>>> what about owned by the amavisd user?
>>> (that is what happens, ) you chg owner when starting and that owner
>>> needs to be able to read all the files.
>>>
>>
>> According to: http://www.ijs.si/software/amavisd/INSTALL.txt
>>
>> chown root:amavis /etc/amavisd.conf
>> chmod 640 /etc/amavisd.conf
>>
>> Yeah, that works. Thanks Michael. For previous versions of
>> amavisd-new, package maintainers that I've seen so far have it set to
>> 0644 and root:root. Hopefully they will make the change (or suffer a
>> bug report).
>>
>
> Mark, may I assume that you will consider a note in RELEASE NOTES or
> possibly even some code to check for and log incompatible
> ownership/permissions?
>

Or, maybe I could actually read the release notes, that might be a
good idea too:

 "A downside is that a HUP-ed daemon has already dropped root privileges
  during its initial start, so it must restart as a nonprivileged user
  (typically 'vscan' or 'amavis'), which rules out its capability to chroot,
  and requires that configuration files, DKIM signing keys files, and
  perl modules must be readable by this GID or UID, otherwise restart
  fails and a daemon process no longer exists"

-- 
Gary V

------------------------------------------------------------------------------
Nokia and AT&T present the 2010 Calling All Innovators-North America contest
Create new apps & games for the Nokia N8 for consumers in  U.S. and Canada
$10 million total in prizes - $4M cash, 500 devices, nearly $6M in marketing
Develop with Nokia Qt SDK, Web Runtime, or Java and Publish to Ovi Store 
http://p.sf.net/sfu/nokia-dev2dev
_______________________________________________
AMaViS-user mailing list
AMaViS-user@lists.sourceforge.net 
https://lists.sourceforge.net/lists/listinfo/amavis-user 
 Please visit http://www.ijs.si/software/amavisd/ regularly
 For administrativa requests please send email to rainer at openantivirus dot 
org

Reply via email to