Dear Steve, dear Andreas, dear Debian contributors, Revisiting this topic for my trainings I see that this is not yet fixed.
*However* there is a merge request available in Salsa: enable usergroups and add pam_umask in common-session(-noninteractive) https://salsa.debian.org/vorlon/pam/-/merge_requests/3 Any chance you could merge it in time for Bullseye? For now I will document that one still has to enable pam_umask manually. Also pam-auth-update does not offer to enable it so I manually added session optional pam_umask.so after end of 'pam-auth-update' maintained block in /etc/pam.d/common- session. After this PAM sets the umask according to the UMASK setting in '/etc/login.defs'. (Sorry for long signature and probably added HTML part, I can't influence this for my work mail account.) Best, Mit freundlichen Grüßen / With kind regards Martin Steigerwald • Proact Deutschland GmbH Trainer Telefon: +49 911 30999 0 • Fax: +49 911 30999 99 Südwestpark 43 • 90449 Nürnberg • Germany martin.steigerw...@proact.de • www.proact.de Amtsgericht Nürnberg • HRB 18320 Geschäftsführer: René Schülein • Jonas Hasselberg • Jonas Persson • Oliver Kügow – Delivering Business Agility –