Skip site navigation (1)Skip section navigation (2)
Date:      Mon, 25 Nov 2019 13:56:17 +0000
From:      bugzilla-noreply@freebsd.org
To:        ports-bugs@FreeBSD.org
Subject:   [Bug 242223] mail/dovecot: incompatible with security.bsd.hardlink_check_{g,u}id
Message-ID:  <bug-242223-7788@https.bugs.freebsd.org/bugzilla/>

next in thread | raw e-mail | index | archive | help
https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D242223

            Bug ID: 242223
           Summary: mail/dovecot: incompatible with
                    security.bsd.hardlink_check_{g,u}id
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Some People
          Priority: ---
         Component: Individual Port(s)
          Assignee: ler@FreeBSD.org
          Reporter: tphilipp@potion-studios.com
             Flags: maintainer-feedback?(ler@FreeBSD.org)
          Assignee: ler@FreeBSD.org

Hello,

similar to PR 218392, the port is incompatible with
security.bsd.hardlink_check_gid and security.bsd.hardlink_check_uid sysctl
flags set to 1, usually done for hardening.

As with the mentioned PR, those flags also affect dovecot's use of lock fil=
es.
However, I *think* it's less dangerous, though, b/c it simply cannot write a
lock file anymore (which are hardlinks in this case) and just gives up on
whatever it planned to do.

Long story short, I think it's worth adding a warning to pkg-message for th=
is,
as well.

Thanks!

--=20
You are receiving this mail because:
You are the assignee for the bug.=



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?bug-242223-7788>