From owner-svn-ports-head@freebsd.org Mon Mar 4 07:31:48 2019 Return-Path: Delivered-To: svn-ports-head@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id 8F3901506619; Mon, 4 Mar 2019 07:31:48 +0000 (UTC) (envelope-from mfechner@FreeBSD.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) server-signature RSA-PSS (4096 bits) client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "Let's Encrypt Authority X3" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 354F48C13C; Mon, 4 Mar 2019 07:31:48 +0000 (UTC) (envelope-from mfechner@FreeBSD.org) Received: from repo.freebsd.org (repo.freebsd.org [IPv6:2610:1c1:1:6068::e6a:0]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 29F33D53; Mon, 4 Mar 2019 07:31:48 +0000 (UTC) (envelope-from mfechner@FreeBSD.org) Received: from repo.freebsd.org ([127.0.1.37]) by repo.freebsd.org (8.15.2/8.15.2) with ESMTP id x247VlZH003071; Mon, 4 Mar 2019 07:31:47 GMT (envelope-from mfechner@FreeBSD.org) Received: (from mfechner@localhost) by repo.freebsd.org (8.15.2/8.15.2/Submit) id x247Vlff003069; Mon, 4 Mar 2019 07:31:47 GMT (envelope-from mfechner@FreeBSD.org) Message-Id: <201903040731.x247Vlff003069@repo.freebsd.org> X-Authentication-Warning: repo.freebsd.org: mfechner set sender to mfechner@FreeBSD.org using -f From: Matthias Fechner Date: Mon, 4 Mar 2019 07:31:47 +0000 (UTC) To: ports-committers@freebsd.org, svn-ports-all@freebsd.org, svn-ports-head@freebsd.org Subject: svn commit: r494558 - head X-SVN-Group: ports-head X-SVN-Commit-Author: mfechner X-SVN-Commit-Paths: head X-SVN-Commit-Revision: 494558 X-SVN-Commit-Repository: ports MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-Rspamd-Queue-Id: 354F48C13C X-Spamd-Bar: -- Authentication-Results: mx1.freebsd.org X-Spamd-Result: default: False [-2.96 / 15.00]; local_wl_from(0.00)[FreeBSD.org]; NEURAL_HAM_MEDIUM(-1.00)[-0.999,0]; NEURAL_HAM_SHORT(-0.96)[-0.961,0]; ASN(0.00)[asn:11403, ipnet:2610:1c1:1::/48, country:US]; NEURAL_HAM_LONG(-1.00)[-0.999,0] X-BeenThere: svn-ports-head@freebsd.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: SVN commit messages for the ports tree for head List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Mon, 04 Mar 2019 07:31:48 -0000 Author: mfechner Date: Mon Mar 4 07:31:47 2019 New Revision: 494558 URL: https://svnweb.freebsd.org/changeset/ports/494558 Log: Added new user rspamd to be used for mail/rspamd. Reason for this is, if you like to use rspamd to also sign emails using DKIM, ARC, rspamd need access to the private key used for signing. As user nobody is correctly used to run rspamd each service that fallback to user nobody would have access to the private key, which is a security risk. PR: 230766 Modified: head/GIDs head/UIDs Modified: head/GIDs ============================================================================== --- head/GIDs Mon Mar 4 07:21:57 2019 (r494557) +++ head/GIDs Mon Mar 4 07:31:47 2019 (r494558) @@ -176,7 +176,7 @@ archiva:*:232: _ntp:*:233: kafka:*:234: openhab:*:235: -# free: 236 +rspamd:*:236: # free: 237 # free: 238 # free: 239 Modified: head/UIDs ============================================================================== --- head/UIDs Mon Mar 4 07:21:57 2019 (r494557) +++ head/UIDs Mon Mar 4 07:31:47 2019 (r494558) @@ -126,7 +126,7 @@ mlvpn:*:176:176::0:0:mlVPN pseudo-user:/var/run/mlvpn: _mdnsd:*:177:177::0:0:Multicast DNS Daemon:/var/empty:/usr/sbin/nologin otpw:*:178:178::0:0:OTPW pseudo-user:/var/lib/otpw:/usr/sbin/nologin gdnsd:*:179:179::0:0:gDNSd pseudo-user:/nonexistent:/usr/sbin/nologin -# free: 180 +# free: 180, GID used nagios:*:181:181::0:0:Nagios pseudo-user:/var/spool/nagios:/usr/sbin/nologin noc:*:182:182::0:0:NOC pseudo-user:/usr/local/noc:/bin/sh icinga:*:183:183::0:0:Icinga pseudo-user:/var/spool/icinga:/usr/sbin/nologin @@ -174,14 +174,14 @@ postgrey:*:225:225::0:0:Postgrey Owner:/nonexistent:/u sqlgrey:*:226:226::0:0:SQLgrey Owner:/nonexistent:/usr/sbin/nologin _hfm:*:227:227::0:0:hfm daemon:/nonexistent:/usr/sbin/nologin osrm:*:228:228::0:0:osrm:/nonexistent:/usr/sbin/nologin -# free: 229 +# free: 229, GID used carbon:*:230:230::0:0:osrm:/nonexistent:/usr/sbin/nologin foundationdb:*:231:231::0:0:foundationdb:/nonexistent:/usr/sbin/nologin archiva:*:232:232::0:0:Archiva Daemon User:/usr/local/archiva:/bin/sh _ntp:*:233:233::0:0:NTP Daemon:/var/empty:/usr/sbin/nologin kafka:*:234:234::0:0:Apache Kafka user:/nonexistent:/usr/sbin/nologin openhab:*:235:235::0:0:openHAB user:/var/db/openhab2/home:/usr/sbin/nologin -# free: 236 +rspamd:*:236:236::0:0:rspamd pseudo-user:/nonexistent:/usr/sbin/nologin # free: 237 # free: 238 # free: 239