[Bug 882314] Re: preseeded installation fails to create .ecryptfs/wrapped-passphrase
** Changed in: ecryptfs-utils (Ubuntu) Status: In Progress = Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/882314 Title: preseeded installation fails to create .ecryptfs/wrapped-passphrase To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/ecryptfs-utils/+bug/882314/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 882314] Re: preseeded installation fails to create .ecryptfs/wrapped-passphrase
This bug was fixed in the package user-setup - 1.39ubuntu1 --- user-setup (1.39ubuntu1) precise; urgency=low * Merge from Debian testing, remaining changes: - Add the initial user to the adm, lpadmin, and sambashare groups too. Do not add them to the audio, video, floppy, netdev, powerdev, scanner, or bluetooth groups. - Default passwd/root-login to false. - Create the spu group on powerpc/ps3 and powerpc/cell. - Make is_system_user always return false if OVERRIDE_SYSTEM_USER is set. - Add preseedable passwd/auto-login question; if set to true, configure gdm, kdm, lxdm, and lightdm for automatic login. Add passwd/auto-login-backup question which backs up the previous contents of the files as well. - Ask whether the user wants to encrypt their home directory. - Allow forcing the encrypted home option. - user-setup-ask: if a user requests an encrypted-home, we must have their login passphrase, in order to wrap their mount passphrase; its fundamentally incompatible to preseed encrypted-home AND a crypted password; if this happens, send the user back to the password selection in the user-setup state machine - Zero out swap devices at the end of install when encryption is enabled. - Provide a progress message for wiping swap space. - If user-setup/allow-password-empty is preseeded to true, allow empty passwords. - Disable installation of pre-pkgsel.d/10kdesudo; it does nothing for Ubuntu, and causes a confusing message that worries some people. - Add weak password detection (purely length-based for now, matching partman-crypto). - Consider a password of '!' in shadow for root to be unset. - Update Ubuntu-specific translations from Launchpad. - Don't restrict guest login from login screen if autologin was configured, just restrict autologin for guest specifically. * Dropped changes: - Add the initial user to the dip group after all, not dialout; per Debian bug #568895, dip is for pppd and dialout is for raw tty access which users don't need. - Don't set up the admin group or add the user to it; the sudo package now always sets up the sudo group on install, so we can as well use this group as the admin group. This will be inconsistent with previous Ubuntu releases, but consistent with Debian and compatible with sudo. user-setup (1.39) unstable; urgency=low * Bump Standards to 3.9.2 [ Updated translations ] * Bulgarian (bg.po) by Damyan Ivanov * Czech (cs.po) by Miroslav Kure * Esperanto (eo.po) by Felipe Castro * Spanish (es.po) by Javier Fernández-Sanguino * Korean (ko.po) by Changwoo Ryu * Romanian (ro.po) by Eddy Petrișor * Russian (ru.po) by Yuri Kozlov * Northern Sami (se.po) by Børre Gaup * Slovak (sk.po) by Ivan Masár * Swedish (sv.po) by Daniel Nylander * Telugu (te.po) by Arjuna Rao Chavala * Thai (th.po) by Theppitak Karoonboonyanan * Uyghur (ug.po) by Sahran user-setup (1.38) unstable; urgency=low [ Updated translations ] * Russian (ru.po) by Yuri Kozlov user-setup (1.37) unstable; urgency=low [ Updated translations ] * Kazakh (kk.po) by Baurzhan Muftakhidinov * Lao (lo.po) by Anousak Souphavanh * Northern Sami (se.po) by Børre Gaup user-setup (1.36) unstable; urgency=low [ Otavio Salvador ] * Configure aptitude to use sudo if possible. Thanks to Mehdi Dogguy by reporting it. [ Updated translations ] * Sinhala (si.po) by Danishka Navin * Slovenian (sl.po) by Vanja Cvelbar user-setup (1.35) unstable; urgency=low [ Updated translations ] * Bengali (bn.po) by Israt Jahan * Icelandic (is.po) by Sveinn í Felli