From nobody Tue Apr 07 21:49:14 2026 X-Original-To: ports-bugs@mlmmj.nyi.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mlmmj.nyi.freebsd.org (Postfix) with ESMTP id 4fr0G25sTMz6WJnj for ; Tue, 07 Apr 2026 21:49:14 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from mxrelay.nyi.freebsd.org (mxrelay.nyi.freebsd.org [IPv6:2610:1c1:1:606c::19:3]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256 client-signature RSA-PSS (4096 bits) client-digest SHA256) (Client CN "mxrelay.nyi.freebsd.org", Issuer "R12" (not verified)) by mx1.freebsd.org (Postfix) with ESMTPS id 4fr0G25KgYz3sqs for ; Tue, 07 Apr 2026 21:49:14 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1775598554; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=tlO0RXsMhiFgVG0kZUYo6JhKu6DYW2dgbx0j7gl4ol4=; b=iW2Npy9fStkVKDAATta/jj1ajkeOAyIZSv9aX6fDriuFvTcl8C5HdMoVhfZb3mDaALdIyY uijl8I6gnjpGDfgaHn8ZTVfhzX6bNuuIn7YbhKpWelJ0JqeMqON+zltr2nOKvXBXYWkdnP DuVdnFT32KriuamFcwBYLIdhlUOCXwnrXbhUJXfAP3lcYRrwq+kB938jxWRhL/cDrA35Xv 2tPm+WeSKEdnU6y++G20OAFcIykuI6X8e67yYE+NsoOS3kaEm76H8KrvkofvAvUgvmksBu Hp2Aj1UL93N90rKHp0qKadnemRzeMRvfk88pnkubd488RGy/1atszF8zwJ7BQw== ARC-Seal: i=1; s=dkim; d=freebsd.org; t=1775598554; a=rsa-sha256; cv=none; b=RF3M63E83EDxp3cAugMwjnjm23yeEXERyPdzKb/T5/dYyk66VtpO+yi6ut2jFPR9942Vbo 3e/QsaAYkC+KKR1lSgsBw3BRgNDf/MLHaPUJ52CBKC/pTED56nJDXLaHVH9DOWZsy9yc8n FwvfGtLzbxPkmPp4ag/ynoiZT/Ht/1hl7hYiUQPNFyL0rUojJHBos5yU8Ml9rqIXdyYgMa qimKytNMEAf+BVH0B0pzl6wJoAks7iKFsMETEpiOdSrX4Rkcwww+gRRlKsnRWJ+AitiPRr jVqiAOxIVhm+ojnkK+T7j0K4vnHKhWYFzMHhu28Ljc3P2RMU3a4jt4/7lTDvZA== ARC-Authentication-Results: i=1; mx1.freebsd.org; none ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=freebsd.org; s=dkim; t=1775598554; h=from:from:reply-to:subject:subject:date:date:message-id:message-id: to:to:cc:mime-version:mime-version:content-type:content-type: content-transfer-encoding:content-transfer-encoding: in-reply-to:in-reply-to:references:references; bh=tlO0RXsMhiFgVG0kZUYo6JhKu6DYW2dgbx0j7gl4ol4=; b=jO0QCUQbIkt/8d4KkQC+XQWKzPRxpKYXHId8kGGYBRh0borjpELse0vO54hgLB3RQ0flmA kUZD4v3UwIdnhjgmDi+duq7YHw9++SxGVkoZDX96uFFHpn8I2oWutvM7lY1KZ/ee2PdMBw pIYtvrVXpadpxDW7X3doXtrNNUX/GXHarIdSi31CNUA+I++3RqD19rpLVxFm9v1q4xa4zn on0MUCWHNAgABg1T6ljU2hNT0cp069wAeNqUzI/bAw82zfRvF9r2ghDLOo6Q+ZIdQQ5pOl tl9pi3Op7UsrZBkwlxoDtB9BMK8rVHc6dVEcLOwFItyewKWJcdQSkNnTurPURg== Received: from kenobi.freebsd.org (kenobi.freebsd.org [IPv6:2610:1c1:1:606c::50:1d]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (4096 bits) server-digest SHA256) (Client did not present a certificate) by mxrelay.nyi.freebsd.org (Postfix) with ESMTPS id 4fr0G24YtjzxL9 for ; Tue, 07 Apr 2026 21:49:14 +0000 (UTC) (envelope-from bugzilla-noreply@freebsd.org) Received: from kenobi.freebsd.org ([127.0.1.5]) by kenobi.freebsd.org (8.15.2/8.15.2) with ESMTP id 637LnExg037519 for ; Tue, 7 Apr 2026 21:49:14 GMT (envelope-from bugzilla-noreply@freebsd.org) Received: (from www@localhost) by kenobi.freebsd.org (8.15.2/8.15.2/Submit) id 637LnEuQ037518 for ports-bugs@FreeBSD.org; Tue, 7 Apr 2026 21:49:14 GMT (envelope-from bugzilla-noreply@freebsd.org) X-Authentication-Warning: kenobi.freebsd.org: www set sender to bugzilla-noreply@freebsd.org using -f From: bugzilla-noreply@freebsd.org To: ports-bugs@FreeBSD.org Subject: [Bug 294020] security/ossec-hids-agent-config: Invalid