[Pkg-swan-devel] [strongswan] 13/14: add lintian overrides for private keys directories using 700 permissions.

Yves-Alexis Perez corsac at moszumanska.debian.org
Sun Sep 3 13:23:50 UTC 2017


This is an automated email from the git hooks/post-receive script.

corsac pushed a commit to branch master
in repository strongswan.

commit 919e729b2b53f68e014f93688e4202c7928312a5
Author: Yves-Alexis Perez <corsac at corsac.net>
Date:   Sun Sep 3 14:35:30 2017 +0200

    add lintian overrides for private keys directories using 700 permissions.
---
 debian/changelog                            | 3 +++
 debian/strongswan-swanctl.lintian-overrides | 6 ++++++
 2 files changed, 9 insertions(+)

diff --git a/debian/changelog b/debian/changelog
index 523670a..e5e7180 100644
--- a/debian/changelog
+++ b/debian/changelog
@@ -20,6 +20,9 @@ strongswan (5.6.0-1) UNRELEASED; urgency=medium
                                                                 closes: #866327
   * debian/libcharon-extra-plugins.install:
     - install pt-tls-client in /u/b and also install its manpage.
+  * debian/strongswan-swanctl.lintian-overrides:
+    - add lintian overrides for private keys directories using 700
+    permissions.
 
  -- Yves-Alexis Perez <corsac at debian.org>  Fri, 01 Sep 2017 17:21:45 +0200
 
diff --git a/debian/strongswan-swanctl.lintian-overrides b/debian/strongswan-swanctl.lintian-overrides
new file mode 100644
index 0000000..1af6f10
--- /dev/null
+++ b/debian/strongswan-swanctl.lintian-overrides
@@ -0,0 +1,6 @@
+# directories for private keys so tighten the permissions
+strongswan-swanctl: non-standard-dir-perm etc/swanctl/bliss/ 0700 != 0755
+strongswan-swanctl: non-standard-dir-perm etc/swanctl/ecdsa/ 0700 != 0755
+strongswan-swanctl: non-standard-dir-perm etc/swanctl/pkcs8/ 0700 != 0755
+strongswan-swanctl: non-standard-dir-perm etc/swanctl/private/ 0700 != 0755
+strongswan-swanctl: non-standard-dir-perm etc/swanctl/rsa/ 0700 != 0755

-- 
Alioth's /usr/local/bin/git-commit-notice on /srv/git.debian.org/git/pkg-swan/strongswan.git



More information about the Pkg-swan-devel mailing list