user-setup (1.34) unstable; urgency=low * Add the newly created user to the sudo group if root is disabled to be inline with introduction of the sudo group in sudo 1.7.2-2. Closes: #597239 user-setup (1.33) unstable; urgency=low * Drop Serbian Latin translation until issues related to debconf have been solved. Closes: #591630 user-setup (1.32) unstable; urgency=low [ Christian Perrier ] * Extend the existing system user check to UIDs from 1000 to 5 as per Policy 3.9.0.0. Thanks to Kazuhiro NISHIYAMA for reporting Closes: #590489 [ Colin Watson ] * Skip user-setup questions in rescue mode. [ Updated translations ] * Panjabi (pa.po) by A S Alam * Portuguese (Brazil) (pt_BR.po) by Felipe Augusto van de Wiel (faw) * Serbian Latin (s...@latin.po) by Karolina Kalic user-setup (1.31) unstable; urgency=low [ Updated translations ] * Belarusian (be.po) by Viktar Siarheichyk * Bosnian (bs.po) by Armin Beširović * Dzongkha (dz.po) by Jurmey Rabgay * Persian (fa.po) by acathur * Croatian (hr.po) by Josip Rodin * Indonesian (id.po) by Arief S Fitrianto * Kazakh (kk.po) by Baurzhan Muftakhidinov * Central Khmer (km.po) by Khoem Sokhem * Kurdish (ku.po) by
[Bug 882314] Re: preseeded installation fails to create .ecryptfs/wrapped-passphrase
** Branch linked: lp:~ubuntu-core-dev/user-setup/ubuntu -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/882314 Title: preseeded installation fails to create .ecryptfs/wrapped-passphrase To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/ecryptfs-utils/+bug/882314/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 882314] Re: preseeded installation fails to create .ecryptfs/wrapped-passphrase
Reopening the ecryptfs-utils bug. Adding user-setup task. This bug is actually quite a bit more complicated than I first realized. Fundamentally, we have two preseed options which are incompatible: d-i passwd/user-password-crypted password $6$.1eHH0iY$ArGz... and d-i user-setup/encrypt-home boolean true We cannot encrypt the home directory without having access to the cleartext password. I'm reverting the fix that I had committed to ecryptfs-utils, which persisted that cleartext password across the first boot by storing it in /var/tmp, which was not a good idea, as this leaks the file to disk. There's no secure way of persisting this sort of data across a reboot, sorry. I'm attaching a patch/branch here that adjusts the logic in the user- setup state machine in d-i which should ensure that *if* you've requested an encrypted home, and we only have a crypted password, then we should throw you back into the critical dialogs to choose a password. ** Also affects: user-setup (Ubuntu) Importance: Undecided Status: New ** Changed in: ecryptfs-utils (Ubuntu) Status: Fix Released = In Progress ** Changed in: user-setup (Ubuntu) Status: New = In Progress ** Changed in: user-setup (Ubuntu) Importance: Undecided = Medium ** Patch added: 882314.patch https://bugs.launchpad.net/ubuntu/+source/user-setup/+bug/882314/+attachment/2577114/+files/882314.patch -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/882314 Title: preseeded installation fails to create .ecryptfs/wrapped-passphrase To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/ecryptfs-utils/+bug/882314/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 882314] Re: preseeded installation fails to create .ecryptfs/wrapped-passphrase
** Branch linked: lp:ubuntu/user-setup -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/882314 Title: preseeded installation fails to create .ecryptfs/wrapped-passphrase To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/ecryptfs-utils/+bug/882314/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs From ubuntu-bugs-boun...@lists.ubuntu.com Fri Oct 28 14:35:51 2011 Return-path: ubuntu-bugs-boun...@lists.ubuntu.com Envelope-to: arch...@mail-archive.com Delivery-date: Fri, 28 Oct 2011 14:35:51 -0700 Received: from exprod5mx285.postini.com ([64.18.0.109] helo=psmtp.com) by mail-archive.com with smtp (Exim 4.69) (envelope-from ubuntu-bugs-boun...