Bug#291825: exim4-base: /var/log/exim4 permissions

Andreas Metzler Andreas Metzler <ametzler@downhill.at.eu.org>, 291825-maintonly@bugs.debian.org
Sun, 23 Jan 2005 17:22:09 +0100


On 2005-01-23 Marc Haber <mh+debian-packages@zugschlus.de> wrote:
> On Mon, Jan 24, 2005 at 12:54:43AM +1100, Anand Kumria wrote:
> > Debian policy[1], recommend directories have permissions of either 755
> > or 2755. The /var/log/exim4 directories do not.

> Feature. The log might contain confidenial data.

> > This makes is
> > cumbersome do a command such as 'sudo zgrep postini
> > /var/log/exim4/*.[0-9].gz'.

> Add yourself to the adm group. Grepping logs as root is generally not
> a good idea.

I completely agree. Debian defines group adm exactly for this purpose.
I do not think exim4 is doing anything wrong, the directory
permissions act as a safeguard and do not limit suugested practice.
             cu andreas
-- 
"See, I told you they'd listen to Reason," [SPOILER] Svfurlr fnlf,
fuhggvat qbja gur juveyvat tha.
Neal Stephenson in "Snow Crash"
                                           http://downhill.aus.cc/