character " " in variable name "/usr/bin/id -un" Date: Tue, 07 Apr 2026 21:49:14 +0000 X-Bugzilla-Reason: AssignedTo X-Bugzilla-Type: changed X-Bugzilla-Watch-Reason: None X-Bugzilla-Product: Ports & Packages X-Bugzilla-Component: Individual Port(s) X-Bugzilla-Version: Latest X-Bugzilla-Keywords: X-Bugzilla-Severity: Affects Only Me X-Bugzilla-Who: juhani@krekela.fi X-Bugzilla-Status: New X-Bugzilla-Resolution: X-Bugzilla-Priority: --- X-Bugzilla-Assigned-To: ports-bugs@FreeBSD.org X-Bugzilla-Flags: maintainer-feedback? X-Bugzilla-Changed-Fields: Message-ID: In-Reply-To: References: Content-Transfer-Encoding: quoted-printable Content-Type: text/plain; charset="UTF-8" X-Bugzilla-URL: https://bugs.freebsd.org/bugzilla/ Auto-Submitted: auto-generated List-Id: Ports bug reports List-Archive: https://lists.freebsd.org/archives/freebsd-ports-bugs List-Help: List-Post: List-Subscribe: List-Unsubscribe: X-BeenThere: freebsd-ports-bugs@freebsd.org Sender: owner-freebsd-ports-bugs@FreeBSD.org MIME-Version: 1.0 https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=3D294020 --- Comment #5 from Juhani Krekel=C3=A4 --- The problem appears to stem from this piece of code on lines 96 to 98 of security/ossec-hids-local-config/Makefile: .if empty(USER) USER=3D$$(${ID} -un) .endif If you were running the build from a normal login session, USER would be se= t, but I presume Poudriere doesn't do so. The USER variable is then used a bit further down in the definition of the SUB_PLIST variable on line 110: SUB_LIST+=3D PORTNAME=3D${PORTNAME} \ OSSEC_TYPE=3D${OSSEC_TYPE} \ OSSEC_HOME=3D${OSSEC_HOME} \ VERSION=3D${PORTVERSION} \ USER=3D${USER} \ OSSEC_USER=3D${OSSEC_USER} \ OSSEC_GROUP=3D${OSSEC_GROUP} \ OSSEC_RC=3D${OSSEC_RC} \ FW_DROP=3D${FW_DROP} The lines it issues a warning on in bsd.options.mk are part of a loop that = gets run once for each option for the port (starts on line 477). The relevant bit here is that the loop adds SUB_LIST entries for all options (lines 489 to 4= 95): . if ! ${SUB_LIST:M${opt}=3D*} . if ${PORT_OPTIONS:M${opt}} SUB_LIST:=3D ${SUB_LIST} ${opt}=3D"" NO_${opt}=3D"@comment " . else SUB_LIST:=3D ${SUB_LIST} ${opt}=3D"@comment " NO_${opt}=3D"" . endif . endif The usage of :=3D here interacts badly with the way USER was defined. It ru= ns variable expansion on the contents of SUB_LIST, which (because make variable expansion is lazy by default) then recursively runs the expansion on USER, = (if I understand this correctly) replacing the "USER=3D${USER}" bit of the defi= nition of SUB_LIST with "USER=3D$(/usr/bin/id -un)". This is then assigned back to= the SUB_LIST variable. The next time the value of SUB_LIST is used, in a way that causes expansion, e.g. the next time we go around this loop, it then tries to expand "USER=3D$(/usr/bin/id -un)". Since $() is also a possible make variable exp= ansion syntax, it ends up trying to expand a variable named "/usr/bin/id -un". A similar problem seems to have been fixed with other variables by changing $$(=E2=80=A6) to `=E2=80=A6` in security/ossec-hids* last summer: https://cgit.freebsd.org/ports/commit/?id=3D6764a97f12fadadd0d4803aa205c471= 61ae50ae4 My guess is that the problem with USER was missed back then because it's usually set from the environment. --=20 You are receiving this mail because: You are the assignee for the bug.=