<?xml version="1.0" encoding="UTF-8" standalone="yes" ?>
<!DOCTYPE bugzilla SYSTEM "http://bugs.gentoo.org/bugzilla.dtd">

<bugzilla version="2.22.7"
          urlbase="http://bugs.gentoo.org/"
          maintainer="bugzilla@gentoo.org"
>

    <bug>
          <bug_id>210938</bug_id>
          
          <creation_ts>2008-02-21 03:16 0000</creation_ts>
          <short_desc>dev-db/postgresql - disable strict permission check on ssl key files</short_desc>
          <delta_ts>2008-06-07 20:35:12 0000</delta_ts>
          <reporter_accessible>1</reporter_accessible>
          <cclist_accessible>1</cclist_accessible>
          <classification_id>1</classification_id>
          <classification>Unclassified</classification>
          <product>Gentoo Linux</product>
          <component>Server</component>
          <version>unspecified</version>
          <rep_platform>All</rep_platform>
          <op_sys>Linux</op_sys>
          <bug_status>RESOLVED</bug_status>
          <resolution>FIXED</resolution>
          <bug_file_loc>http://archives.postgresql.org/pgsql-bugs/2007-12/msg00082.php</bug_file_loc>
          
          
          <priority>P2</priority>
          <bug_severity>enhancement</bug_severity>
          <target_milestone>---</target_milestone>
          
          
          
          <everconfirmed>1</everconfirmed>
          <reporter>rjenster@eiszeit.blogdns.net</reporter>
          <assigned_to>pgsql-bugs@gentoo.org</assigned_to>
          

      

      
          <long_desc isprivate="0">
            <who>rjenster@eiszeit.blogdns.net</who>
            <bug_when>2008-02-21 03:16:32 0000</bug_when>
            <thetext>Hi,
please include the following patch that disables the strict permission check on the ssl key files for postgresql. This patch makes it possible to securely share an ssl key between apache/openvpn/ldap and postgres without the need of duplicating it.

See http://archives.postgresql.org/pgsql-bugs/2007-12/msg00082.php for further information.

Regards,
Ruben

Reproducible: Always</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>rjenster@eiszeit.blogdns.net</who>
            <bug_when>2008-02-21 03:17:15 0000</bug_when>
            <thetext>Created an attachment (id=144173)
07-relax-sslkey-permscheck.patch

</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>rjenster@eiszeit.blogdns.net</who>
            <bug_when>2008-02-21 03:22:45 0000</bug_when>
            <thetext>Created an attachment (id=144175)
patch for postgresql-8.0.15.ebuild

patch for postgresql-8.0.15.ebuild that applies 07-relax-sslkey-permscheck.patch</thetext>
          </long_desc>
          <long_desc isprivate="0">
            <who>dev-zero@gentoo.org</who>
            <bug_when>2008-06-07 20:35:12 0000</bug_when>
            <thetext>Done dev-db/postgresql-base.
Thanks!</thetext>
          </long_desc>
      
          <attachment
              isobsolete="0"
              ispatch="1"
              isprivate="0"
          >
            <attachid>144173</attachid>
            <date>2008-02-21 03:17 0000</date>
            <desc>07-relax-sslkey-permscheck.patch</desc>
            <filename>07-relax-sslkey-permscheck.patch</filename>
            <type>text/plain</type>
            <data encoding="base64">ZGlmZiAtdXIgcG9zdGdyZXNxbC04LjAuMTUub3JpZy9zcmMvYmFja2VuZC9saWJwcS9iZS1zZWN1
cmUuYyBwb3N0Z3Jlc3FsLTguMC4xNS9zcmMvYmFja2VuZC9saWJwcS9iZS1zZWN1cmUuYwotLS0g
cG9zdGdyZXNxbC04LjAuMTUub3JpZy9zcmMvYmFja2VuZC9saWJwcS9iZS1zZWN1cmUuYwkyMDA4
LTAyLTIxIDA0OjA2OjA0LjMzNDI4OTIwMyArMDEwMAorKysgcG9zdGdyZXNxbC04LjAuMTUvc3Jj
L2JhY2tlbmQvbGlicHEvYmUtc2VjdXJlLmMJMjAwOC0wMi0yMSAwNDowODo0Ny4zMDk0MjYzMjQg
KzAxMDAKQEAgLTczNyw4ICs3MzcsOCBAQAogCQkgKiBkYXRhIGRpcmVjdG9yeSBwZXJtaXNzaW9u
IGNoZWNrIGluIHBvc3RtYXN0ZXIuYykKIAkJICovCiAjaWYgIWRlZmluZWQoV0lOMzIpICYmICFk
ZWZpbmVkKF9fQ1lHV0lOX18pCi0JCWlmICghU19JU1JFRyhidWYuc3RfbW9kZSkgfHwgKGJ1Zi5z
dF9tb2RlICYgKFNfSVJXWEcgfCBTX0lSV1hPKSkgfHwKLQkJCWJ1Zi5zdF91aWQgIT0gZ2V0ZXVp
ZCgpKQorCQlpZiAoIVNfSVNSRUcoYnVmLnN0X21vZGUpIHx8IChidWYuc3RfbW9kZSAmIChTX0lX
R1JQIHwgU19JUldYTykpIHx8CisJCQkoYnVmLnN0X3VpZCAhPSBnZXRldWlkKCkpICYmIGJ1Zi5z
dF91aWQgIT0gMCkKIAkJCWVyZXBvcnQoRkFUQUwsCiAJCQkJCShlcnJjb2RlKEVSUkNPREVfQ09O
RklHX0ZJTEVfRVJST1IpLAogCQkJCSAgZXJybXNnKCJ1bnNhZmUgcGVybWlzc2lvbnMgb24gcHJp
dmF0ZSBrZXkgZmlsZSBcIiVzXCIiLAo=
</data>        

          </attachment>
          <attachment
              isobsolete="0"
              ispatch="1"
              isprivate="0"
          >
            <attachid>144175</attachid>
            <date>2008-02-21 03:22 0000</date>
            <desc>patch for postgresql-8.0.15.ebuild</desc>
            <filename>postgresql-8.0.15.ebuild.patch</filename>
            <type>text/plain</type>
            <data encoding="base64">LS0tIC91c3IvcG9ydGFnZS9kZXYtZGIvcG9zdGdyZXNxbC9wb3N0Z3Jlc3FsLTguMC4xNS5lYnVp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</data>        

          </attachment>
    </bug>

</bugzilla>