Package: charybdis
Version: 4.1.1-1+b1
Severity: normal

Hello,

I've found out that the init script, as it is currently shipped by this
package does not properly perform its "reload" action.

This means that when one changes the configuration, or rotates the TLS
certificates, the service does not get to see the new configurations or
certificates.

I've found out that this was caused by the fact that start-stop-daemon refused
to act when requested to find a process by only using a PIDFILE which is not
owned by root, which is what the "reload" action is currently doing.

Adding "--user $NAME" to the action makes start-stop-daemon more confident and
permits the reload action to actually happen.

See the patch sent to salsa: 
https://salsa.debian.org/debian/charybdis/-/merge_requests/1

-- System Information:
Debian Release: bullseye/sid
  APT prefers unstable
  APT policy: (500, 'unstable')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 5.6.0-1-amd64 (SMP w/4 CPU cores)
Kernel taint flags: TAINT_WARN
Locale: LANG=en_CA.utf8, LC_CTYPE=en_CA.utf8 (charmap=UTF-8) (ignored: LC_ALL 
set to en_CA.utf8), LANGUAGE=en_CA.utf8 (charmap=UTF-8) (ignored: LC_ALL set to 
en_CA.utf8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)
LSM: AppArmor: enabled

Versions of packages charybdis depends on:
ii  adduser              3.118
ii  init-system-helpers  1.57
ii  libc6                2.30-8
ii  libltdl7             2.4.6-14
ii  libmbedcrypto3       2.16.5-1
ii  libmbedtls12         2.16.5-1
ii  libmbedx509-0        2.16.5-1
ii  libsqlite3-0         3.32.3-1
ii  lsb-base             11.1.0
ii  zlib1g               1:1.2.11.dfsg-2

charybdis recommends no packages.

charybdis suggests no packages.

Reply via email to