[Touch-packages] [Bug 1811630] Re: Please merge openldap 2.4.47+dfsg-2 (main) from Debian unstable (main)

2019-01-17 Thread Andreas Hasenack
Sorry, I can of course do that too :) -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openldap in Ubuntu. https://bugs.launchpad.net/bugs/1811630 Title: Please merge openldap 2.4.47+dfsg-2 (main) from Debian unstable

[Touch-packages] [Bug 1811630] Re: Please merge openldap 2.4.47+dfsg-2 (main) from Debian unstable (main)

2019-01-17 Thread Andreas Hasenack
I did the merge in our usual way, and added your nssov changes, and the end result was identical. I'm now just going to quickly test the upgrade. One small thing only: please close this bug in the d/changelog file. Something like this: openldap (2.4.47+dfsg-2ubuntu1) disco; urgency=medium *

[Touch-packages] [Bug 1811630] Re: Please merge openldap 2.4.47+dfsg-2 (main) from Debian unstable (main)

2019-01-15 Thread Andreas Hasenack
in #ubuntu-server. ** Changed in: openldap (Ubuntu) Status: New => In Progress ** Changed in: openldap (Ubuntu) Assignee: (unassigned) => Andreas Hasenack (ahasenack) ** Tags added: server-next ** Changed in: openldap (Ubuntu) Importance: Undecided => High -- You received

[Touch-packages] [Bug 1781699] Re: DHCPv6 server crashes regularly (bionic)

2019-01-14 Thread Andreas Hasenack
** Changed in: isc-dhcp (Ubuntu) Importance: Undecided => High ** Changed in: isc-dhcp (Ubuntu) Status: Confirmed => Triaged -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to isc-dhcp in Ubuntu.

[Touch-packages] [Bug 1781699] Re: DHCPv6 server crashes regularly (bionic)

2019-01-14 Thread Andreas Hasenack
Thanks, I linked it to this bug here. Soon someone at isc will unblock it so it's public. ** Bug watch added: bugs.isc.org/Public/ #48804 https://bugs.isc.org/Public/Ticket/Display.html?id=48804 ** Also affects: dhcp via https://bugs.isc.org/Public/Ticket/Display.html?id=48804

[Touch-packages] [Bug 1781699] Re: DHCPv6 server crashes regularly (bionic)

2019-01-14 Thread Andreas Hasenack
Has anybody filed an upstream bug about this at https://www.isc.org/community/report-bug/ ? -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to isc-dhcp in Ubuntu. https://bugs.launchpad.net/bugs/1781699 Title: DHCPv6 server

[Touch-packages] [Bug 1751489] Re: rsync dies with "inflate returned -3 (0 bytes)"

2019-01-09 Thread Andreas Hasenack
That bug report also has a comment saying that with --block-size=65536 it worked, but that was for an error code of -5, not -3. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to rsync in Ubuntu.

[Touch-packages] [Bug 1632361] Re: unattended-update installArchives

2018-12-05 Thread Andreas Hasenack
This needs actual logs to be actionable. Since it happened years ago, I find it unlikely there will be any. Marking the bug as incomplete just in case someone still has this happening and can provide further info. ** Changed in: mysql-5.5 (Ubuntu) Status: New => Incomplete -- You

[Touch-packages] [Bug 1806382] Re: merge 1:4.2.8p12+dfsg-3

2018-12-05 Thread Andreas Hasenack
ops, sorry, this was meant for the MP, let me paste it there -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to ntp in Ubuntu. https://bugs.launchpad.net/bugs/1806382 Title: merge 1:4.2.8p12+dfsg-3 Status in ntp package in

[Touch-packages] [Bug 1806382] Re: merge 1:4.2.8p12+dfsg-3

2018-12-05 Thread Andreas Hasenack
795c542d8e4b2c157c4c788a39df7f777ee1f2d9 in (lp1806382/logical/1%4.2.8p11+dfsg-1ubuntu1 says: * d/ntp.dhcp add support for parsing systemd networkd lease files LP: #1717983 But it's actually changing more files: debian/ntp-systemd-netif.path (add) debian/ntp-systemd-netif.service (change)

[Touch-packages] [Bug 1806382] Re: merge 1:4.2.8p12+dfsg-3

2018-12-05 Thread Andreas Hasenack
** Changed in: ntp (Ubuntu) Status: Triaged => In Progress ** Changed in: ntp (Ubuntu) Assignee: (unassigned) => Christian Ehrhardt  (paelzer) -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to ntp in Ubuntu.

