41ee9aa9f8
- Decode file contents for python2 (bsc#1103530) - Check dmidecoder executable on each "smbios" call to avoid race condition (bsc#1101880) - Fix pkg.upgrade reports when dealing with multiversion packages (bsc#1102265) - Accounting for when files in an archive contain non-ascii characters (bsc#1099460) - Fix deprecation warning (bsc#1095507) - Fix (bsc#1065792) - Fix (bsc#108758) - Handle packages with multiple version properly with zypper (bsc#1096514) - Fix file.get_diff regression in 2018.3 (bsc#1098394) - Provide python version mismatch solutions (bsc#1072599) - Fix file.managed binary file utf8 error (bsc#1098394) - Prevent zypper from parsing repo configuration from not .repo files (bsc#1094055) - Add environment variable to know if yum is invoked from Salt (bsc#1057635) - Prevent deprecation warning with salt-ssh (bsc#1095507) - Align SUSE salt-master.service 'LimitNOFILES' limit with upstream Salt - Add 'other' attribute to GECOS fields to avoid inconsistencies with chfn - Collect all versions of installed packages on SUSE and RHEL systems (bsc#1089526) - Prepend current directory when path is just filename (bsc#1095942) - Integration of MSI authentication for azurearm - Adds fix for SUSE Expanded Support os grain detection - Fixes 509x remote signing - Fix for StringIO import in Python2 - Use Adler32 algorithm to compute string checksums (bsc#1102819) - Only do reverse DNS lookup on IPs for salt-ssh (bsc#1104154) - Add support for Python 3.7 - Fix license macro to build on SLE12SP2 - Decode file contents for python2 (bsc#1102013) - Fix for sorting of multi-version packages (bsc#1097174 and bsc#1097413) - Fix mine.get not returning data - workaround for #48020 (bsc#1100142) OBS-URL: https://build.opensuse.org/request/show/636408 OBS-URL: https://build.opensuse.org/package/show/openSUSE:Factory/salt?expand=0&rev=80 |
||
---|---|---|
_lastrevision | ||
_service | ||
.gitattributes | ||
.gitignore | ||
accounting-for-when-files-in-an-archive-contain-non-.patch | ||
activate-all-beacons-sources-config-pillar-grains.patch | ||
add-all_versions-parameter-to-include-all-installed-.patch | ||
add-custom-suse-capabilities-as-grains.patch | ||
add-engine-relaying-libvirt-events.patch | ||
add-environment-variable-to-know-if-yum-is-invoked-f.patch | ||
add-other-attribute-to-gecos-fields-to-avoid-inconsi.patch | ||
add-saltssh-multi-version-support-across-python-inte.patch | ||
add-support-for-python-3.7.patch | ||
align-suse-salt-master.service-limitnofiles-limit-wi.patch | ||
avoid-excessive-syslogging-by-watchdog-cronjob-58.patch | ||
avoid-incomprehensive-message-if-crashes.patch | ||
change-stringio-import-in-python2-to-import-the-clas.patch | ||
decode-file-contents-for-python2-bsc-1102013.patch | ||
do-not-override-jid-on-returners-only-sending-back-t.patch | ||
enable-passing-a-unix_socket-for-mysql-returners-bsc.patch | ||
fall-back-to-pymysql.patch | ||
feat-add-grain-for-all-fqdns.patch | ||
fix-bsc-1065792.patch | ||
fix-decrease-loglevel-when-unable-to-resolve-addr.patch | ||
fix-deprecation-warning-bsc-1095507.patch | ||
fix-diffing-binary-files-in-file.get_diff-bsc-109839.patch | ||
fix-for-ec2-rate-limit-failures.patch | ||
fix-for-errno-0-resolver-error-0-no-error-bsc-108758.patch | ||
fix-for-sorting-of-multi-version-packages-bsc-109717.patch | ||
fix-for-suse-expanded-support-detection.patch | ||
fix-mine.get-not-returning-data-workaround-for-48020.patch | ||
fix-unboundlocalerror-in-file.get_diff.patch | ||
fix-zypper.list_pkgs-to-be-aligned-with-pkg-state.patch | ||
fixed-usage-of-ipaddress.patch | ||
html.tar.bz2 | ||
integration-of-msi-authentication-with-azurearm-clou.patch | ||
only-do-reverse-dns-lookup-on-ips-for-salt-ssh.patch | ||
option-to-merge-current-pillar-with-opts-pillar-duri.patch | ||
prepend-current-directory-when-path-is-just-filename.patch | ||
prevent-zypper-from-parsing-repo-configuration-from-.patch | ||
README.SUSE | ||
remove-old-hack-when-reporting-multiversion-packages.patch | ||
run-salt-api-as-user-salt-bsc-1064520.patch | ||
run-salt-master-as-dedicated-salt-user.patch | ||
salt-tmpfiles.d | ||
salt.changes | ||
salt.spec | ||
show-recommendations-for-salt-ssh-cross-version-pyth.patch | ||
strip-trailing-commas-on-linux-user-gecos-fields.patch | ||
travis.yml | ||
update-documentation.sh | ||
use-adler32-algorithm-to-compute-string-checksums.patch | ||
v2018.3.2.tar.gz | ||
x509-fixes-111.patch | ||
x509-fixes-for-remote-signing-106.patch |
Salt-master as non-root user ============================ With this version of salt the salt-master will run as salt user. Why an extra user ================= While the current setup runs the master as root user, this is considered a security issue and not in line with the other configuration management tools (eg. puppet) which runs as a dedicated user. How can I undo the change ========================= If you would like to make the change before you can do the following steps manually: 1. change the user parameter in the master configuration user: root 2. update the file permissions: as root: chown -R root /etc/salt /var/cache/salt /var/log/salt /var/run/salt 3. restart the salt-master daemon: as root: rcsalt-master restart or systemctl restart salt-master NOTE ==== Running the salt-master daemon as a root user is considers by some a security risk, but running as root, enables the pam external auth system, as this system needs root access to check authentication. For more information: http://docs.saltstack.com/en/latest/ref/configuration/nonroot.html