Skip to content

Conversation

@redrampage
Copy link
Contributor

Added another default socket path, that is used in Debian for socket-activated ssh-agent to disable-common.inc.

@kmk3 kmk3 changed the title Add new ssh-agent socket to disable-common.inc ssh: add ${RUNUSER}/openssh_agent socket path Dec 1, 2025
Copy link
Collaborator

@kmk3 kmk3 left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Add the following to allow-ssh.inc:

+noblacklist ${RUNUSER}/openssh_agent
 noblacklist /tmp/ssh-*

Added another default ssh-agent socket path, that is used in Debian for
socket-activated agent.
@redrampage
Copy link
Contributor Author

Thanks for mentioning it.
I've also grepped for agent socket path and added corresponding lines to keepassxc and seahorse profiles.

@netblue30
Copy link
Owner

Merged, thanks for the patch!

@netblue30 netblue30 merged commit 36b0af3 into netblue30:master Dec 4, 2025
3 checks passed
@kmk3
Copy link
Collaborator

kmk3 commented Dec 5, 2025

Thanks for mentioning it. I've also grepped for agent socket path and added
corresponding lines to keepassxc and seahorse profiles.

Good catch, well done.

Looks good.

@kmk3 kmk3 moved this to Done in Release 0.9.78 Dec 5, 2025
@kmk3 kmk3 changed the title ssh: add ${RUNUSER}/openssh_agent socket path profiles: ssh: add ${RUNUSER}/openssh_agent socket path Dec 5, 2025
kmk3 added a commit that referenced this pull request Dec 5, 2025
Misc: The relevant entries were added on commit 4747e0e ("Whitelist
runuser common (#3286)", 2020-03-31).

This is a follow-up to #6975.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants