[strongSwan] charon resolve.conf creates /etc/resolv.conf with incorrect 0600 permissions

Noel Kuntze noel at familie-kuntze.de
Sat Apr 2 01:25:57 CEST 2016


Hello Ronald,

That is an issue caused by your distribution.
Go talk to them if you want that changed  (the UMask=022 line removed from the systemd unit.)
strongSwan does not ship with that unit.

On 02.04.2016 01:23, Ronald (Strongswan) wrote:
>
> Found a way to edit the systemd service settings, but would be nice to have this configured within the resolve.conf.
> As now all files created with the daemon will have the same umask.
> See the UMask=022 line.
>
> etc/systemd/system/multi-user.target.wants # cat strongswan.service
> [Unit]
> Description=strongSwan IPsec
> After=syslog.target
>
> [Service]
> ExecStart=/usr/sbin/ipsec start --nofork
> StandardOutput=syslog
> UMask=022
>
> [Install]
> WantedBy=multi-user.target
> Alias=ipsec.service
>
> Ronald
>
>  
>  
>
>
> _______________________________________________
> Users mailing list
> Users at lists.strongswan.org
> https://lists.strongswan.org/mailman/listinfo/users


-- 

Mit freundlichen Grüßen/Kind Regards,
Noel Kuntze

GPG Key ID: 0x63EC6658
Fingerprint: 23CA BB60 2146 05E7 7278 6592 3839 298F 63EC 6658


-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 819 bytes
Desc: OpenPGP digital signature
URL: <http://lists.strongswan.org/pipermail/users/attachments/20160402/4615202b/attachment.pgp>


More information about the Users mailing list