Bug#314539: [Pkg-shadow-devel] Bug#314539: please remove UMASK from login.defs

martin f krafft martin f krafft <madduck@debian.org>, 314539@bugs.debian.org
Fri, 17 Jun 2005 08:09:07 +0200


--6c2NcOVqGQ03X4Wi
Content-Type: text/plain; charset=iso-8859-1
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

also sprach Christian Perrier <bubulle@debian.org> [2005.06.17.0751 +0200]:
> This comes from a discussion in debian-devel. In that discussion, the
> existence of the pam_umask module was also mentioned.
>=20
> Hence, I suggest that, when commenting the UMASK setting in the default
> login.defs file, we add the above comments along with a pointer to
> pam_umask and maybe the relevant Debian package.=A0

Even without pam_umask, the login.defs setting would only affect
console logins, unless bash was used, which overrides them. zsh, for
instance, does not specify a umask, so it gets 022 by default, and
login.defs' value on the console. With the existence of all these
corner cases, I would say: remove, and add a comment to refer people
to /etc/profile (or equivalent) and libpam-umask.

--=20
 .''`.     martin f. krafft <madduck@debian.org>
: :'  :    proud Debian developer, admin, user, and author
`. `'`
  `-  Debian - when you have better things to do than fixing a system
=20
Invalid/expired PGP subkeys? Use subkeys.pgp.net as keyserver!
=20
"and the sea isn't green
 and i love the queen
 and what exactly is a dream?
 and what exactly is a joke?"
                                                        -- syd barrett

--6c2NcOVqGQ03X4Wi
Content-Type: application/pgp-signature; name="signature.asc"
Content-Description: Digital signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.1 (GNU/Linux)

iD8DBQFCsmkDIgvIgzMMSnURAnEjAJwI22kFDqrclSMHd3tJL4TqrocOEACgx3LQ
m8z+zqm0qUSAScdSw+ev444=
=9qOd
-----END PGP SIGNATURE-----

--6c2NcOVqGQ03X4Wi--