Your message dated Sun, 23 Jul 2023 16:14:23 -0500
with message-id <[email protected]>
and subject line Re: Bug#1013867: Don't use user ntpsec if package ntp is
installed
has caused the Debian Bug report #1013867,
regarding Don't use user ntpsec if package ntp is installed
to be marked as done.
This means that you claim that the problem has been dealt with.
If this is not the case it is now your responsibility to reopen the
Bug report if necessary, and/or fix the problem forthwith.
(NB: If you are a system administrator and have no idea what this
message is talking about, this may indicate a serious mail system
misconfiguration somewhere. Please contact [email protected]
immediately.)
--
1013867: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=1013867
Debian Bug Tracking System
Contact [email protected] with problems
--- Begin Message ---
Package: ntpsec
Version: 1.2.1+dfsg1-7+b1
When package ntp is installed (from long history), the ntp daemon is
started by this /etc/init.d/ntp which uses user ntp:ntp. So all
auxiliary directories and files are owned by ntp:ntp.
When ntpsec starts to start the same daemon with ntpsec:ntpsec (which is
counter expected) the ntp daemon is not running properly and more over,
it is creating/changing some file rights so neither daemon is running
properly afterwards.
Even better would be to drop that ntpsec:ntpsec user fully and use
ntp:ntp as this would be the expected user a ntp is running under.
And please, don't conflict for ntp package as usually ntp is managed by
configuration management which is depending on ntp init script named
ntp. Nobody would expect init script ntpsec!
-- System Information:
Debian Release: bookworm/sid
APT prefers experimental
APT policy: (1, 'experimental')
Architecture: amd64 (x86_64)
Foreign Architectures: i386
Kernel: Linux 5.16.17 (SMP w/8 CPU threads)
Kernel taint flags: TAINT_PROPRIETARY_MODULE, TAINT_FIRMWARE_WORKAROUND,
TAINT_OOT_MODULE
Locale: LANG=C, LC_CTYPE=C.UTF-8 (charmap=UTF-8), LANGUAGE not set
Shell: /bin/sh linked to /bin/dash
Init: sysvinit (via /sbin/init)
Versions of packages ntpsec depends on:
ii adduser 3.121
ii init-system-helpers 1.63devuan1
ii libbsd0 0.11.6-1
ii libc6 2.33-7
ii libcap2 1:2.44-1
ii libssl3 3.0.4-2
ii lsb-base 11.2
ii netbase 6.3
ii python3 3.10.4-1+b1
ii python3-ntp 1.2.1+dfsg1-7+b1
ii tzdata 2022a-1
Versions of packages ntpsec recommends:
ii cron [cron-daemon] 3.0pl1-144
Versions of packages ntpsec suggests:
pn apparmor <none>
ii certbot 1.25.0-1
ii ntpsec-doc 1.2.1+dfsg1-7
pn ntpsec-ntpviz <none>
-- Configuration Files:
/etc/default/ntpsec changed:
exit 0
NTPD_OPTS="-g -N"
IGNORE_DHCP="yes"
NTPSEC_CERTBOT_CERT_NAME=""
/etc/ntpsec/ntp.conf changed:
driftfile /var/lib/ntpsec/ntp.drift
statistics loopstats peerstats clockstats
filegen loopstats file loopstats type day enable
filegen peerstats file peerstats type day enable
filegen clockstats file clockstats type day enable
pool 0.ch.pool.ntp.org iburst
pool 1.ch.pool.ntp.org iburst
pool 2.ch.pool.ntp.org iburst
pool 3.ch.pool.ntp.org iburst
restrict -4 default kod notrap nomodify nopeer noquery
restrict -6 default kod notrap nomodify nopeer noquery
restrict 127.0.0.1
restrict 192.168.17.0 mask 255.255.255.0 nomodify
restrict ::1
restrict source notrap nomodify noquery
-- no debconf information
--
Klaus Ethgen http://www.ethgen.ch/
pub 4096R/4E20AF1C 2011-05-16 Klaus Ethgen <[email protected]>
Fingerprint: 85D4 CA42 952C 949B 1753 62B3 79D0 B06F 4E20 AF1C
signature.asc
Description: PGP signature
--- End Message ---
--- Begin Message ---
The ntpsec namespacing is by design.
--
Richard
OpenPGP_signature
Description: OpenPGP digital signature
--- End Message ---