Gentoo Websites Logo
Go to: Gentoo Home Documentation Forums Lists Bugs Planet Store Wiki Get Gentoo!

Bug 508498

Summary: app-admin/puppet(-3.4.3-r1): /etc/puppet is 0750 root:root, unreadable for standalone puppetmaster
Product: Gentoo Linux Reporter: Alex Legler (RETIRED) <a3li>
Component: [OLD] ServerAssignee: Matthew Thode ( prometheanfire ) <prometheanfire>
Status: RESOLVED FIXED    
Severity: normal CC: sysadmin
Priority: Normal    
Version: unspecified   
Hardware: All   
OS: Linux   
Whiteboard:
Package list:
Runtime testing required: ---

Description Alex Legler (RETIRED) archtester gentoo-dev Security 2014-04-23 13:32:04 UTC
/etc/puppet is installed as 0750, belonging to root:root, while the standalone puppetmaster runs under the puppet user.

This results in rather misleading errors: "Error: Could not request certificate: Error 400 on SERVER: Permission denied - /etc/puppet/auth.conf"

A chgrp puppet /etc/puppet fixes that.
Comment 1 Matthew Thode ( prometheanfire ) archtester Gentoo Infrastructure gentoo-dev Security 2014-05-14 06:36:40 UTC
fixed in 3.5.1

made the dir owner puppet for /etc/puppet