[Pkg-shadow-devel] Users with login shell /usr/sbin/nologin

Marc Haber mh+pkg-shadow-devel at zugschlus.de
Fri Mar 28 11:30:55 GMT 2025


Hi,

I have recently noticed that we ship a number of users with their shell 
set to /usr/sbin/nologin:

[2/4958]mh at swivel:~ $ grep nologin /usr/share/base-passwd/passwd.master
daemon:*:1:1:daemon:/usr/sbin:/usr/sbin/nologin
bin:*:2:2:bin:/bin:/usr/sbin/nologin
sys:*:3:3:sys:/dev:/usr/sbin/nologin
games:*:5:60:games:/usr/games:/usr/sbin/nologin
man:*:6:12:man:/var/cache/man:/usr/sbin/nologin
lp:*:7:7:lp:/var/spool/lpd:/usr/sbin/nologin
mail:*:8:8:mail:/var/mail:/usr/sbin/nologin
news:*:9:9:news:/var/spool/news:/usr/sbin/nologin
uucp:*:10:10:uucp:/var/spool/uucp:/usr/sbin/nologin
proxy:*:13:13:proxy:/bin:/usr/sbin/nologin
www-data:*:33:33:www-data:/var/www:/usr/sbin/nologin
backup:*:34:34:backup:/var/backups:/usr/sbin/nologin
list:*:38:38:Mailing List Manager:/var/list:/usr/sbin/nologin
irc:*:39:39:ircd:/run/ircd:/usr/sbin/nologin
_apt:*:42:65534::/nonexistent:/usr/sbin/nologin
nobody:*:65534:65534:nobody:/nonexistent:/usr/sbin/nologin
[3/4959]mh at swivel:~ $

Hence, /usr/sbin/nologin is in login:

[3/4959]mh at swivel:~ $ dpkg --search /usr/sbin/nologin
login: /usr/sbin/nologin

which is part of util-linux but not essential (but already frozen).

Can we live with shipping users that have their shell pointing to a file 
that does not necessarily exist on all systems?

   [ ] No
   [ ] for trixie
   [ ] for forky
   [ ] yes

?

What do you think?

Greetings
Marc

-- 
-----------------------------------------------------------------------------
Marc Haber         | "I don't trust Computers. They | Mailadresse im Header
Leimen, Germany    |  lose things."    Winona Ryder | Fon: *49 6224 1600402
Nordisch by Nature |  How to make an American Quilt | Fax: *49 6224 1600421



More information about the Pkg-shadow-devel mailing list