Am 03.02.20 um 09:44 schrieb Michael Biebl:
> Am 03.02.20 um 09:30 schrieb Marc Haber:
> 
>> group::r-x                      #effective:r--
>> group:adm:r-x                   #effective:r--
> 
> Just to be clear: you mean this x bit set for group/group:adm which is
> not in effect (in effect is r-- due to the mask)
> So is there actually a problem?
> 
> Afaics, this is just a result of how the permissions/ACLs are setup for
> /run/log/journal/$machineid
> 
> If you create a file via touch in that directory, it should have the
> same permissions as the journal files, right?
> 
> 

I wonder if the permissions of system.journal are different directly
after boot because systemd-tmpfiles has changed them explicitly

If I run
SYSTEMD_LOG_LEVEL=debug systemd-tmpfiles --create --prefix=/run/log/journal

I see among others
Setting access ACL u::rw-,g::r-x,g:adm:r--,m::r--,o::--- on
/run/log/journal/92e74c0bd699cc0d17d48ad852cc73e2/system.journal.
Setting access ACL u::rw-,g::r--,g:adm:r--,m::r--,o::--- on
/run/log/journal/92e74c0bd699cc0d17d48ad852cc73e2/system@b5595ec413b2491e8abe7287673ba291-0000000000000001-00059da7f0b3ea1a.journal.

Attachment: signature.asc
Description: OpenPGP digital signature

Reply via email to