[Touch-packages] [Bug 1670291] Re: Landscape: Upgrade 14.04.5 to 16.04.2 fails unable to reboot

2018-12-04 Thread Andreas Hasenack
** Also affects: landscape-client (Ubuntu Trusty) Importance: Undecided Status: New ** Also affects: systemd (Ubuntu Trusty) Importance: Undecided Status: New ** Changed in: landscape-client (Ubuntu Trusty) Status: New => In Progress ** Changed in: landscape-client

[Touch-packages] [Bug 1670291] Re: Landscape: Upgrade 14.04.5 to 16.04.2 fails unable to reboot

2018-12-04 Thread Andreas Hasenack
** Changed in: landscape-client (Ubuntu Xenial) Status: Confirmed => In Progress ** Changed in: landscape-client (Ubuntu Xenial) Assignee: (unassigned) => Simon Poirier (simpoir) -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is

[Touch-packages] [Bug 1670291] Re: Landscape: Upgrade 14.04.5 to 16.04.2 fails unable to reboot

2018-12-04 Thread Andreas Hasenack
** Changed in: landscape-client (Ubuntu Cosmic) Status: Fix Committed => In Progress ** Changed in: landscape-client (Ubuntu Cosmic) Assignee: Dave Jones (waveform) => Simon Poirier (simpoir) -- You received this bug notification because you are a member of Ubuntu Touch seeded

[Touch-packages] [Bug 1670291] Re: Landscape: Upgrade 14.04.5 to 16.04.2 fails unable to reboot

2018-11-29 Thread Andreas Hasenack
** Changed in: landscape-client (Ubuntu Bionic) Status: New => In Progress ** Changed in: landscape-client (Ubuntu Bionic) Importance: Undecided => High ** Changed in: landscape-client (Ubuntu Bionic) Assignee: (unassigned) => Simon Poirier (simpoir) -- You received this bug

[Touch-packages] [Bug 201786] Re: ssh Agent admitted failure to sign using the key on big endian machines

2018-11-29 Thread Andreas Hasenack
According to https://bugs.launchpad.net/ubuntu/+source/seahorse/+bug/1420522 it's fixed in seahorse 3.30, which is present in ubuntu cosmic and later. >From https://bugzilla.redhat.com/show_bug.cgi?id=1435924, this should >reproduce the problem: 1. Generate a ssh key using the keytype ed25519

[Touch-packages] [Bug 1805178] Re: Apparmor should include letsencrypt directory for Slapd

2018-11-29 Thread Andreas Hasenack
I'm removing apparmor from the affected list because the apparmor profile is shipped with slapd. ** No longer affects: apparmor (Ubuntu) -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to apparmor in Ubuntu.

[Touch-packages] [Bug 1805178] Re: Apparmor should include letsencrypt directory for Slapd

2018-11-29 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu. First, let me suggest that any local modifications to apparmor profiles be made in /etc/apparmor.d/local instead of the profile in /etc/apparmor.d, otherwise you will get dpkg conf prompts with every upgrade. For slapd, for example, you have

[Touch-packages] [Bug 1805115] Re: problem with (ubuntu/cosmic)mawk /^[[:space:]]*

2018-11-29 Thread Andreas Hasenack
Fails from trusty onwards, all the way to disco. use this to test: printf %s '; rel="next", ; rel="last"' | mawk ' BEGIN { RS=", "; FS="; "; OFS=": " }

[Touch-packages] [Bug 1805115] Re: problem with (ubuntu/cosmic)mawk /^[[:space:]]*

2018-11-29 Thread Andreas Hasenack
Confirmed working with gawk, failing with mawk. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to mawk in Ubuntu. https://bugs.launchpad.net/bugs/1805115 Title: problem with (ubuntu/cosmic)mawk

[Touch-packages] [Bug 1803804] Re: Recommends: ssh-import-id missing in openssh 1:7.9p1-1

2018-11-17 Thread Andreas Hasenack
https://bugs.debian.org/913816 filed by Colin ** Bug watch added: Debian Bug tracker #913816 https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=913816 -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openssh in Ubuntu.

[Touch-packages] [Bug 1783183] Re: apparmor profile denied for kerberos client keytab and credential cache files

2018-11-16 Thread Andreas Hasenack
trusty verification reproducing the bug: slapd: Installed: 2.4.31-1+nmu2ubuntu8.4 Candidate: 2.4.31-1+nmu2ubuntu8.4 Version table: *** 2.4.31-1+nmu2ubuntu8.4 0 500 http://archive.ubuntu.com/ubuntu/ trusty-updates/main amd64 Packages As soon as the consumer is setup, the provider

[Touch-packages] [Bug 1783183] Re: apparmor profile denied for kerberos client keytab and credential cache files

2018-11-16 Thread Andreas Hasenack
xenial verification First confirming the bug Package on the consumer: root@xenial-consumer:~# apt-cache policy slapd slapd: Installed: 2.4.42+dfsg-2ubuntu3.3 Candidate: 2.4.42+dfsg-2ubuntu3.3 Version table: *** 2.4.42+dfsg-2ubuntu3.3 500 500 http://br.archive.ubuntu.com/ubuntu

[Touch-packages] [Bug 1783183] Re: apparmor profile denied for kerberos client keytab and credential cache files

2018-11-16 Thread Andreas Hasenack
Bionic verification Reproducing the bug with: root@bionic-consumer:~# apt-cache policy slapd slapd: Installed: 2.4.45+dfsg-1ubuntu1 Candidate: 2.4.45+dfsg-1ubuntu1 Version table: *** 2.4.45+dfsg-1ubuntu1 500 500 http://br.archive.ubuntu.com/ubuntu bionic/main amd64 Packages

