[Pkg-dns-devel] Bug#882731: apparmor policy only accepts root.key in /var/lib/unbound

Peter Palfrader weasel at debian.org
Sun Nov 26 08:31:46 UTC 2017


Package: unbound
Version: 1.6.7-1
User: debian-admin at lists.debian.org
Usertags: needed-by-DSA-Team
Control: found -1 1.6.0-3+deb9u1
X-Debbugs-Cc: debian-admin at lists.debian.org

The apparmor policy for unbound allows access to
/var/lib/unbound/root.key*, but it does not allow access to any
other dynamically updated key the admin might have put there,
such as debian.org.key on DSA infrastructure.

Please allow access to all key files.

-- 
                            |  .''`.       ** Debian **
      Peter Palfrader       | : :' :      The  universal
 https://www.palfrader.org/ | `. `'      Operating System
                            |   `-    https://www.debian.org/



More information about the pkg-dns-devel mailing list