Please create swtpm user/group
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
swtpm (Ubuntu) |
Fix Released
|
Undecided
|
Unassigned |
Bug Description
As outlined in bug 1948880 the intention is to utilize the user "swtpm" instead of "tss" to avoid too much permissions of "tss" which is in use in other places.
But I realized that dependencies using swtpm would mostly be to package "swtpm" and not "swtpm-tools".
Therefore I'd ask to have package swtpm to establish that user instead of swtpm-tools.
Furthermore (I'll flag that in the MIR bug 1948748) the postinst uses adduser without a dependency which is Build-Essential but not Essential and therefore needs a dependency.
Lintian:
W: swtpm-tools: maintainer-
And while this will touch postinst, also as heads up:
W: swtpm source: maintainer-
summary: |
- establish user swtpm, by the base package + Please create swtpm user/group |
You have said in 1948748 that libvirt doesn't need swtpm-tools, but that was not my experience in testing on impish: through virt-manager, a VM with swtpm failed to initialize without the swtpm_setup command present, I had to install the swtpm-tools package to get it to work. So I don't think it's correct that things don't need a dependency on swtpm-tools, and if not, it doesn't seem necessary to move the user creation to the swtpm package.