[Touch-packages] [Bug 1783183] Re: apparmor profile denied for kerberos client keytab and credential cache files

2018-11-16 Thread Andreas Hasenack
Cosmic verification slapd package on the consumer: Installed: 2.4.46+dfsg-5ubuntu1 Candidate: 2.4.46+dfsg-5ubuntu1 Version table: *** 2.4.46+dfsg-5ubuntu1 500 500 http://br.archive.ubuntu.com/ubuntu cosmic/main amd64 Packages Confirming failed replication attempt: provider: Nov 16

[Touch-packages] [Bug 997217] Re: salsauthd maxes cpu

2018-11-14 Thread Andreas Hasenack
xenial verification Confirming bug: ubuntu@xenial-saslauthd:~$ apt-cache policy sasl2-bin sasl2-bin: Installed: 2.1.26.dfsg1-14build1 Candidate: 2.1.26.dfsg1-14build1 Version table: *** 2.1.26.dfsg1-14build1 500 500 http://br.archive.ubuntu.com/ubuntu xenial/main amd64 Packages

[Touch-packages] [Bug 1801128] Re: OpenSSH 7.7 -w tunnel bug

2018-11-13 Thread Andreas Hasenack
1:7.9p1-1 is in disco-proposed, going through migration. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openssh in Ubuntu. https://bugs.launchpad.net/bugs/1801128 Title: OpenSSH 7.7 -w tunnel bug Status in openssh

[Touch-packages] [Bug 1803009] Re: cyrus-sasl2 source fails to build

2018-11-13 Thread Andreas Hasenack
My build worked on a fresh and updated xenial container. Also with a ton of ugly warnings, but no failure. log attached. A quick glance didn't show compiler flags being different, or different plugins enabled. Aha, found something: -/usr/local/include/openssl/hmac.h:39:16: note: expected ‘const

[Touch-packages] [Bug 1783183] Re: apparmor profile denied for kerberos client keytab and credential cache files

2018-11-13 Thread Andreas Hasenack
trusty, xenial, bionic and cosmic packages uploaded to proposed, pending approval from the sru team. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openldap in Ubuntu. https://bugs.launchpad.net/bugs/1783183 Title:

[Touch-packages] [Bug 997217] Re: salsauthd maxes cpu

2018-11-12 Thread Andreas Hasenack
Roberto, are you able to test this update? If not, I can do it, but it would be better if someone not involved with the fix could do it. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to cyrus-sasl2 in Ubuntu.

[Touch-packages] [Bug 1801128] Re: OpenSSH 7.7 -w tunnel bug

2018-11-06 Thread Andreas Hasenack
Debian has 7.9p1, so as soon as Disco opens up for development the next sync will get the fix there. ** Also affects: openssh (Ubuntu Cosmic) Importance: Undecided Status: New ** Changed in: openssh (Ubuntu Cosmic) Importance: Undecided => Medium ** Changed in: openssh (Ubuntu)

[Touch-packages] [Bug 1734040] Re: openssh: The concurrency of settimeofday and ssh connect would lead to coredump

2018-10-29 Thread Andreas Hasenack
Is there a sccenario where this can be easily triggered? I'm thinking both in terms of priority for this fix, and for an SRU test case description. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openssh in Ubuntu.

[Touch-packages] [Bug 1798884] Re: Upgrade or install fails 1:7.2p2-4ubuntu2.5

2018-10-26 Thread Andreas Hasenack
It's not entirely clear how you got yourself into that situation, so we can leave this bug marked as "incomplete" so that it will auto expire if there is no new information in a few weeks. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is

[Touch-packages] [Bug 1798884] Re: Upgrade or install fails 1:7.2p2-4ubuntu2.5

2018-10-26 Thread Andreas Hasenack
Well, restarting sshd remotely has been done for quite some time: $ ssh root@duo ... root@duo:~# pidof sshd 14132 2374 root@duo:~# systemctl restart sshd root@duo:~# pidof sshd 14286 14132 root@duo:~# Of course, now that your system is in a state where it's showing that error, care must be

[Touch-packages] [Bug 1761096] Re: dnsmasq starts with error on Ubuntu Xenial amd64 when squid installed

2018-10-25 Thread Andreas Hasenack
Regardless of resolvconf or dnsmasq, squid itself takes about 30s to restart. I wonder if it depends on dnsmasq via nss-lookup, then when dnsmasq is restarted, that tries to restart squid, which takes 30s each time? I couldn't reproduce the "squid reload" blocking when I run it manually, but I do

[Touch-packages] [Bug 1761096] Re: dnsmasq starts with error on Ubuntu Xenial amd64 when squid installed

2018-10-25 Thread Andreas Hasenack
This is complicated indeed. I also spotted this in the logs during the long wait: Oct 25 21:16:07 xenial-squid-dnsmasq systemd[1]: nss-lookup.target: Job nss-lookup.target/start failed with result 'dependency'. and nss-lookup.target has something related to dnsmasq:

[Touch-packages] [Bug 997217] Re: salsauthd maxes cpu

2018-10-24 Thread Andreas Hasenack
** Description changed: [Impact] The rimap authentication mechanism in saslauthd can hit a condition where it will start spinning and using all available CPU. This condition can be easily encountered when an authentication is happening and the imap service is being restarted.

