Comment 5 for bug 388605

Revision history for this message
Andreas Hasenack (ahasenack) wrote :

We would like to retroactively promote rsyslog-gnutls, a binary package built from src:rsyslog (subject of this completed MIR), into main.

rsyslog-gnutls provides a gnutls plugin which allows rsyslog to encrypt the data it sends to log servers. We believe this is a common scenario, and very much needed for compliance nowadays, and this package should be in main because of that.

rsyslog-gnutls was already part of this MIR, but was left in universe because nothing pulled it into main (dependency or seed change).

I didn't see any comments here in the bug, or in the MIR report (https://wiki.ubuntu.com/MainInclusionReport/rsyslog), that would be specific about rsyslog-gnutls and why it should not be promoted. There was just a list of dependencies, and they were ok for main inclusion, and remain so to this date:

bionic: 8.32.0-1ubuntu4
Depends: libc6 (>= 2.14), libgnutls30 (>= 3.5.6), rsyslog (= 8.32.0-1ubuntu4)
Suggests: gnutls-bin

Depends are all in main, and Suggests is in universe, which is ok.

focal: 8.2001.0-1ubuntu1.1
Depends: libc6 (>= 2.14), libgnutls30 (>= 3.6.12), rsyslog (= 8.2001.0-1ubuntu1.1)
Suggests: gnutls-bin

Same deps.

groovy: 8.2006.0-2ubuntu1
Depends: libc6 (>= 2.14), libgnutls30 (>= 3.6.12), rsyslog (= 8.2006.0-2ubuntu1)
Suggests: gnutls-bin

Same deps.

Hirsute: 8.2102.0-2ubuntu1
Depends: libc6 (>= 2.33), libgnutls30 (>= 3.7.0), rsyslog (= 8.2102.0-2ubuntu1)
Suggests: gnutls-bin

Same deps.

List of rsyslog CVEs in the Ubuntu CVE tracker: https://ubuntu.com/security/cve?q=&package=rsyslog&priority=&version=&status=
None are related to encryption support.