guix-commits
[Top][All Lists]
Advanced

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

05/08: PRELIMINARY: Add three programs to %setuid-programs.


From: Mark H. Weaver
Subject: 05/08: PRELIMINARY: Add three programs to %setuid-programs.
Date: Wed, 19 Aug 2015 03:57:15 +0000

mhw pushed a commit to branch wip-network-manager
in repository guix.

commit 02a3075db71419835c48e7105d507f150bc53f0e
Author: Mark H Weaver <address@hidden>
Date:   Mon Jul 27 00:09:14 2015 -0400

    PRELIMINARY: Add three programs to %setuid-programs.
---
 gnu/system.scm |   11 +++++++++--
 1 files changed, 9 insertions(+), 2 deletions(-)

diff --git a/gnu/system.scm b/gnu/system.scm
index ea6e9c1..a809451 100644
--- a/gnu/system.scm
+++ b/gnu/system.scm
@@ -42,6 +42,8 @@
   #:use-module (gnu packages man)
   #:use-module (gnu packages compression)
   #:use-module (gnu packages firmware)
+  #:use-module (gnu packages glib)
+  #:use-module (gnu packages polkit)
   #:autoload   (gnu packages cryptsetup) (cryptsetup)
   #:use-module (gnu services)
   #:use-module (gnu services dmd)
@@ -637,13 +639,18 @@ use 'plain-file' instead~%")
 
 (define %setuid-programs
   ;; Default set of setuid-root programs.
-  (let ((shadow (@ (gnu packages admin) shadow)))
+  (let ((shadow (@ (gnu packages admin) shadow))
+        ;; XXX Remove this hack when the main 'dbus' package is fixed.
+        (dbus (@@ (gnu packages glib) dbus-fixed)))
     (list #~(string-append #$shadow "/bin/passwd")
           #~(string-append #$shadow "/bin/su")
           #~(string-append #$inetutils "/bin/ping")
           #~(string-append #$inetutils "/bin/ping6")
           #~(string-append #$sudo "/bin/sudo")
-          #~(string-append #$fuse "/bin/fusermount"))))
+          #~(string-append #$fuse "/bin/fusermount")
+          #~(string-append #$dbus "/libexec/dbus-daemon-launch-helper")  ; XXX 
should be group "messagebus" and mode 4550
+          #~(string-append #$polkit "/bin/pkexec")
+          #~(string-append #$polkit "/lib/polkit-1/polkit-agent-helper-1"))))
 
 (define %sudoers-specification
   ;; Default /etc/sudoers contents: 'root' and all members of the 'wheel'



reply via email to

[Prev in Thread] Current Thread [Next in Thread]