[Touch-packages] [Bug 997217] Re: salsauthd maxes cpu

2018-10-24 Thread Andreas Hasenack
** Description changed: [Impact] The rimap authentication mechanism in saslauthd can hit a condition where it will start spinning and using all available CPU. This condition can be easily encountered when an authentication is happening and the imap service is being restarted.

[Touch-packages] [Bug 997217] Re: salsauthd maxes cpu

2018-10-24 Thread Andreas Hasenack
Ok, trusty isn't affected because the loop there has an exit clause: + ret = read(s, rbuf+rc, sizeof(rbuf)-rc); + if ( ret<0 ) { + rc = ret; + break; + } else { + if (ret == 0) { + loopc += 1;

[Touch-packages] [Bug 997217] Re: salsauthd maxes cpu

2018-10-24 Thread Andreas Hasenack
I'm unable to trigger this bug when running the test case on trusty, even though the same code is there. I also tried adjusting the sleep. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to cyrus-sasl2 in Ubuntu.

[Touch-packages] [Bug 997217] Re: salsauthd maxes cpu

2018-10-24 Thread Andreas Hasenack
** Description changed: [Impact] The rimap authentication mechanism in saslauthd can hit a condition where it will start spinning and using all available CPU. This condition can be easily encountered when an authentication is happening and the imap service is being restarted. - -

[Touch-packages] [Bug 997217] Re: salsauthd maxes cpu

2018-10-24 Thread Andreas Hasenack
** Description changed: [Impact] - * An explanation of the effects of the bug on users and + The rimap authentication mechanism in saslauthd can hit a condition + where it will start spinning and using all available CPU. This condition + can be easily encountered when an authentication is

[Touch-packages] [Bug 997217] Re: salsauthd maxes cpu

2018-10-24 Thread Andreas Hasenack
** Description changed: + [Impact] + + * An explanation of the effects of the bug on users and + + * justification for backporting the fix to the stable release. + + * In addition, it is helpful, but not required, to include an +explanation of how the upload fixes this bug. + + [Test

[Touch-packages] [Bug 997217] Re: salsauthd maxes cpu

2018-10-23 Thread Andreas Hasenack
** Changed in: cyrus-sasl2 (Ubuntu Xenial) Importance: Undecided => High ** Changed in: cyrus-sasl2 (Ubuntu Xenial) Assignee: (unassigned) => Andreas Hasenack (ahasenack) ** Changed in: cyrus-sasl2 (Ubuntu Trusty) Importance: Undecided => High ** Changed in: cyrus-sasl

[Touch-packages] [Bug 997217] Re: salsauthd maxes cpu

2018-10-23 Thread Andreas Hasenack
I reproduced the problem in xenial by timing a "testsaslauthd" call with a "service dovecot stop" one (dovecot being my test imap server on localhost). This is good enough for an SRU test case, thanks all. -- You received this bug notification because you are a member of Ubuntu Touch seeded

[Touch-packages] [Bug 997217] Re: salsauthd maxes cpu

2018-10-23 Thread Andreas Hasenack
Trusty has 0034-fix_dovecot_authentication.patch, but it lacks the above fix as well. ** Also affects: cyrus-sasl2 (Ubuntu Trusty) Importance: Undecided Status: New ** Tags removed: precise ** Tags added: server-next ** Changed in: cyrus-sasl2 (Ubuntu Trusty) Status: New =>

[Touch-packages] [Bug 997217] Re: salsauthd maxes cpu

2018-10-23 Thread Andreas Hasenack
The patch 0034 mentioned in comment #10 is applied in the xenial package 2.1.26.dfsg1-14build1, so what Roberto hit could be a different issue requiring a different fix. Might have been this: cyrus-sasl2 (2.1.26.dfsg1-15) unstable; urgency=medium * Add fix for auth_rimap infinite loop (hang)

[Touch-packages] [Bug 1783183] Re: apparmor profile denied for kerberos client keytab and credential cache files

2018-10-23 Thread Andreas Hasenack
** Attachment added: "setup-provider.sh" https://bugs.launchpad.net/ubuntu/+source/openldap/+bug/1783183/+attachment/5204630/+files/setup-provider.sh -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openldap in Ubuntu.

[Touch-packages] [Bug 1783183] Re: apparmor profile denied for kerberos client keytab and credential cache files

2018-10-23 Thread Andreas Hasenack
** Attachment added: "setup-consumer.sh" https://bugs.launchpad.net/ubuntu/+source/openldap/+bug/1783183/+attachment/5204631/+files/setup-consumer.sh -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openldap in Ubuntu.

