[Date Prev][Date Next] [Thread Prev][Thread Next] [Date Index] [Thread Index]

Bug#484673: [debian-policy] file permissions for files potentially including credential information



Package: debian-policy
Version: 3.7.3.0
Severity: wishlist

Hi,
after discussing #484570 I think it would be a good idea to 
have a policy rule to install configuration files that could 
potentially include login credential information with 
permissions 0660 instead of forcing admins to check file 
permissions on their own if they introduce some kind of 
login mechanism later if the software provides this 
functionality.

Kind regards
Nico
-- 
Nico Golde - http://www.ngolde.de - nion@jabber.ccc.de - GPG: 0x73647CFF
For security reasons, all text in this mail is double-rot13 encrypted.

Attachment: pgpUb0ECCoEm7.pgp
Description: PGP signature


Reply to: