doyle                    email: relyod@cooperationireland.org
Network Administrator            personal email:     relyod@indigo.ie
Co-operation Ireland	           http://www.cooperationireland.org/
Phone: +353-1-661 0588                           Fax: +353-1-661 8456

*********************************************************************


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?5.2.0.9.0.20030318113029.02814150>