Package: gradm2 Version: 2.1.11-1 Severity: important Hello,
Default policy defines duplicates entries for two subjects (klogd and cron) which prevents gradm2 from starting. Attached patch should solves the problem. Thanks, Olivier; -- System Information: Debian Release: lenny/sid APT prefers unstable APT policy: (500, 'unstable'), (1, 'experimental') Architecture: i386 (i686) Kernel: Linux 2.6.22-debian4-2 Locale: LANG=fr_FR.UTF-8, LC_CTYPE=fr_FR.UTF-8 (charmap=UTF-8) Shell: /bin/sh linked to /bin/bash Versions of packages gradm2 depends on: ii libc6 2.7-12 GNU C Library: Shared libraries ii libpam0g 0.99.7.1-7 Pluggable Authentication Modules l gradm2 recommends no packages. Versions of packages gradm2 suggests: pn kernel-patch-grsecurity2 <none> (no description available) -- no debconf information
--- policy.org 2008-07-16 19:42:16.000000000 +0200 +++ policy 2008-07-16 19:42:47.000000000 +0200 @@ -81,7 +81,7 @@ # all accesses of this subject and anything it executes to be placed # in this subject, and inheritance flags added to executable objects # in this subject -# a -> allow this process to talk to the /dev/grsec2 device +# a -> allow this process to talk to the /dev/grsec device # # user/group transitions: # You may now specify what users and groups a given subject can @@ -281,15 +281,9 @@ subject /usr/bin/ssh /etc/ssh/ssh_config r -subject /sbin/klogd - +CAP_SYS_ADMIN - subject /sbin/syslog-ng +CAP_SYS_ADMIN -subject /usr/sbin/cron - /dev/log rw - subject /bin/login /dev/log rw /var/log/wtmp w