Control: reopen -1

The fix is incomplete. The version in unstable fails to start with the
same error.

Cheers

On 2021-06-18 12:27:03 +0000, Debian Bug Tracking System wrote:
> This is an automatic notification regarding your Bug report
> which was filed against the src:squid-deb-proxy package:
> 
> #932501: squid-deb-proxy: daemon does not start due to the conf file not 
> being allowed by apparmor
> 
> It has been closed by Debian FTP Masters <ftpmas...@ftp-master.debian.org> 
> (reply to Hideki Yamane <henr...@debian.org>).
> 
> Their explanation is attached below along with your original report.
> If this explanation is unsatisfactory and you have not received a
> better one in a separate message then please contact Debian FTP Masters 
> <ftpmas...@ftp-master.debian.org> (reply to Hideki Yamane 
> <henr...@debian.org>) by
> replying to this email.
> 
> 
> -- 
> 932501: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=932501
> Debian Bug Tracking System
> Contact ow...@bugs.debian.org with problems

> Date: Fri, 18 Jun 2021 12:23:38 +0000
> From: Debian FTP Masters <ftpmas...@ftp-master.debian.org>
> To: 932501-cl...@bugs.debian.org
> Subject: Bug#932501: fixed in squid-deb-proxy 0.8.15+nmu1
> Reply-To: Hideki Yamane <henr...@debian.org>
> Message-Id: <e1ludx8-0007p1...@fasolo.debian.org>
> 

> Date: Sat, 20 Jul 2019 16:46:08 +1200
> From: jfp <j...@clearfield.com>
> To: Debian Bug Tracking System <sub...@bugs.debian.org>
> Subject: squid-deb-proxy: daemon does not start due to the conf file not
>  being allowed by apparmor
> Message-ID: 
> <156359796858.12274.9508230994085096436.reportbug@tosh.clearfield.private>
> 
> Source: squid-deb-proxy
> Severity: important
> Tags: patch
> 
> Dear Maintainer,
> 
> squid-deb-proxy fails to start due due to the conf file not being allowed by
> apparmor:
> Jul 20 16:28:48 Tardis squid: FATAL: Unable to open configuration file:
> /etc/squid-deb-proxy/squid-deb-proxy.conf: (13) Permission denied
> Jul 20 16:28:48 Tardis squid-deb-proxy[10170]:  failed!
> Jul 20 16:35:30 Tardis squid-deb-proxy[10276]: Stopping Squid Deb HTTP Proxy:
> squid-deb-proxy.
> Jul 20 16:35:30 Tardis systemd[1]: squid-deb-proxy.service: Succeeded.
> Jul 20 16:35:30 Tardis kernel: [4157921.317296] audit: type=1400
> audit(1563597330.601:32): apparmor="DENIED" operation="open"
> profile="/usr/sbin/squid" name="/etc/squid-deb-proxy/squid-deb-proxy.conf"
> pid=10301 comm="squid" requested_mask="r" denied_mask="r" fsuid=0 ouid=0
> Jul 20 16:35:30 Tardis squid-deb-proxy[10284]: Starting Squid Deb HTTP Proxy:
> squid-deb-proxy2019/07/20 16:35:30| FATAL: Unable to open configuration file:
> /etc/squid-deb-proxy/squid-deb-proxy.conf: (13) Permission denied
> 
> The fix is to add
> /etc/squid-deb-proxy/** r,
> to
> /etc/apparmor.d/usr.sbin.squid
> 
> Then
> apparmor_parser -r /etc/apparmor.d/usr.sbin.squid
> systemctl restart squid-deb-proxy
> 
> #And test
> dig +nocmd +noall +answer @224.0.0.251 -p 5353 -t ptr _apt_proxy._tcp.local
> 
> 
> 
> -- System Information:
> Debian Release: bullseye/sid
>   APT prefers unstable-debug
>   APT policy: (500, 'unstable-debug'), (500, 'unstable')
> Architecture: amd64 (x86_64)
> Foreign Architectures: i386
> 
> Kernel: Linux 4.19.0-5-amd64 (SMP w/4 CPU cores)
> Kernel taint flags: TAINT_OOT_MODULE, TAINT_UNSIGNED_MODULE
> Locale: LANG=en_NZ.UTF-8, LC_CTYPE=en_NZ.UTF-8 (charmap=UTF-8), 
> LANGUAGE=en_NZ:en (charmap=UTF-8)
> Shell: /bin/sh linked to /bin/dash
> Init: systemd (via /run/systemd/system)
> LSM: AppArmor: enabled


-- 
Sebastian Ramacher

Attachment: signature.asc
Description: PGP signature

Reply via email to