[pkg-gnupg-maint] Bug#852697: Bug#852697: gnupg-agent: automatically starts gpg-agent in root user slice

Daniel Kahn Gillmor dkg at fifthhorseman.net
Tue Apr 25 21:59:37 UTC 2017


Control: reassign 852697 daptup
Control: retitle 852697 daptup: automatically starts gpg-agent in root user slice
Control: affects 852697 + gnupg-agent

On Sun 2017-02-05 10:21:58 +0100, Laurent Bonnaud wrote:
> On 05/02/2017 10:08, Daniel Kahn Gillmor wrote:
>
>> Were you able to isolate what's launching the process?
>
> Yes I finally took the time to test all apt hooks and found the cause: it is 
> /etc/apt/apt.conf.d/11daptup from package daptup.
>
> Should I reassign the bug?

I'm reassigning it now, sorry for the delay.

>> btw, that gpg-agent process is a systemd user service.  when root fully
>> logs out of the machine, that user service should also terminate.
>> perhaps its running might cause you less worry if you know it will get
>> cleaned up at logout?
>
> It is more complicated than that: since I have cron-apt on my system, a new gpg-agent process is spawned automatically each night and does not go away.

so the underlying question is: why does daptup launch gpg-agent?  I
don't think it should be doing anything with GnuPG secret key material.

      --dkg
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 832 bytes
Desc: not available
URL: <http://lists.alioth.debian.org/pipermail/pkg-gnupg-maint/attachments/20170425/2495ce5f/attachment-0001.sig>


More information about the pkg-gnupg-maint mailing list