[systemd-bugs] [Bug 81626] networkd lacks access to hostnamed

bugzilla-daemon at freedesktop.org bugzilla-daemon at freedesktop.org
Wed Aug 20 06:06:59 PDT 2014


https://bugs.freedesktop.org/show_bug.cgi?id=81626

--- Comment #7 from Lennart Poettering <lennart at poettering.net> ---
(In reply to comment #6)
> > Hmm? All kinds of packages install files in
> > /usr/share/polkit-1/rules.d/, and I think
> > that's totally and OK thing to do.
> 
> That's a weird excuse, but please go ahead. I'm just relying on polkit docs
> here, which say (polkit(8)):
> 
> "In particular, applications, mechanisms and general-purpose operating
> systems must never include any authorization rules."
> 
> If that rule was never enforced, nor considered valuable, there is no reason
> to adhere to it.

I am a bit puzzled by that. What's the rationale here?

I mean this is neither current practice, nor do I get why? I mean, we need some
way how we can ship vendor supplied default policies, and I am pretty sure we
shouldn't come up with a a third layer of policy to enforce stuff like this.

Also, why is there even /usr/share/polkit-1/rules.d/ if it's not for the
package vendor to fill with stuff?

I guess I should ping davidz about this.

-- 
You are receiving this mail because:
You are the QA Contact for the bug.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://lists.freedesktop.org/archives/systemd-bugs/attachments/20140820/8aaf69d1/attachment.html>


More information about the systemd-bugs mailing list