package updates not fully filtered by wrapper
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
aide (Ubuntu) |
New
|
Undecided
|
Unassigned |
Bug Description
We run AIDE on systems that use unattended-upgrade to install security patches. When the upgrades run, we often get large email reports from AIDE. We have FILTERUPDATES=yes in /etc/defaults/aide but the filtering seems to not be very effective a lot of the time, especially when there are kernel updates. Excerpt of one of the reports is included below.
Expected behavior is that the report only shows changes that weren't made as a result of package updates, and that no email is sent if all the changes were from package updates.
Summary:
Total number of entries: 182042
Added entries: 27157 (filtered: 0)
Removed entries: 0 (filtered: 0)
Changed entries: 32 (filtered: 947)
The following package changes were detected and were filtered from this mail:
libtiff5:amd64 (upgrade)
linux-libc-
linux-aws:amd64 (upgrade)
linux-image-
linux-headers-
-------
Added entries (filtered: 0):
-------
f++++++++++++++++: /boot/System.
f++++++++++++++++: /boot/config-
f++++++++++++++++: /boot/initrd.
f++++++++++++++++: /boot/vmlinuz-
f++++++++++++++++: /lib/modprobe.
d++++++++++++++++: /lib/modules/
d++++++++++++++++: /lib/modules/
d++++++++++++++++: /lib/modules/
d++++++++++++++++: /lib/modules/
d++++++++++++++++: /lib/modules/
d++++++++++++++++: /lib/modules/
f++++++++++++++++: /lib/modules/
f++++++++++++++++: /lib/modules/
f++++++++++++++++: /lib/modules/
f++++++++++++++++: /lib/modules/
f++++++++++++++++: /lib/modules/
ProblemType: Bug
DistroRelease: Ubuntu 18.04
Package: aide 0.16-3
ProcVersionSign
Uname: Linux 4.15.0-1031-aws x86_64
ApportVersion: 2.20.9-0ubuntu7.5
Architecture: amd64
Date: Wed Mar 13 14:38:12 2019
Ec2AMI: ami-055afcf1091
Ec2AMIManifest: (unknown)
Ec2Availability
Ec2InstanceType: t3.micro
Ec2Kernel: unavailable
Ec2Ramdisk: unavailable
ProcEnviron:
TERM=xterm-
PATH=(custom, no user)
XDG_RUNTIME_
LANG=C.UTF-8
SHELL=/bin/bash
SourcePackage: aide
UpgradeStatus: No upgrade log present (probably fresh install)