Bug 230766 - mail/rspamd default user and group entries in UIDs GIDs (please)
Summary: mail/rspamd default user and group entries in UIDs GIDs (please)
Status: Closed FIXED
Alias: None
Product: Ports & Packages
Classification: Unclassified
Component: Individual Port(s) (show other bugs)
Version: Latest
Hardware: Any Any
: --- Affects Some People
Assignee: Vsevolod Stakhov
URL:
Keywords:
Depends on:
Blocks:
 
Reported: 2018-08-20 06:15 UTC by dewayne
Modified: 2019-03-16 12:33 UTC (History)
1 user (show)

See Also:
bugzilla: maintainer-feedback? (vsevolod)


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description dewayne 2018-08-20 06:15:55 UTC
Is it time to create an entry in /usr/ports/UIDs and /usr/ports/GIDs for the mail/rspamd/Makefile to use, rather than nobody?  This would help with consistency for those that move between sites to manage rspamd easier. 

I scanned both for free ID's on either side of redis.  This would be a great help, particularly for those like me that use unix sockets.  I'm temporarily setting _rspamd:_rspamd to 533 for both ;)
Comment 1 commit-hook freebsd_committer freebsd_triage 2019-03-04 07:32:45 UTC
A commit references this bug:

Author: mfechner
Date: Mon Mar  4 07:31:48 UTC 2019
New revision: 494558
URL: https://svnweb.freebsd.org/changeset/ports/494558

Log:
  Added new user rspamd to be used for mail/rspamd.

  Reason for this is, if you like to use rspamd to also sign emails using DKIM, ARC,
  rspamd need access to the private key used for signing.
  As user nobody is correctly used to run rspamd each service that fallback
  to user nobody would have access to the private key, which is a security risk.

  PR:		230766

Changes:
  head/GIDs
  head/UIDs
Comment 2 Matthias Fechner freebsd_committer freebsd_triage 2019-03-16 12:33:00 UTC
New version uses now this user, please see 236505.
I close this one now.