Source: policy-rcd-declarative
Version: 0.3
Severity: wishlist
X-Debbugs-Cc: Debian Buildd Team <wb-t...@buildd.debian.org>


Dear maintainer,

The buildd.d.o team took up on your experiment and started using this
package in place of dropping a file in the chroots' /usr/local/sbin.

See:
    
https://salsa.debian.org/dsa-team/mirror/dsa-puppet/-/commit/abacce72bdc2417961cab2704ef3881f6d15d654
    https://bugs.debian.org/969084

In that bug I propose a further improvement, that is to provide the
deny-all configuration from a package instead of having the
configuration file manually managed.

Could you please add a binary package (that I tentatively named
policy-rcd-declarative-deny-all) providing a conffile
    /etc/service-policy.d/99-buildd-deny-all
with the content
    .* .* deny
?
(I named the file 99 so that the users can place their overrides first.)


Thank you for your input!

-- 
regards,
                        Mattia Rizzolo

GPG Key: 66AE 2B4A FCCF 3F52 DA18  4D18 4B04 3FCD B944 4540      .''`.
More about me:  https://mapreri.org                             : :'  :
Launchpad user: https://launchpad.net/~mapreri                  `. `'`
Debian QA page: https://qa.debian.org/developer.php?login=mattia  `-

Attachment: signature.asc
Description: PGP signature

Reply via email to