[opensuse-packaging] polkit-unauthorized-privilege
Where list of allowed privileges is kept? User tries to rebuild current systemd for Leap but keeps hitting [ 261s] systemd.x86_64: E: polkit-unauthorized-privilege (Badness: 10000) org.freedesktop.machine1.host-login (auth_admin:auth_admin:yes) [ 261s] The package allows unprivileged users to carry out privileged operations [ 261s] without authentication. This could cause security problems if not done [ 261s] carefully. If the package is intended for inclusion in any SUSE product please [ 261s] open a bug report to request review of the package by the security team Is there any way to work around it? -- To unsubscribe, e-mail: opensuse-packaging+unsubscribe@opensuse.org To contact the owner, e-mail: opensuse-packaging+owner@opensuse.org
On Thu, Mar 10, 2016 at 06:57:49AM +0300, Andrei Borzenkov wrote:
Where list of allowed privileges is kept? User tries to rebuild current systemd for Leap but keeps hitting
[ 261s] systemd.x86_64: E: polkit-unauthorized-privilege (Badness: 10000) org.freedesktop.machine1.host-login (auth_admin:auth_admin:yes) [ 261s] The package allows unprivileged users to carry out privileged operations [ 261s] without authentication. This could cause security problems if not done [ 261s] carefully. If the package is intended for inclusion in any SUSE product please [ 261s] open a bug report to request review of the package by the security team
Is there any way to work around it?
The list is in the polkit-default-privs package, you can import that from Factory. If there is something not yet in Factory, follow the instruction in the above message. Ciao, Marcus -- To unsubscribe, e-mail: opensuse-packaging+unsubscribe@opensuse.org To contact the owner, e-mail: opensuse-packaging+owner@opensuse.org
Thu, Mar 10, 2016 at 9:41 AM, Marcus Meissner
On Thu, Mar 10, 2016 at 06:57:49AM +0300, Andrei Borzenkov wrote:
Where list of allowed privileges is kept? User tries to rebuild current systemd for Leap but keeps hitting
[ 261s] systemd.x86_64: E: polkit-unauthorized-privilege (Badness: 10000) org.freedesktop.machine1.host-login (auth_admin:auth_admin:yes) [ 261s] The package allows unprivileged users to carry out privileged operations [ 261s] without authentication. This could cause security problems if not done [ 261s] carefully. If the package is intended for inclusion in any SUSE product please [ 261s] open a bug report to request review of the package by the security team
Is there any way to work around it?
The list is in the polkit-default-privs package, you can import that from Factory.
Well, use did import package from Base:System and added it to BuildRequires but it did not change it. How can he tell OBS to use list from this package? https://build.opensuse.org/project/show/home:pgnd:Base:System https://build.opensuse.org/package/live_build_log/home:pgnd:Base:System/syst... -- To unsubscribe, e-mail: opensuse-packaging+unsubscribe@opensuse.org To contact the owner, e-mail: opensuse-packaging+owner@opensuse.org
Andrei Borzenkov
Well, use did import package from Base:System and added it to BuildRequires but it did not change it. How can he tell OBS to use list from this package?
It's a bit more complicated due to the fact that the list is copied into the rpmlint-mini package (to avoid having to pull polkit-default-privs into every build environment). So you need to rebuild rpmlint-mini in your project. Andreas. -- Andreas Schwab, SUSE Labs, schwab@suse.de GPG Key fingerprint = 0196 BAD8 1CE9 1970 F4BE 1748 E4D4 88E3 0EEA B9D7 "And now for something completely different." -- To unsubscribe, e-mail: opensuse-packaging+unsubscribe@opensuse.org To contact the owner, e-mail: opensuse-packaging+owner@opensuse.org
participants (3)
-
Andreas Schwab
-
Andrei Borzenkov
-
Marcus Meissner