[Letsencrypt-devel] Bug#819107: certbot: confirmation of unhealthy permissions for pem files

wim wim.bertels at ucll.be
Fri Oct 21 08:37:34 UTC 2016


Package: certbot
Version: 0.8.1-2~bpo8+1
Followup-For: Bug #819107

Hallo,

If u check the permissions of the keys:

/etc/letsencrypt# ls -al archive/projektwerk.ucll.be/
totaal 24
drwxr-xr-x 2 root root 4096 sep 23 08:44 .
drwx------ 3 root root 4096 sep 23 08:44 ..
-rw-r--r-- 1 root root 1826 sep 23 08:44 cert1.pem
-rw-r--r-- 1 root root 1647 sep 23 08:44 chain1.pem
-rw-r--r-- 1 root root 3473 sep 23 08:44 fullchain1.pem
-rw-r--r-- 1 root root 1704 sep 23 08:44 privkey1.pem

The last r shouldn't be there for private keys.

Note, fortunately:
drwx------   3 root root 4096 sep 23 08:44 archive

mvg,
Wim

-- System Information:
Debian Release: 8.6
  APT prefers stable
  APT policy: (500, 'stable')
Architecture: amd64 (x86_64)

Kernel: Linux 3.16.0-4-amd64 (SMP w/4 CPU cores)
Locale: LANG=nl_BE.UTF-8, LC_CTYPE=nl_BE.UTF-8 (charmap=UTF-8)
Shell: /bin/sh linked to /bin/dash
Init: systemd (via /run/systemd/system)

Versions of packages certbot depends on:
ii  dialog          1.2-20140911-1
ii  python          2.7.9-1
ii  python-certbot  0.8.1-2~bpo8+1
pn  python:any      <none>

certbot recommends no packages.

Versions of packages certbot suggests:
ii  python-certbot-apache  0.8.1-1~bpo8+1
pn  python-certbot-doc     <none>

-- no debconf information



More information about the Letsencrypt-devel mailing list