[Touch-packages] [Bug 1783183] Re: apparmor profile denied for kerberos client keytab and credential cache files

2018-10-23 Thread Andreas Hasenack
b" pid=19080 comm="slapd" requested_mask="r" denied_mask="r" fsuid=389 ouid=389 apparmor="DENIED" operation="file_lock" profile="/usr/sbin/slapd" name="/tmp/krb5cc_389" pid=19080 comm="slapd" requested_mask="k

[Touch-packages] [Bug 1783183] Re: apparmor profile denied for kerberos client keytab and credential cache files

2018-10-23 Thread Andreas Hasenack
** Description changed: [Impact] When using syncrepl replication with openldap, the consumer needs to authenticate to the provider in order to perform the searches and fetch the data. When this authentication is a simple bind, a simple username/password pair is used and that can be easily

[Touch-packages] [Bug 1783183] Re: apparmor profile denied for kerberos client keytab and credential cache files

2018-10-23 Thread Andreas Hasenack
** Description changed: [Impact] + When using syncrepl replication with openldap, the consumer needs to authenticate to the provider in order to perform the searches and fetch the data. When this authentication is a simple bind, a simple username/password pair is used and that can be easily

[Touch-packages] [Bug 1783183] Re: apparmor profile denied for kerberos client keytab and credential cache files

2018-10-23 Thread Andreas Hasenack
** Description changed: + [Impact] + + * An explanation of the effects of the bug on users and + + * justification for backporting the fix to the stable release. + + * In addition, it is helpful, but not required, to include an +explanation of how the upload fixes this bug. + + [Test

[Touch-packages] [Bug 1798884] Re: Upgrade or install fails 1:7.2p2-4ubuntu2.5

2018-10-22 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu. The 1:7.2p2-4ubuntu2.5 openssh update introduced a check in the systemd service file to prevent the daemon from stopping if there is a configuration syntax error (bug #1771340). This is done by calling "/usr/sbin/sshd -t". It looks like this call worked,

[Touch-packages] [Bug 1670959] Re: systemd-resolved using 100% CPU

2018-10-22 Thread Andreas Hasenack
There is some configuration that leads to a loop between these two resolvers, and that is what causes the cpu usage. If we could get a step by step way to reproduce it, it could probably be addressed. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages,

[Touch-packages] [Bug 1783183] Re: apparmor profile denied for kerberos client keytab and credential cache files

2018-10-19 Thread Andreas Hasenack
I used this for now: root@bionic-slapd-consumer:/etc/apparmor.d# cat local/usr.sbin.slapd # Site-specific additions and overrides for usr.sbin.slapd. # For more details, please see /etc/apparmor.d/local/README. /etc/krb5/user/[0-9]*/client.keytab rk, /tmp/krb5cc_[0-9]* rwk, I'm checking if

[Touch-packages] [Bug 1783183] Re: apparmor profile denied for kerberos client keytab and credential cache files

2018-10-19 Thread Andreas Hasenack
Confirmed finally, sorry for the delay. I'll get this fixed. ** Changed in: openldap (Ubuntu) Status: Triaged => In Progress ** Changed in: openldap (Ubuntu) Assignee: (unassigned) => Andreas Hasenack (ahasenack) -- You received this bug notification because you are a

[Touch-packages] [Bug 1752411] Re: bind9-host, avahi-daemon-check-dns.sh hang forever causes network connections to get stuck

2018-10-16 Thread Andreas Hasenack
In https://bugs.launchpad.net/ubuntu/+source/bind9/+bug/1797926 looks like the host command, that doesn't timeout and is the subject of this bug here, crashed. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to avahi in Ubuntu.

[Touch-packages] [Bug 1771340] Re: sshd failed on config reload

2018-10-11 Thread Andreas Hasenack
Thanks for the confirmation @tronde, much appreciated. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openssh in Ubuntu. https://bugs.launchpad.net/bugs/1771340 Title: sshd failed on config reload Status in openssh

[Touch-packages] [Bug 1752411] Re: bind9-host, avahi-daemon-check-dns.sh hang forever causes network connections to get stuck

2018-10-10 Thread Andreas Hasenack
** Tags removed: server-next -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to avahi in Ubuntu. https://bugs.launchpad.net/bugs/1752411 Title: bind9-host, avahi-daemon-check-dns.sh hang forever causes network connections

[Touch-packages] [Bug 1771340] Re: sshd failed on config reload

2018-10-10 Thread Andreas Hasenack
@tronde, I just tried and the fix worked for me. With the proposed package: root@xenial-ssh-reload:~# ps fxaw PID TTY STAT TIME COMMAND 1 ?Ss 0:02 /sbin/init 55 ?Ss 0:00 /lib/systemd/systemd-journald ... 2443 ?Ss 0:00 /usr/sbin/sshd -D Note

[Touch-packages] [Bug 1771340] Re: sshd failed on config reload

2018-10-10 Thread Andreas Hasenack
** Changed in: openssh (Ubuntu Xenial) Assignee: Karl Stenerud (kstenerud) => Andreas Hasenack (ahasenack) -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openssh in Ubuntu. https://bugs.launchpad.net/bugs/1771340 Ti

