Am 03.02.20 um 09:44 schrieb Michael Biebl: > Am 03.02.20 um 09:30 schrieb Marc Haber: > >> group::r-x #effective:r-- >> group:adm:r-x #effective:r-- > > Just to be clear: you mean this x bit set for group/group:adm which is > not in effect (in effect is r-- due to the mask) > So is there actually a problem? > > Afaics, this is just a result of how the permissions/ACLs are setup for > /run/log/journal/$machineid > > If you create a file via touch in that directory, it should have the > same permissions as the journal files, right? > >
I wonder if the permissions of system.journal are different directly after boot because systemd-tmpfiles has changed them explicitly If I run SYSTEMD_LOG_LEVEL=debug systemd-tmpfiles --create --prefix=/run/log/journal I see among others Setting access ACL u::rw-,g::r-x,g:adm:r--,m::r--,o::--- on /run/log/journal/92e74c0bd699cc0d17d48ad852cc73e2/system.journal. Setting access ACL u::rw-,g::r--,g:adm:r--,m::r--,o::--- on /run/log/journal/92e74c0bd699cc0d17d48ad852cc73e2/system@b5595ec413b2491e8abe7287673ba291-0000000000000001-00059da7f0b3ea1a.journal.
signature.asc
Description: OpenPGP digital signature