Re: Mass bug proposal: packages that auto-enable systemd units

2014-04-23 Thread Andrew Lutomirski
On Wed, Apr 23, 2014 at 9:06 AM, Kevin Fenzi wrote: > On Wed, 23 Apr 2014 08:49:58 -0700 > Andrew Lutomirski wrote: > >> On Tue, Apr 22, 2014 at 7:02 PM, Zbigniew Jędrzejewski-Szmek >> wrote: >> > On Tue, Apr 22, 2014 at 12:17:10PM -0700, Andrew Lutomirski wrote: >> >> Examples of "runs once the

Re: Mass bug proposal: packages that auto-enable systemd units

2014-04-23 Thread Kevin Fenzi
On Wed, 23 Apr 2014 08:49:58 -0700 Andrew Lutomirski wrote: > On Tue, Apr 22, 2014 at 7:02 PM, Zbigniew Jędrzejewski-Szmek > wrote: > > On Tue, Apr 22, 2014 at 12:17:10PM -0700, Andrew Lutomirski wrote: > >> Examples of "runs once then goes away" services > >> include iptables and udev. > > I re

Re: Mass bug proposal: packages that auto-enable systemd units

2014-04-23 Thread Zbigniew Jędrzejewski-Szmek
On Wed, Apr 23, 2014 at 08:49:58AM -0700, Andrew Lutomirski wrote: > If no one tells me otherwise today, I will take the lack of objections > to the mass bug filing as consensus. Yeah, no objections from my side. Zbyszek -- devel mailing list devel@lists.fedoraproject.org https://admin.fedoraproj

Re: Mass bug proposal: packages that auto-enable systemd units

2014-04-23 Thread Andrew Lutomirski
On Tue, Apr 22, 2014 at 7:02 PM, Zbigniew Jędrzejewski-Szmek wrote: > On Tue, Apr 22, 2014 at 12:17:10PM -0700, Andrew Lutomirski wrote: >> Examples of "runs once then goes away" services >> include iptables and udev. > I removed udev from this paragraph on the wiki, since it's persistent and > is

Re: Mass bug proposal: packages that auto-enable systemd units

2014-04-22 Thread Zbigniew Jędrzejewski-Szmek
On Tue, Apr 22, 2014 at 12:17:10PM -0700, Andrew Lutomirski wrote: > Examples of "runs once then goes away" services > include iptables and udev. I removed udev from this paragraph on the wiki, since it's persistent and is a bad example. Zbyszek -- devel mailing list devel@lists.fedoraproject.org

Re: Mass bug proposal: packages that auto-enable systemd units

2014-04-22 Thread Andrew Lutomirski
On Tue, Apr 22, 2014 at 3:14 PM, "Jóhann B. Guðmundsson" wrote: > > On 04/22/2014 10:14 PM, Andrew Lutomirski wrote: >> >> I don't think that fixing the broken packages should need to wait for >> this migration to finish -- there is a security problem now, and it >> can be fixed now with local cha

Re: Mass bug proposal: packages that auto-enable systemd units

2014-04-22 Thread Jóhann B. Guðmundsson
On 04/22/2014 10:14 PM, Andrew Lutomirski wrote: I don't think that fixing the broken packages should need to wait for this migration to finish -- there is a security problem now, and it can be fixed now with local changes to the thirty-something affected packages. By all means provide patches

Re: Mass bug proposal: packages that auto-enable systemd units

2014-04-22 Thread Andrew Lutomirski
On Tue, Apr 22, 2014 at 2:54 PM, "Jóhann B. Guðmundsson" wrote: > > On 04/22/2014 09:32 PM, Andrew Lutomirski wrote: >> >> On Tue, Apr 22, 2014 at 2:19 PM, "Jóhann B. Guðmundsson" >> wrote: >>> >>> > >>> >On 04/22/2014 06:50 PM, Andrew Lutomirski wrote: >> >>Hi all- >> >

Re: Mass bug proposal: packages that auto-enable systemd units

2014-04-22 Thread Jóhann B. Guðmundsson
On 04/22/2014 09:32 PM, Andrew Lutomirski wrote: On Tue, Apr 22, 2014 at 2:19 PM, "Jóhann B. Guðmundsson" wrote: > >On 04/22/2014 06:50 PM, Andrew Lutomirski wrote: >> >>Hi all- >> >>I propose a mass bug against packages that install services and enable >>them without using the preset mechan

Re: Mass bug proposal: packages that auto-enable systemd units

2014-04-22 Thread Andrew Lutomirski
On Tue, Apr 22, 2014 at 2:19 PM, "Jóhann B. Guðmundsson" wrote: > > On 04/22/2014 06:50 PM, Andrew Lutomirski wrote: >> >> Hi all- >> >> I propose a mass bug against packages that install services and enable >> them without using the preset mechanism. Some of these can be >> security issues if th

Re: Mass bug proposal: packages that auto-enable systemd units

2014-04-22 Thread Jóhann B. Guðmundsson
On 04/22/2014 06:50 PM, Andrew Lutomirski wrote: Hi all- I propose a mass bug against packages that install services and enable them without using the preset mechanism. Some of these can be security issues if they get installed as dependencies. I will revisit all of this once I run the syste

Re: Mass bug proposal: packages that auto-enable systemd units

2014-04-22 Thread Andrew Lutomirski
On Tue, Apr 22, 2014 at 12:00 PM, Miloslav Trmač wrote: > Hello, > 2014-04-22 20:50 GMT+02:00 Andrew Lutomirski : > >> If your package has an exception from FESCo permitting it to enable >> itself, > > > Note that many (most?) packages don't need an individual exception by FESCo: > https://fedorap

Re: Mass bug proposal: packages that auto-enable systemd units

2014-04-22 Thread Miloslav Trmač
Hello, 2014-04-22 20:50 GMT+02:00 Andrew Lutomirski : > If your package has an exception from FESCo permitting it to enable > itself, Note that many (most?) packages don't need an individual exception by FESCo: https://fedoraproject.org/wiki/Starting_services_by_default allows fairly wide catego

Mass bug proposal: packages that auto-enable systemd units

2014-04-22 Thread Andrew Lutomirski
Hi all- I propose a mass bug against packages that install services and enable them without using the preset mechanism. Some of these can be security issues if they get installed as dependencies. As a related issue, it may pay to review the default presets. For example, rpcbind is enabled. Thi