Package: ntpsec
Version: 1.2.1+dfsg1-7+b1

When package ntp is installed (from long history), the ntp daemon is
started by this /etc/init.d/ntp which uses user ntp:ntp. So all
auxiliary directories and files are owned by ntp:ntp.

When ntpsec starts to start the same daemon with ntpsec:ntpsec (which is
counter expected) the ntp daemon is not running properly and more over,
it is creating/changing some file rights so neither daemon is running
properly afterwards.

Even better would be to drop that ntpsec:ntpsec user fully and use
ntp:ntp as this would be the expected user a ntp is running under.

And please, don't conflict for ntp package as usually ntp is managed by
configuration management which is depending on ntp init script named
ntp. Nobody would expect init script ntpsec!

-- System Information:
Debian Release: bookworm/sid
  APT prefers experimental
  APT policy: (1, 'experimental')
Architecture: amd64 (x86_64)
Foreign Architectures: i386

Kernel: Linux 5.16.17 (SMP w/8 CPU threads)
Kernel taint flags: TAINT_PROPRIETARY_MODULE, TAINT_FIRMWARE_WORKAROUND, 
TAINT_OOT_MODULE
Locale: LANG=C, LC_CTYPE=C.UTF-8 (charmap=UTF-8), LANGUAGE not set
Shell: /bin/sh linked to /bin/dash
Init: sysvinit (via /sbin/init)

Versions of packages ntpsec depends on:
ii  adduser              3.121
ii  init-system-helpers  1.63devuan1
ii  libbsd0              0.11.6-1
ii  libc6                2.33-7
ii  libcap2              1:2.44-1
ii  libssl3              3.0.4-2
ii  lsb-base             11.2
ii  netbase              6.3
ii  python3              3.10.4-1+b1
ii  python3-ntp          1.2.1+dfsg1-7+b1
ii  tzdata               2022a-1

Versions of packages ntpsec recommends:
ii  cron [cron-daemon]  3.0pl1-144

Versions of packages ntpsec suggests:
pn  apparmor       <none>
ii  certbot        1.25.0-1
ii  ntpsec-doc     1.2.1+dfsg1-7
pn  ntpsec-ntpviz  <none>

-- Configuration Files:
/etc/default/ntpsec changed:
exit 0
NTPD_OPTS="-g -N"
IGNORE_DHCP="yes"
NTPSEC_CERTBOT_CERT_NAME=""

/etc/ntpsec/ntp.conf changed:
driftfile /var/lib/ntpsec/ntp.drift
statistics loopstats peerstats clockstats
filegen loopstats file loopstats type day enable
filegen peerstats file peerstats type day enable
filegen clockstats file clockstats type day enable
pool 0.ch.pool.ntp.org iburst
pool 1.ch.pool.ntp.org iburst
pool 2.ch.pool.ntp.org iburst
pool 3.ch.pool.ntp.org iburst
restrict -4 default kod notrap nomodify nopeer noquery
restrict -6 default kod notrap nomodify nopeer noquery
restrict 127.0.0.1
restrict 192.168.17.0 mask 255.255.255.0 nomodify
restrict ::1
restrict source notrap nomodify noquery


-- no debconf information

-- 
Klaus Ethgen                                       http://www.ethgen.ch/
pub  4096R/4E20AF1C 2011-05-16            Klaus Ethgen <kl...@ethgen.ch>
Fingerprint: 85D4 CA42 952C 949B 1753  62B3 79D0 B06F 4E20 AF1C

Attachment: signature.asc
Description: PGP signature

Reply via email to