@lists.ubuntu.com) id 1RJu5f-0005w0-4K for arch...@mail-archive.com; Fri, 28 Oct 2011 14:35:51 -0700 Received: from chlorine.canonical.com ([91.189.94.204]) by exprod5mx285.postini.com ([64.18.4.10]) with SMTP; Fri, 28 Oct 2011 17:35:50 EDT Received: from localhost ([127.0.0.1] helo=chlorine.canonical.com) by chlorine.canonical.com with esmtp (Exim 4.71) (envelope-from ubuntu-bugs-boun...@lists.ubuntu.com) id 1RJu5X-0004CS-DM; Fri, 28 Oct 2011 21:35:43 + Received: from indium.canonical.com ([91.189.90.7]) by chlorine.canonical.com with esmtp (Exim 4.71) (envelope-from boun...@canonical.com) id 1RJu5S-000497-8E for ubuntu-bugs@lists.ubuntu.com; Fri, 28 Oct 2011 21:35:38 + Received: from loganberry.canonical.com ([91.189.90.37]) by indium.canonical.com with esmtp (Exim 4.71 #1 (Debian)) id 1RJu5R-0007N0-RW for ubuntu-bugs@lists.ubuntu.com; Fri, 28 Oct 2011 21:35:37 + Received: from loganberry.canonical.com (localhost [127.0.0.1]) by loganberry.canonical.com (Postfix) with ESMTP id CA3992E80D0 for ubuntu-bugs@lists.ubuntu.com; Fri, 28 Oct 2011 21:35:37 + (UTC) MIME-Version: 1.0 Date: Fri, 28 Oct 2011 21:28:15 - From: Dustin Kirkland dustin.kirkl...@gmail.com To: ubuntu-bugs@lists.ubuntu.com X-Launchpad-Bug: distribution=ubuntu; sourcepackage=ecryptfs-utils; component=main; status=In Progress; importance=High; assignee=None; X-Launchpad-Bug: distribution=ubuntu; sourcepackage=user-setup; component=main; status=In Progress; importance=Medium; assignee=cjwat...@canonical.com; X-Launchpad-Bug-Private: no X-Launchpad-Bug-Security-Vulnerability: no X-Launchpad-Bug-Commenters: janitor kirkland tjaalton X-Launchpad-Bug-Reporter: Timo Aaltonen (tjaalton) X-Launchpad-Bug-Modifier: Dustin Kirkland (kirkland) References: 20111026225610.17858.94578.malone...@gac.canonical.com Message-Id: 20111028212815.7106.63605.mal...@wampee.canonical.com Subject: [Bug 882314] Re: preseeded installation fails to create .ecryptfs/wrapped-passphrase X-Launchpad-Message-Rationale: Subscriber (Ubuntu) @ubuntu-bugs Precedence: bulk X-Generated-By: Launchpad (canonical.com); Revision=14197; Instance=launchpad-lazr.conf X-Launchpad-Hash: 9f192aa3d81cf84ce9480f277a96b7a60d0ee624 X-BeenThere: ubuntu-bugs@lists.ubuntu.com X-Mailman-Version: 2.1.13 Reply-To: Bug 882314 882...@bugs.launchpad.net List-Id: Ubuntu bug tracker changes - HIGH VOLUME ubuntu-bugs.lists.ubuntu.com List-Unsubscribe: https://lists.ubuntu.com/mailman/options/ubuntu-bugs, mailto:ubuntu-bugs-requ...@lists.ubuntu.com?subject=unsubscribe List-Post: mailto:ubuntu-bugs@lists.ubuntu.com List-Help: mailto:ubuntu-bugs-requ...@lists.ubuntu.com?subject=help List-Subscribe: https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs, mailto:ubuntu-bugs-requ...@lists.ubuntu.com?subject=subscribe Content-Type: text/plain; charset=us-ascii Content-Transfer-Encoding: 7bit Sender: ubuntu-bugs-boun...@lists.ubuntu.com Errors-To: ubuntu-bugs-boun...@lists.ubuntu.com X-pstn-neptune: 3/1/0.33/81 X-pstn-levels: (S:99.9/99.9 CV:99.9000 FC:95.5390 LC:93.6803 R:95.9108 P:95.9108 M:97.0282 C:98.6951 ) X-pstn-settings: 4 (1.5000:1.5000) s cv gt3 gt2 gt1 r p m c X-pstn-addresses: from dustin.kirkl...@gmail.com [294/10] Okay, I've tested and verified that my fix works in r96 of lp:ubuntu /user-setup. I've committed and pushed it to bzr, but I'm refraining from uploading to Precise until Colin gets a chance to look at it first. Assigning this bug to Colin until he gets around to doing so. Thanks! ** Changed in: user-setup (Ubuntu) Assignee: (unassigned) = Colin Watson (cjwatson) -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/882314 Title: preseeded installation fails to create .ecryptfs/wrapped-passphrase To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/ecryptfs-utils/+bug
[Bug 882314] Re: preseeded installation fails to create .ecryptfs/wrapped-passphrase
