Re: Bug#1053782: RFP: node-vite -- Next Generation Frontend Tooling

2023-10-11 Thread Andrius Merkys
Hi, On 2023-10-11 09:44, Simon Richter wrote: On 10/11/23 15:30, Andrius Merkys wrote:    Description : Next Generation Frontend Tooling Yes, but what does it do? Why would I pick this out of a package list if I didn't know the name of the package already? The following line in the RF

Re: Bug#1053782: RFP: node-vite -- Next Generation Frontend Tooling

2023-10-11 Thread Simon Richter
Hi, On 10/11/23 16:00, Andrius Merkys wrote: Yes, but what does it do? Why would I pick this out of a package list if I didn't know the name of the package already? The following line in the RFP says: Vite is a frontend build tool, including development server and build command bundling c

Re: Bug#1053782: RFP: node-vite -- Next Generation Frontend Tooling

2023-10-11 Thread Andrius Merkys
Hi, On 2023-10-11 10:18, Simon Richter wrote: On 10/11/23 16:00, Andrius Merkys wrote: Yes, but what does it do? Why would I pick this out of a package list if I didn't know the name of the package already? The following line in the RFP says: Vite is a frontend build tool, including devel

Re: Please test apt-listchanges 4.0 in experimental

2023-10-11 Thread Alexandre Detiste
Le dim. 8 oct. 2023 à 17:27, Jonathan Kamens a écrit : > I'd appreciate some testing from folks here before it gets promoted to > unstable. I got important NEWS from libx11 from 2006 (?) so far so good for the rest. > the database needs to be populated with data for existing packages durin

Re: [RFC] locking down rsyslog.service

2023-10-11 Thread Michael Biebl
Am 11.10.23 um 08:03 schrieb Simon Richter: Hi, On 10/11/23 03:22, Michael Biebl wrote: I intend to lock down rsyslog.service in Debian in one of the next uploads using the following systemd directives CapabilityBoundingSet=CAP_BLOCK_SUSPEND CAP_CHOWN CAP_LEASE CAP_NET_ADMIN CAP_NET_BIND_SE

Re: [RFC] locking down rsyslog.service

2023-10-11 Thread Simon Richter
Hi, On 10/11/23 19:14, Michael Biebl wrote: - CAP_NET_ADMIN: use of setsockopt() - CAP_SYS_ADMIN: exceed /proc/sys/fs/file-max, the system-wide limit on the number of open files, in system calls that open files (e.g. accept execve), use of setns(),... I see, thanks! I looked over the code

Re: [RFC] locking down rsyslog.service

2023-10-11 Thread Sam Morris
On 10/10/2023 19:22, Michael Biebl wrote: I intend to lock down rsyslog.service in Debian in one of the next uploads using the following systemd directives Have you considered NoNewPrivileges=yes? This is turned in implicitly by some of the other options (e.g,. PrivateDevices=yes) but only if

Re: [RFC] locking down rsyslog.service

2023-10-11 Thread Michael Biebl
Am 11.10.23 um 12:54 schrieb Sam Morris: On 10/10/2023 19:22, Michael Biebl wrote: I intend to lock down rsyslog.service in Debian in one of the next uploads using the following systemd directives Have you considered NoNewPrivileges=yes? This is turned in implicitly by some of the other optio

Re: Please test apt-listchanges 4.0 in experimental

2023-10-11 Thread Jonathan Kamens
On 10/11/23 03:37, Alexandre Detiste wrote: Le dim. 8 oct. 2023 à 17:27, Jonathan Kamens a écrit : I'd appreciate some testing from folks here before it gets promoted to unstable. I got important NEWS from libx11 from 2006 (?) so far so good for the rest. Can you confirm that this occurre

Bug#1053805: ITP: tremotesf2 -- Remote GUI for transmission-daemon

2023-10-11 Thread Antoine Beaupre
Package: wnpp Severity: wishlist Owner: Antoine Beaupre X-Debbugs-Cc: debian-devel@lists.debian.org * Package name: tremotesf2 Version : 2.4.0 Upstream Contact: Alexey Rochev * URL : https://github.com/equeim/tremotesf2/ * License :

Re: [RFC] locking down rsyslog.service

2023-10-11 Thread Michael Biebl
Am 11.10.23 um 13:41 schrieb Michael Biebl: Am 11.10.23 um 12:54 schrieb Sam Morris: On 10/10/2023 19:22, Michael Biebl wrote: I intend to lock down rsyslog.service in Debian in one of the next uploads using the following systemd directives Have you considered NoNewPrivileges=yes? This is tu

Re: Please test apt-listchanges 4.0 in experimental

2023-10-11 Thread Alexandre Detiste
Le mer. 11 oct. 2023 à 14:54, Jonathan Kamens a écrit : > Can you confirm that this occurred with 4.0 rather than 4.1? I'm a bit messy & forgetful these times. But you have #1053812 against 4.1 already. > > Can annotations/mypy testing be considered now "best practices" for > > Debian native pack

Re: [RFC] locking down rsyslog.service

2023-10-11 Thread Robert Edmonds
Michael Biebl wrote: > While the attempt is to secure the default configuration of rsyslog, I > do not want to restrict it so much that it becomes unusable. > If you think, that one of those directives could cause issues with > commonly used setups, please let me know, so I can adjust the > configu

Bug#1053817: ITP: python-ping3 -- Python module and command to ping hosts using raw sockets

2023-10-11 Thread Carles Pina i Estany
Package: wnpp Severity: wishlist Owner: Carles Pina i Estany X-Debbugs-Cc: debian-devel@lists.debian.org * Package name: python-ping3 Version : 4.0.4 Upstream Contact: kyan001 * URL : https://github.com/kyan001/ping3 * License : MIT Programming Lang: Python

Bug#1053818: ITP: pkcs11-provider -- OpenSSL 3 provider for PKCS11

2023-10-11 Thread Luca Boccassi
Package: wnpp Severity: wishlist Owner: Luca Boccassi X-Debbugs-Cc: debian-devel@lists.debian.org * Package name: pkcs11-provider Version : 0.2 Upstream Contact: Red Hat * URL : https://github.com/latchset/pkcs11-provider * License : Apache-2.0 Programming La