Your message dated Sun, 05 Feb 2017 19:03:42 +0000
with message-id <[email protected]>
and subject line Bug#854178: fixed in ejabberd 16.09-4
has caused the Debian Bug report #854178,
regarding ejabberd service does not honor setuid bits on epam
to be marked as done.

This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.

(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)


-- 
854178: http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=854178
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Source: ejabberd
Severity: important

Dear Maintainer,

I've configured ejabberd on my Debian server with PAM authentication. I'm
running Debian Stretch on my VPS (though bug is filed from my laptop). I
followed the README.Debian and added setuid bit on epam ond restarted the
service. On checking the process epam was still running as ejabberd user and
group and not honoring the setuid bit on epam, and because of this
authentication fails.

To check I stopped the systemd service of ejabberd and manually started ejabberd
using ejabberdctl

      ejabberdctl start && ejabberdctl started

And after this epam is honoring the setuid bit and runs as root:ejabberd and
also authentication works fine.

I tried overriding few things in systemd service file of ejabberd like
ProtectSystemFull=false but that did not change the behavior. If you think
problem is not in the service file of ejabberd please consider reassigning bug
to systemd.

Best Regards,
Vasudev



-- System Information:
Debian Release: 9.0
  APT prefers unstable-debug
  APT policy: (500, 'unstable-debug'), (500, 'unstable'), (1, 'experimental')
Architecture: i386 (x86_64)
Foreign Architectures: amd64

Kernel: Linux 4.9.0-1-amd64 (SMP w/2 CPU cores)
Locale: LANG=en_US.UTF-8, LC_CTYPE=en_US.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)

--- End Message ---
--- Begin Message ---
Source: ejabberd
Source-Version: 16.09-4

We believe that the bug you reported is fixed in the latest version of
ejabberd, which is due to be installed in the Debian FTP archive.

A summary of the changes between this version and the previous one is
attached.

Thank you for reporting the bug, which will now be closed.  If you
have further comments please address them to [email protected],
and the maintainer will reopen the bug report if appropriate.

Debian distribution maintenance software
pp.
Philipp Huebner <[email protected]> (supplier of updated ejabberd package)

(This message was generated automatically at their request; if you
believe that there is a problem with it please contact the archive
administrators by mailing [email protected])


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Format: 1.8
Date: Sun, 05 Feb 2017 13:19:29 +0100
Source: ejabberd
Binary: ejabberd
Architecture: source amd64
Version: 16.09-4
Distribution: unstable
Urgency: medium
Maintainer: Ejabberd Packaging Team <[email protected]>
Changed-By: Philipp Huebner <[email protected]>
Description:
 ejabberd   - distributed, fault-tolerant Jabber/XMPP server
Closes: 851212 854178
Changes:
 ejabberd (16.09-4) unstable; urgency=medium
 .
   * Added missing ImageMagick paths to apparmor profile
   * Enabled versioning in mod_roster by default (Closes: #851212)
   * Extended README.Debian with information regarding pam + systemd
     (Closes: #854178)
Checksums-Sha1:
 7a1fe6b819f17984541b5f159020989d97be44e1 2657 ejabberd_16.09-4.dsc
 7dfa5b9a926fae8a6b27e26094e945bfb2eda17b 48760 ejabberd_16.09-4.debian.tar.xz
 510f47339112cbf667bd9e2395b2f8be806e1f91 8429 ejabberd_16.09-4_amd64.buildinfo
 d6259dcc871107d535c9cd3a2b4f932ff6954897 3817968 ejabberd_16.09-4_amd64.deb
Checksums-Sha256:
 ecdb3ed88bb55a01d310f1ebabe6c3ed5e80699db05bfb2a8a7c5dcced9a89e5 2657 
ejabberd_16.09-4.dsc
 aa8b7b0a638ecbe5293a069abc0e25c9704a1d158ec4abb02307440e3ff55803 48760 
ejabberd_16.09-4.debian.tar.xz
 105bc7567a4f0122737aef4a480feb2edcc6fdd23dd02acf0ada627d2f690c31 8429 
ejabberd_16.09-4_amd64.buildinfo
 9361a6ca8cf7cd95b61d9ae04e481964a6f62d0cbfc3aed8751e4d9561a0229e 3817968 
ejabberd_16.09-4_amd64.deb
Files:
 cead2406d5e89da075a46c9e06d65842 2657 net optional ejabberd_16.09-4.dsc
 f65614c7ba1464fdc83d5435b26058bb 48760 net optional 
ejabberd_16.09-4.debian.tar.xz
 2b127c59c805261548e0d4782e74737e 8429 net optional 
ejabberd_16.09-4_amd64.buildinfo
 1e26a2d3e9fc1d530e483f10e2755b2a 3817968 net optional 
ejabberd_16.09-4_amd64.deb

-----BEGIN PGP SIGNATURE-----
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=Sdxz
-----END PGP SIGNATURE-----

--- End Message ---

Reply via email to