From b98dd04f92ec1ef49f441b16cd67a60048f745aa Mon Sep 17 00:00:00 2001 From: Frank Steinborn Date: Thu, 23 Feb 2023 12:00:26 +0100 Subject: [PATCH] i2pd: restrict /etc/i2pd permissions It's not a good idea to have /etc/i2pd/*.conf world-readable since it may contain sensitive information. --- srcpkgs/i2pd/template | 6 ++++-- 1 file changed, 4 insertions(+), 2 deletions(-) diff --git a/srcpkgs/i2pd/template b/srcpkgs/i2pd/template index 91e085f41aca..9dcc4c3a67bd 100644 --- a/srcpkgs/i2pd/template +++ b/srcpkgs/i2pd/template @@ -1,7 +1,7 @@ # Template file for 'i2pd' pkgname=i2pd version=2.46.0 -revision=1 +revision=2 build_style=gnu-makefile make_build_args="USE_UPNP=yes" makedepends="zlib-devel boost-devel openssl-devel miniupnpc-devel @@ -19,7 +19,9 @@ conf_files=" /etc/i2pd/tunnels.conf" system_accounts="_i2pd" _i2pd_homedir="/var/lib/i2pd" -make_dirs="/var/lib/i2pd 0700 _i2pd _i2pd" +make_dirs=" +/var/lib/i2pd 0700 _i2pd _i2pd +/etc/i2pd 0750 root _i2pd" case "${XBPS_TARGET_MACHINE}" in x86_64*) ;;