[Bug 242223] mail/dovecot: incompatible with security.bsd.hardlink_check_{g,u}id

bugzilla-noreply at freebsd.org bugzilla-noreply at freebsd.org
Mon Nov 25 13:56:18 UTC 2019


https://bugs.freebsd.org/bugzilla/show_bug.cgi?id=242223

            Bug ID: 242223
           Summary: mail/dovecot: incompatible with
                    security.bsd.hardlink_check_{g,u}id
           Product: Ports & Packages
           Version: Latest
          Hardware: Any
                OS: Any
            Status: New
          Severity: Affects Some People
          Priority: ---
         Component: Individual Port(s)
          Assignee: ler at FreeBSD.org
          Reporter: tphilipp at potion-studios.com
             Flags: maintainer-feedback?(ler at FreeBSD.org)
          Assignee: ler at FreeBSD.org

Hello,

similar to PR 218392, the port is incompatible with
security.bsd.hardlink_check_gid and security.bsd.hardlink_check_uid sysctl
flags set to 1, usually done for hardening.

As with the mentioned PR, those flags also affect dovecot's use of lock files.
However, I *think* it's less dangerous, though, b/c it simply cannot write a
lock file anymore (which are hardlinks in this case) and just gives up on
whatever it planned to do.

Long story short, I think it's worth adding a warning to pkg-message for this,
as well.

Thanks!

-- 
You are receiving this mail because:
You are the assignee for the bug.


More information about the freebsd-ports-bugs mailing list