Package: strongswan-ikev1
Version: 4.6.4-2
Severity: serious

In 4.6.4-2 the package was changed to make the daemons run as a
non-privileged user instead of root. This breaks my virtual IP setup
(leftsourceip=) because after establishing tunnels pluto runs iproute2
commands which now fail because of insufficient privileges.

The strongSwan wiki mentions that it also breaks leftfirewall=, which I
use on machines currently running squeeze, I don't want this to break when
I upgrade to wheezy...

Running non-privileged is a nice security improvement but it's probably
not the right default for the Debian package as it breaks important
features.

Thanks,
-- 
Romain Francoise <rfranco...@debian.org>
http://people.debian.org/~rfrancoise/



-- 
To UNSUBSCRIBE, email to debian-bugs-dist-requ...@lists.debian.org
with a subject of "unsubscribe". Trouble? Contact listmas...@lists.debian.org

Reply via email to