On Tue, 6 Sep 2016 22:30:37 +0200 Simon Ruderich <si...@ruderich.org> wrote:
Package: softhsm
Severity: normal
Hello,
After migrating from softhsm to softhsm2 I purged softhsm.
The problem is with softhsm-common.
softhsm2-common also has the same piece of code, so the same problem.
However this removed the softhsm group which is still in use by
softhsm2 thus breaking opendnssec which is now no longer in this
group and can't access the hsm.
Maybe the option --only-if-empty of delgroup(8) could be used to
remove the group only if no user is using it any more?
Btw. why is a static gid (999) used instead of a dynamic system's
group id?
Good question.
It looks like is is not compliant with the Debian Policy
https://www.debian.org/doc/debian-policy/ch-opersys.html#s9.2.2
Bye
--
Dr. Ludovic Rousseau