The attachment 882314.patch of this bug report has been identified as being a patch. The ubuntu-reviewers team has been subscribed to the bug report so that they can review the patch. In the event that this is in fact not a patch you can resolve this situation by removing the tag 'patch' from the bug report and editing the attachment so that it is not flagged as a patch. Additionally, if you are member of the ubuntu- sponsors please also unsubscribe the team from this bug report. [This is an automated message performed by a Launchpad user owned by Brian Murray. Please contact him regarding any issues with the action taken in this bug report.] ** Tags added: patch -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/882314 Title: preseeded installation fails to create .ecryptfs/wrapped-passphrase To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/ecryptfs-utils/+bug/882314/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 882314] Re: preseeded installation fails to create .ecryptfs/wrapped-passphrase
** Changed in: ecryptfs-utils (Ubuntu) Importance: Undecided = High ** Changed in: ecryptfs-utils (Ubuntu) Status: New = In Progress -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/882314 Title: preseeded installation fails to create .ecryptfs/wrapped-passphrase To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/ecryptfs-utils/+bug/882314/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 882314] Re: preseeded installation fails to create .ecryptfs/wrapped-passphrase
** Changed in: ecryptfs-utils (Ubuntu) Status: In Progress = Fix Committed -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/882314 Title: preseeded installation fails to create .ecryptfs/wrapped-passphrase To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/ecryptfs-utils/+bug/882314/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 882314] Re: preseeded installation fails to create .ecryptfs/wrapped-passphrase
** Branch linked: lp:ecryptfs -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/882314 Title: preseeded installation fails to create .ecryptfs/wrapped-passphrase To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/ecryptfs-utils/+bug/882314/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 882314] Re: preseeded installation fails to create .ecryptfs/wrapped-passphrase
This bug was fixed in the package ecryptfs-utils - 93-0ubuntu1 --- ecryptfs-utils (93-0ubuntu1) precise; urgency=low * src/utils/ecryptfs-verify, src/utils/Makefile.am: - add an ecryptfs-verify utility, LP: #845738 * src/testcases/write-read.sh: - added a write/read test utility * doc/manpage/ecryptfs-mount-private.1, doc/manpage/ecryptfs-setup- private.1, doc/manpage/mount.ecryptfs_private.1, doc/manpage/umount.ecryptfs_private.1: LP: #882267 - remove inaccurate documentation about being a member of the ecryptfs group * src/utils/ecryptfs-setup-private: LP: #882314 - fix preseeded encrypted home Ubuntu installations (thanks Timo!) * oneiric -- Dustin Kirkland kirkl...@ubuntu.com Thu, 27 Oct 2011 10:55:04 -0500 ** Changed in: ecryptfs-utils (Ubuntu) Status: Fix Committed = Fix Released -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/882314 Title: preseeded installation fails to create .ecryptfs/wrapped-passphrase To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/ecryptfs-utils/+bug/882314/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs
[Bug 882314] Re: preseeded installation fails to create .ecryptfs/wrapped-passphrase
** Attachment added: syslog https://bugs.launchpad.net/ubuntu/+source/ecryptfs-utils/+bug/882314/+attachment/2574524/+files/syslog -- You received this bug notification because you are a member of Ubuntu Bugs, which is subscribed to Ubuntu. https://bugs.launchpad.net/bugs/882314 Title: preseeded installation fails to create .ecryptfs/wrapped-passphrase To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu/+source/ecryptfs-utils/+bug/882314/+subscriptions -- ubuntu-bugs mailing list ubuntu-bugs@lists.ubuntu.com https://lists.ubuntu.com/mailman/listinfo/ubuntu-bugs