diff --git a/squid.changes b/squid.changes index ee031f5..922116d 100644 --- a/squid.changes +++ b/squid.changes @@ -1,3 +1,11 @@ +------------------------------------------------------------------- +Thu Oct 8 11:01:44 UTC 2020 - Matthias Gerstner + +- Reinstate permissions macros for pinger binary, because the permissions + package is also responsible for setting up the cap_net_raw capability, + currently a fresh squid install doesn't get a capability bit at all + (bsc#1171569). + ------------------------------------------------------------------- Mon Aug 24 11:38:09 UTC 2020 - Adam Majer diff --git a/squid.spec b/squid.spec index 014feaa..cf38370 100644 --- a/squid.spec +++ b/squid.spec @@ -231,8 +231,7 @@ if [ "$1" -gt "1" ]; then fi %post -# %%set_permissions %%{_sbindir}/basic_pam_auth -# %%set_permissions %%{_sbindir}/pinger +%set_permissions %{_sbindir}/pinger %set_permissions %{_localstatedir}/cache/squid/ %set_permissions %{_localstatedir}/log/squid/ %tmpfiles_create %{_tmpfilesdir}/squid.conf @@ -242,8 +241,7 @@ fi %service_del_preun squid.service %verifyscript -# %%verify_permissions -e %%{_sbindir}/basic_pam_auth -# %%verify_permissions -e %%{_sbindir}/pinger +%verify_permissions -e %{_sbindir}/pinger %verify_permissions -e %{_localstatedir}/cache/squid/ %verify_permissions -e %{_localstatedir}/log/squid/