[Touch-packages] [Bug 1796911] [NEW] libnss-systemd was denied talking to pid1

2018-10-09 Thread Andreas Hasenack
Public bug reported: cosmic apparmor 2.12-4ubuntu8 kernel 4.18.0-8-generic #9-Ubuntu I'm getting these audit messages in dmesg showing apparmor denied errors: [ 68.649187] audit: type=1107 audit(1539094926.655:32): pid=605 uid=105 auid=4294967295 ses=4294967295 subj==unconfined

[Touch-packages] [Bug 1689833] Re: OpenVPN server does not start properly on boot

2018-10-08 Thread Andreas Hasenack
@jnx, the 192.168.11.254 address you are trying to bind to, is that the normal nic of that machine? Or something else, like a wifi interface, or something that would only come up after the user logs in, assuming this is a desktop? -- You received this bug notification because you are a member of

[Touch-packages] [Bug 1792544] Re: demotion of pcre3 in favor of pcre2

2018-09-18 Thread Andreas Hasenack
I've seen the wget debian change, but just switching builddeps from pcre3-dev to pcre2-dev and rebuilding isn't enough. The package ends up not finding pcre and doesn't enable it: checking for PCRE... no checking pcre.h usability... no checking pcre.h presence... no checking for pcre.h... no ...

[Touch-packages] [Bug 1791220] Re: increased crash rate since 10.3 upgrade is available

2018-09-11 Thread Andreas Hasenack
** Changed in: open-vm-tools (Ubuntu) Status: New => In Progress ** Changed in: open-vm-tools (Ubuntu) Assignee: (unassigned) =>  Christian Ehrhardt  (paelzer) -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to

[Touch-packages] [Bug 1788459] Re: gssproxy crashes in libselinux.so.1 on Ubuntu 18.04 when called by rpc.gssd

2018-09-06 Thread Andreas Hasenack
Or can you elaborate a bit more how you have this setup? And, before I forget, do you have a crash file somewhere in /var/crash? -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to krb5 in Ubuntu.

[Touch-packages] [Bug 1788459] Re: gssproxy crashes in libselinux.so.1 on Ubuntu 18.04 when called by rpc.gssd

2018-09-06 Thread Andreas Hasenack
Can you simplify the configuration needed to reproduce this bug? For example, does it happen when using gssapi authentication with apache, without the NFSv4 bit? -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to krb5 in Ubuntu.

[Touch-packages] [Bug 1791102] [NEW] udev postinst fails because kvm group already exists and is not a system group

2018-09-06 Thread Andreas Hasenack
Public bug reported: The udev postinst failed like this on an upgrade in cosmic from 237-3ubuntu10.3 to 239-7ubuntu7: Setting up udev (239-7ubuntu7) ... Installing new version of config file /etc/udev/udev.conf ... The group `kvm' already exists and is not a system group. Exiting. dpkg: error

[Touch-packages] [Bug 1784023] Re: Update profiles for usrmerge

2018-08-23 Thread Andreas Hasenack
** Merge proposal unlinked: https://code.launchpad.net/~ahasenack/ubuntu/+source/strongswan/+git/strongswan/+merge/353642 -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to lightdm in Ubuntu.

[Touch-packages] [Bug 1784023] Re: Update profiles for usrmerge

2018-08-23 Thread Andreas Hasenack
** Merge proposal unlinked: https://code.launchpad.net/~ahasenack/ubuntu/+source/strongswan/+git/strongswan/+merge/353642 -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to lightdm in Ubuntu.

[Touch-packages] [Bug 1771340] Re: sshd failed on config reload

2018-08-21 Thread Andreas Hasenack
marking as fix released in the devel task, since the fix is in cosmic. ** Changed in: openssh (Ubuntu) Status: Triaged => Fix Released ** Changed in: openssh (Ubuntu) Assignee: Karl (kstenerud) => (unassigned) -- You received this bug notification because you are a member of Ubuntu

[Touch-packages] [Bug 1771340] Re: sshd failed on config reload

2018-08-21 Thread Andreas Hasenack
** Changed in: openssh (Ubuntu Xenial) Importance: Undecided => Low -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openssh in Ubuntu. https://bugs.launchpad.net/bugs/1771340 Title: sshd failed on config reload Status

[Touch-packages] [Bug 1749247] Re: Spurious SEGV running inside kvm

2018-08-21 Thread Andreas Hasenack
** Changed in: openldap (Ubuntu) Status: In Progress => Incomplete ** Changed in: openldap (Ubuntu) Assignee: Howard Chu (hyc) => (unassigned) -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openldap in Ubuntu.

