[Pkg-openssl-devel] Bug#584911: Bug#584911: bind9: hard-coded dependency on "/usr/lib/ssl/openssl.cnf" might cause trouble

Kurt Roeckx kurt at roeckx.be
Thu Jun 10 16:25:27 UTC 2010


On Thu, Jun 10, 2010 at 05:20:42AM -0500, Gebauer, Mirko (FRA-MRM) wrote:
> > > > reassign 584911 openssl 0.9.8g-15+lenny6
> > > Bug #584911 [bind9] bind9: hard-coded dependency on
> > "/usr/lib/ssl/openssl.cnf" might cause trouble
> > 
> > I agree that the documentation does not match the behaviour.
> > 
> > As far as I know, there never is a reason to remove the
> > world-readable permission, so I'm lowering the severity.
> 
> The file could contain (default-)passwords (input_password, output_password), and therefore it could sometimes be preferred not to be world-readable.

I can't find any password setting in either the documentation
or the code.


Kurt






More information about the Pkg-openssl-devel mailing list