[Pkg-utopia-maintainers] Bug#976953: NIS account and usb mount

adrien moulin alouest51 at gmail.com
Wed Dec 9 09:40:49 GMT 2020


Package: policykit-1
Version: 0.105-25
Severity: important



-- System Information:
Debian Release: 10.7
  APT prefers stable-updates
  APT policy: (500, 'stable-updates'), (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 4.19.0-8-amd64 (SMP w/8 CPU cores)
Locale: LANG=en_US, LC_CTYPE=en_US (charmap=ISO-8859-1), LANGUAGE=
(charmap=ISO-8859-1)
Shell: /bin/sh linked to /usr/bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages policykit-1 depends on:
ii  dbus                   1.12.20-0+deb10u1
ii  libc6                  2.28-10
ii  libglib2.0-0           2.58.3-2+deb10u2
ii  libpam-systemd         241-7~deb10u5
ii  libpam0g               1.3.1-5
ii  libpolkit-agent-1-0    0.105-25
ii  libpolkit-backend-1-0  0.105-25
ii  libpolkit-gobject-1-0  0.105-25

policykit-1 recommends no packages.

policykit-1 suggests no packages.

-- no debconf information

Dear Maintainer,

When trying to mount usbkey on plasma-destop i have an error : You are not
authorized to mount this device.

With some research it seems that polkitd block this, i see it with auditd
when i tried to mount the usbbkey:

audispd[636]: node=mystation type=SYSCALL msg=audit(1607504338.301:1820):
arch=c000003e syscall=42 success=yes exit=0 a0=a a1=7ffe9f0f1740 a2=10 a3=5
items=0 ppid=1 pid=770 auid=4294967295 uid=0 gid=0 euid=0 suid=0 fsuid=0
egid=0 sgid=0 fsgid=0 tty=(none) ses=4294967295 comm="polkitd"
exe="/usr/lib/policykit-1/polkitd" subj==unconfined key="T0"

I understand that polkit set the rules for actions on the desktop session
and it seems there are 3 states possible :

-active : user sesion (local) interative
-inacive : user session (local) non-interactive
-any : other case

Unfortunately I use NIS map for my account and I think this is not
considered as an local session, (usbkey and sound not work either)

The session is define by systemd-logind but i not found how include the nis
session or how to add a polkit rule for nis session.

The bypass that i found is to add the NIS map passwd of my account in
/etc/passwd of the station and then it works, i can mount usbkey and have
sound on video.

Is that possible to include rules to include NIS sessions ?

Best regards
Adrien MOULIN
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://alioth-lists.debian.net/pipermail/pkg-utopia-maintainers/attachments/20201209/1b851ba9/attachment.html>


More information about the Pkg-utopia-maintainers mailing list