FS#34321 - [systemd] 198-1 is missing some user and permission bits
Attached to Project:
Arch Linux
Opened by Jan (medhefgo) - Friday, 15 March 2013, 11:04 GMT
Last edited by Dave Reisner (falconindy) - Tuesday, 24 December 2013, 21:43 GMT
Opened by Jan (medhefgo) - Friday, 15 March 2013, 11:04 GMT
Last edited by Dave Reisner (falconindy) - Tuesday, 24 December 2013, 21:43 GMT
|
Details
In order for systemd-journal-gatewayd to work, it needs both
a systemd-journal-gateway user and group.
Also, upstream recommends that distros give the journal the following permissions when installing/upgrading: # setfacl -Rnm g:wheel:rx,d:g:wheel:rx,g:adm:rx,d:g:adm:rx /var/log/journal/ |
This task depends upon
Closed by Dave Reisner (falconindy)
Tuesday, 24 December 2013, 21:43 GMT
Reason for closing: Fixed
Additional comments about closing: ACLs added in 208-8. The group cannot be added by the systemd package -- this needs to be fixed in core/filesystem.
Tuesday, 24 December 2013, 21:43 GMT
Reason for closing: Fixed
Additional comments about closing: ACLs added in 208-8. The group cannot be added by the systemd package -- this needs to be fixed in core/filesystem.
The setfact line you pulled is a suggestion from a man page. A suggestion, and that's it. Feel free to manage your machine the way you like it.
Yes, ACLs are a suggestion, but a good one to follow. It's not like it would break something, it's actually the contrary. Upgrading to the latest systemd prevents users of journalctl who put themselves in adm to read the jouranl. This is a regression. It should either be noted when upgrading or the setfacl should be executed when installing.
> useradd -r -d /var/log/journal/ -s /bin/false systemd-journal-gateway