From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from lists.gentoo.org (pigeon.gentoo.org [208.92.234.80]) by finch.gentoo.org (Postfix) with ESMTP id 0C8D81380DC for ; Thu, 6 Feb 2014 00:23:15 +0000 (UTC) Received: from pigeon.gentoo.org (localhost [127.0.0.1]) by pigeon.gentoo.org (Postfix) with SMTP id AF036E0D13; Thu, 6 Feb 2014 00:23:09 +0000 (UTC) Received: from smtp.gentoo.org (smtp.gentoo.org [140.211.166.183]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by pigeon.gentoo.org (Postfix) with ESMTPS id 8ADF9E0CF8 for ; Thu, 6 Feb 2014 00:23:08 +0000 (UTC) Received: from localhost (localhost [127.0.0.1]) by smtp.gentoo.org (Postfix) with ESMTP id D165E33F92E for ; Thu, 6 Feb 2014 00:23:07 +0000 (UTC) X-Virus-Scanned: by amavisd-new using ClamAV at gentoo.org X-Spam-Flag: NO X-Spam-Score: 3.117 X-Spam-Level: *** X-Spam-Status: No, score=3.117 tagged_above=-999 required=5.5 tests=[AWL=0.078, DKIM_ADSP_CUSTOM_MED=0.001, FREEMAIL_FROM=0.001, FSL_HELO_BARE_IP_2=1.538, NML_ADSP_CUSTOM_MED=1.2, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_NUMERIC_HELO=0.865, RP_MATCHES_RCVD=-0.564, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=no Received: from smtp.gentoo.org ([IPv6:::ffff:127.0.0.1]) by localhost (smtp.gentoo.org [IPv6:::ffff:127.0.0.1]) (amavisd-new, port 10024) with ESMTP id h6TKYaY8Z_Wo for ; Thu, 6 Feb 2014 00:23:02 +0000 (UTC) Received: from plane.gmane.org (plane.gmane.org [80.91.229.3]) (using TLSv1 with cipher AES256-SHA (256/256 bits)) (No client certificate requested) by smtp.gentoo.org (Postfix) with ESMTPS id 3229C33F880 for ; Thu, 6 Feb 2014 00:23:01 +0000 (UTC) Received: from list by plane.gmane.org with local (Exim 4.69) (envelope-from ) id 1WBCk4-0001C0-BJ for gentoo-user@gentoo.org; Thu, 06 Feb 2014 01:22:56 +0100 Received: from 206.125.41.89 ([206.125.41.89]) by main.gmane.org with esmtp (Gmexim 0.1 (Debian)) id 1AlnuQ-0007hv-00 for ; Thu, 06 Feb 2014 01:22:56 +0100 Received: from w41ter by 206.125.41.89 with local (Gmexim 0.1 (Debian)) id 1AlnuQ-0007hv-00 for ; Thu, 06 Feb 2014 01:22:56 +0100 X-Injected-Via-Gmane: http://gmane.org/ To: gentoo-user@lists.gentoo.org From: walt Subject: [gentoo-user] Re: going from systemd to udev Date: Wed, 05 Feb 2014 16:22:48 -0800 Message-ID: References: <20140204195807.GG6850@syscon7.ed.shawcable.net> <52F15ED4.7060409@sporkbox.us> <87siryldes.fsf@nyu.edu> <52F1777B.9080200@gmail.com> Precedence: bulk List-Post: List-Help: List-Unsubscribe: List-Subscribe: List-Id: Gentoo Linux mail X-BeenThere: gentoo-user@lists.gentoo.org Reply-to: gentoo-user@lists.gentoo.org Mime-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit X-Complaints-To: usenet@ger.gmane.org X-Gmane-NNTP-Posting-Host: 206.125.41.89 User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:24.0) Gecko/20100101 Thunderbird/24.1.1 In-Reply-To: X-Archives-Salt: 45a73ea4-13ac-4bb3-8063-35fc0d29b387 X-Archives-Hash: 22d8506aec68192633510e21a324df63 On 02/04/2014 04:10 PM, Canek Peláez Valdés wrote: > On Tue, Feb 4, 2014 at 5:27 PM, walt wrote: >> I'm sure that unsetting the consolekit useflag (when I switched to systemd) >> resulted in some non-MicroSoft behavior, e.g. I now need to authenticate as >> root when plugging or ejecting a USB stick, and yet again when I poweroff or >> reboot the machine > > This does not happen with GNOME 3. At all. The only time I'm asked for > my root password is when I add or remove a printer, and > app-admin/system-config-printer-gnome has been doing this since the > very beginning. I'm still hoping that someone fix that thing. > > With GNOME+systemd (and therefore, logind), the seat0 user gets > ownership of all removable devices (except printers, see above), and > the hardware buttons (poweroff, reset, suspend, etc.) No root password > asked. Ever. > > You can see your seat with loginctl; if your seat is not seat0, that's > why your password is being asked. If it's seat0, then something else > is going on. Do you have pam_systemd.so enabled in /etc/pam.d? I am seat0 (I forgot about loginctl, thanks) but I'm not sure what you mean by "enabled in /etc/pam.d". Many months ago I remember being confused by the last line of system-auth: #cat /etc/pam.d/system-auth auth required pam_env.so auth sufficient pam_ssh.so auth required pam_unix.so try_first_pass likeauth nullok auth optional pam_permit.so account required pam_unix.so account optional pam_permit.so password required pam_cracklib.so difok=2 minlen=8 dcredit=2 ocredit=2 retry=3 password required pam_unix.so try_first_pass use_authtok nullok sha512 shadow password optional pam_permit.so session optional pam_ssh.so session required pam_limits.so session required pam_env.so session required pam_unix.so session optional pam_permit.so -session optional pam_systemd.so I don't understand the meaning of the '-' in the last line. I didn't put it there, except possibly by accident when falling asleep at the keyboard :)