Gentoo Archives: gentoo-dev

From: Thomas Deutschmann <whissi@g.o>
To: gentoo-dev@l.g.o
Subject: Re: [gentoo-dev] [PATCH] acct-user.eclass: don't modify existing user by default
Date: Mon, 04 Jan 2021 16:18:19
Message-Id: 6876f32c-5ea8-5c99-41c1-7c8963f5a976@gentoo.org
In Reply to: Re: [gentoo-dev] [PATCH] acct-user.eclass: don't modify existing user by default by David Seifert
1 On 2021-01-04 16:55, David Seifert wrote:
2 > This is what we agree on. We need an escape hatch, and it needs to be
3 > off by default. Any sysadmin overriding it gets to keep the pieces, but
4 > they need to have that option.
5
6 See Mike's example again.
7
8 In last chapter of Gentoo's handbook (Finalization) we recommend user to
9 call 'usermod' to put themselves into important groups like wheel or
10 portage.
11
12 Now guess what's happening? Whenever acct-user/portage will get
13 remerged, PM will remove that user from portage group (luckily groups
14 like wheel don't have users...).
15
16 Do you really want to extend handbook and tell everyone, "OK, as last
17 step, please create an overlay and fork acct-user/portage...". In case
18 the answer will be yes, we now have successfully killed the idea of
19 allowing maintainers to fix a user/group if this will ever be necessary
20 which will add some kind of slap stick to the whole idea.
21
22 That's why I am saying that we don't just need an opt-out option, that's
23 why I am argue that all this stuff has to be opt-in by default. It's
24 something special and unique in Gentoo.
25
26
27 --
28 Regards,
29 Thomas Deutschmann / Gentoo Linux Developer
30 fpr: C4DD 695F A713 8F24 2AA1 5638 5849 7EE5 1D5D 74A5

Attachments

File name MIME type
OpenPGP_signature.asc application/pgp-signature

Replies