From 482960d056ec8d624f127bfe9b1c69a4c30c7e34 Mon Sep 17 00:00:00 2001 From: Patrick Schleizer Date: Fri, 10 Jan 2025 10:21:12 -0500 Subject: [PATCH] permission-hardener: move to new state folder `/var/lib/permission-hardener-v2` without migration https://github.com/Kicksecure/security-misc/pull/294 --- debian/security-misc.postinst | 11 ----------- usr/bin/permission-hardener | 2 +- 2 files changed, 1 insertion(+), 12 deletions(-) diff --git a/debian/security-misc.postinst b/debian/security-misc.postinst index 8cbe4d7..d62cebc 100644 --- a/debian/security-misc.postinst +++ b/debian/security-misc.postinst @@ -15,16 +15,6 @@ true " ##################################################################### " -permission_hardening_legacy_state_files() { - if test -d /var/lib/permission-hardener ; then - return 0 - fi - if ! test -d /var/lib/permission-hardening ; then - return 0 - fi - mv --verbose /var/lib/permission-hardening /var/lib/permission-hardener -} - permission_hardening_legacy_config_folder() { if ! test -d /etc/permission-hardening.d ; then return 0 @@ -77,7 +67,6 @@ esac pam-auth-update --package /usr/libexec/security-misc/permission-lockdown -permission_hardening_legacy_state_files permission_hardening diff --git a/usr/bin/permission-hardener b/usr/bin/permission-hardener index 11bdfb9..b2991e0 100755 --- a/usr/bin/permission-hardener +++ b/usr/bin/permission-hardener @@ -19,7 +19,7 @@ set -o errexit -o nounset -o pipefail ## Constants # shellcheck disable=SC2034 log_level=notice -store_dir="/var/lib/permission-hardener" +store_dir="/var/lib/permission-hardener-v2" state_file="${store_dir}/existing_mode/statoverride" dpkg_admindir_parameter_existing_mode="--admindir ${store_dir}/existing_mode" dpkg_admindir_parameter_new_mode="--admindir ${store_dir}/new_mode"