Univention Bugzilla – Bug 36904
Wrong read permissions for /etc/univention/ssl/ucsmaster.ucs.local
Last modified: 2017-08-08 07:10:28 CEST
This should also be fixed for UCS 3.2-4: +++ This bug was initially created as a clone of Bug #36557 +++ In a review to the permissions under /etc/univention/ssl/ucsmaster.ucs.local directory, DC Backup Hosts should but do not have read access to these files: -rw------- 1 root DC Backup Hosts 4479 6. Okt 10:16 cert.pem -rw------- 1 root DC Backup Hosts 3275 6. Okt 10:16 openssl.cnf -rw------- 1 root DC Backup Hosts 887 6. Okt 10:16 private.key -rw------- 1 root DC Backup Hosts 838 6. Okt 10:16 req.pem
When fixing this bug, please reenable ucs-test script 101_permissions_after_renew_certificate_chain and check the results.
This issue has been filed against UCS 3. UCS 3 is out of the normal maintenance and many UCS components have vastly changed in UCS 4. If this issue is still valid, please change the version to a newer UCS version otherwise this issue will be automatically closed in the next weeks.
This issue has been filed against UCS 3.2. UCS 3.2 is out of maintenance and many UCS components have vastly changed in later releases. Thus, this issue is now being closed. If this issue still occurs in newer UCS versions, please use "Clone this bug" or reopen this issue. In this case please provide detailed information on how this issue is affecting you.