[Touch-packages] [Bug 1644626] Re: Login does not work with krb5 after upgrade to 16.04.1 from 14.04.5

2018-08-13 Thread Andreas Hasenack
It looks like sssd is not running (see "connection refused" error below): Nov 24 19:31:08 hostname login[1686]: pam_unix(login:auth): check pass; user unknown Nov 24 19:31:08 hostname login[1686]: pam_sss(login:auth): Request to sssd failed. Connection refused Nov 24 19:31:08 hostname

[Touch-packages] [Bug 1188475] Re: ldap group doesn't work

2018-08-09 Thread Andreas Hasenack
** Tags removed: bitesize -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to cyrus-sasl2 in Ubuntu. https://bugs.launchpad.net/bugs/1188475 Title: ldap group doesn't work Status in Cyrus-sasl2: Fix Released Status in

[Touch-packages] [Bug 1785376] Re: Build-Depends on nettle-dev >=3.1

2018-08-07 Thread Andreas Hasenack
** Changed in: dnsmasq (Ubuntu) Status: Confirmed => Triaged -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to dnsmasq in Ubuntu. https://bugs.launchpad.net/bugs/1785376 Title: Build-Depends on nettle-dev >=3.1

[Touch-packages] [Bug 175316] Re: no IDN in nslookup and host

2018-08-02 Thread Andreas Hasenack
This is fixed in cosmic: https://launchpad.net/ubuntu/+source/bind9/1:9.11.4+dfsg-3ubuntu1 ** Changed in: bind9 (Ubuntu) Status: In Progress => Fix Released -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to iputils in

[Touch-packages] [Bug 1665695] Re: OpenSSH PKCS#11 interface does not support ECC.

2018-08-01 Thread Andreas Hasenack
I doubt the patch will be added to a linux distribution before it's applied upstream, since it's of a very security sensitive nature. I linked the upstream bug report to this launchpad ticket, though, so we should get notice when it's closed there. ** Bug watch added: OpenSSH Portable Bugzilla

[Touch-packages] [Bug 1670959] Re: systemd-resolved using 100% CPU

2018-07-31 Thread Andreas Hasenack
I don't know what is the use case you guys have that you have to have dnsmasq and resolvconf installed. Maybe there is none and this is just an artifact from a release upgrade. In Bionic, I only have dnsmasq-base (not dnsmasq) installed, and no resolvconf. Looking at the initscript from dnsmasq,

[Touch-packages] [Bug 175316] Re: no IDN in nslookup and host

2018-07-30 Thread Andreas Hasenack
** Merge proposal linked: https://code.launchpad.net/~ahasenack/ubuntu/+source/bind9/+git/bind9/+merge/351764 -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to iputils in Ubuntu. https://bugs.launchpad.net/bugs/175316

[Touch-packages] [Bug 175316] Re: no IDN in nslookup and host

2018-07-30 Thread Andreas Hasenack
;; WHEN: Mon Jul 30 15:08:55 UTC 2018 ;; MSG SIZE rcvd: 94 ** Changed in: bind9 (Ubuntu) Status: Confirmed => In Progress ** Changed in: bind9 (Ubuntu) Assignee: LaMont Jones (lamont) => Andreas Hasenack (ahasenack) -- You received this bug notification because you are a me

[Touch-packages] [Bug 175316] Re: no IDN in nslookup and host

2018-07-27 Thread Andreas Hasenack
Debian enabled building with libidn2: https://salsa.debian.org/dns- team/bind9/commit/3e72f1a0c5cd695b7bcdefa458869cf5566198bd -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to iputils in Ubuntu.

[Touch-packages] [Bug 1670959] Re: systemd-resolved using 100% CPU

2018-07-27 Thread Andreas Hasenack
And looks like we need to find out what is adding 127.0.0.1 to resolv.conf. It could come from many different sources, like a nameserver configuration in some /etc/network/interfaces carried over from xenial, or something in network-manager, etc. I guess you could start with a brute-force grep -r

[Touch-packages] [Bug 1670959] Re: systemd-resolved using 100% CPU

2018-07-27 Thread Andreas Hasenack
What do you guys have inside /etc/resolvconf? In terms of directories, files, and their contents. Do you have the resolvconf package installed by any chance? -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to dnsmasq in Ubuntu.

[Touch-packages] [Bug 1783183] Re: apparmor profile denied for kerberos client keytab and credential cache files

2018-07-24 Thread Andreas Hasenack
I didn't know about default_client_keytab_name. That's definitely handy, so no more k5start needed! Thanks for your explanation, it makes sense. I'll give it a whirl, because I'll need to add testing instructions to the change that will be proposed. ** Changed in: openldap (Ubuntu)

[Touch-packages] [Bug 1783183] Re: apparmor profile denied for kerberos client keytab and credential cache files

2018-07-24 Thread Andreas Hasenack
"/etc/krb5/user/389/client.keytab" feels like a local modification you made, to store keytab files somewhere under /etc/krb5. I suggest you add an apparmor exception in /etc/apparmor.d/local/usr.sbin.slapd. Unless I'm wrong and that directory is being used as a standard location by some package.

[Touch-packages] [Bug 1670959] Re: systemd-resolved using 100% CPU

2018-07-10 Thread Andreas Hasenack
@diepes, interesting. Looks like there was a loop going on there. Can everybody please check their /etc/resolv.conf to see if something similar might be happening with it? -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to

[Touch-packages] [Bug 1661629] Re: upgrade of kernel fails with mkinitramfs: failed to determine device for /

2018-07-04 Thread Andreas Hasenack
My fstab has only an entry for /boot/efi. Everything else is zfs. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to initramfs-tools in Ubuntu. https://bugs.launchpad.net/bugs/1661629 Title: upgrade of kernel fails with

[Touch-packages] [Bug 1661629] Re: upgrade of kernel fails with mkinitramfs: failed to determine device for /

2018-07-04 Thread Andreas Hasenack
I can reproduce this on my 18.04 laptop with zfs on root. kdump-tools.postinst ends up calling /etc/kernel/postinst.d/kdump-tools 4.15.0-23-generic, which fails at this mkinitramfs line: mkinitramfs -d /var/lib/kdump/initramfs-tools -o /var/lib/kdump/initrd.img-4.15.0-23-generic.new

[Touch-packages] [Bug 1710634] Re: Incorrect directory for (lib)krb5 plugins

2018-06-27 Thread Andreas Hasenack
This was fixed in debian's 1.15.2-1, and bionic already has 1.16-2, so marking as fix released. ** Changed in: krb5 (Ubuntu) Status: Triaged => Fix Released -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to krb5 in

[Touch-packages] [Bug 1771011] Re: Doesn't accept environment variable with underscore in its name in AuthorizedKeysFile

2018-06-27 Thread Andreas Hasenack
** Also affects: openssh via https://bugzilla.mindrot.org/show_bug.cgi?id=2851 Importance: Unknown Status: Unknown -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to openssh in Ubuntu.

[Touch-packages] [Bug 1677881] Re: Missing dep8 tests

2018-06-27 Thread Andreas Hasenack
Since this package is currently a sync from Debian, and I want their opinion on these tests first, I submitted an MP for Debian here: https://salsa.debian.org/debian/krb5/merge_requests/2 ** Changed in: krb5 (Ubuntu) Assignee: (unassigned) => Andreas Hasenack (ahasenack) ** Changed in: k

[Touch-packages] [Bug 1719038] Re: X Server crashes during log in VM since 16.04.2

2018-06-12 Thread Andreas Hasenack
Upstream bug https://gitlab.freedesktop.org/spice/spice-gtk/issues/66 was closed, but if I understood it correctly, only for 18.04. Is this still an issue for 16.04, and does the patch from comment #5 help there? -- You received this bug notification because you are a member of Ubuntu Touch

[Touch-packages] [Bug 1774788] Re: Daemon won't start at boot up (18LTS fully patched)

2018-06-04 Thread Andreas Hasenack
The default behaviour of these services is to bind to "0.0.0.0", which means "any IP" essentially. That means they will work even when the nic isn't there yet, because localhost is. It also means that once a new nic comes up, they will listen on all its addresses too, without any other changes in

[Touch-packages] [Bug 1774788] Re: Daemon won't start at boot up (18LTS fully patched)

2018-06-04 Thread Andreas Hasenack
** Bug watch added: Samba Bugzilla #13463 https://bugzilla.samba.org/show_bug.cgi?id=13463 ** Also affects: rsync via https://bugzilla.samba.org/show_bug.cgi?id=13463 Importance: Unknown Status: Unknown ** Changed in: rsync (Ubuntu) Status: New => Triaged ** Changed in:

[Touch-packages] [Bug 1774788] Re: Daemon won't start at boot up (18LTS fully patched)

2018-06-04 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu. The scenario is confirmed: when specifying an address to bind to, rsync will fail if that address is not available: /var/log/syslog:Jun 4 21:12:27 bionic-rsync-1774788 rsyncd[269]: rsyncd version 3.1.2 starting, listening on port 873 /var/log/syslog:Jun 4

[Touch-packages] [Bug 1548486] Re: Sleep hook in a subdirectory ignored but causes double execution of previous hook

2018-05-30 Thread Andreas Hasenack
Reproduced on trusty. In xenial the sleed.d packagekit hook is gone. sudo apt install pm-utils packagekit I hacked /usr/lib/pm-utils/pm-functions to log which hook it was running, and forced a suspend with "pm-suspend". In my case I got multiple runs of 98video-quirk-db-handler right after the

[Touch-packages] [Bug 1548486] Re: Sleep hook in a subdirectory ignored but causes double execution of previous hook

2018-05-30 Thread Andreas Hasenack
Upstream bug still not touched, and patch still not applied not even in the ubuntu cosmic package, which is still a sync. -- You received this bug notification because you are a member of Ubuntu Touch seeded packages, which is subscribed to pm-utils in Ubuntu.

[Touch-packages] [Bug 1738524] Re: package rsync 3.1.1-3ubuntu1.1 failed to install/upgrade: subprocess installed post-installation script returned error exit status 1

2018-05-30 Thread Andreas Hasenack
Thanks for filing this bug in Ubuntu, and sorry for taking to long to get to it. There is a loop between some of your initscripts. If this problem is still happening, please try this first: sudo apt update sudo apt -f install If it happens again, then please attach the following file to this

<    4   5   6   7   8   9   10   11   12   >