.files
.meta
.rev
3005.1-implement-zypper-removeptf-573.patch
3006.0-prevent-_pygit2.giterror-error-loading-known_.patch
README.SUSE
_lastrevision
_multibuild
_service
activate-all-beacons-sources-config-pillar-grains.patch
add-custom-suse-capabilities-as-grains.patch
add-environment-variable-to-know-if-yum-is-invoked-f.patch
add-migrated-state-and-gpg-key-management-functions-.patch
add-publish_batch-to-clearfuncs-exposed-methods.patch
add-salt-ssh-support-with-venv-salt-minion-3004-493.patch
add-sleep-on-exception-handling-on-minion-connection.patch
add-standalone-configuration-file-for-enabling-packa.patch
add-support-for-gpgautoimport-539.patch
allow-all-primitive-grain-types-for-autosign_grains-.patch
allow-kwargs-for-fileserver-roots-update-bsc-1218482.patch
allow-vendor-change-option-with-zypper.patch
async-batch-implementation.patch
avoid-conflicts-with-dependencies-versions-bsc-12116.patch
avoid-excessive-syslogging-by-watchdog-cronjob-58.patch
bsc-1176024-fix-file-directory-user-and-group-owners.patch
change-the-delimeters-to-prevent-possible-tracebacks.patch
control-the-collection-of-lvm-grains-via-config.patch
debian-info_installed-compatibility-50453.patch
decode-oscap-byte-stream-to-string-bsc-1219001.patch
define-__virtualname__-for-transactional_update-modu.patch
dereference-symlinks-to-set-proper-__cli-opt-bsc-121.patch
discover-both-.yml-and-.yaml-playbooks-bsc-1211888.patch
dnfnotify-pkgset-plugin-implementation-3002.2-450.patch
do-not-fail-on-bad-message-pack-message-bsc-1213441-.patch
do-not-load-pip-state-if-there-is-no-3rd-party-depen.patch
don-t-use-shell-sbin-nologin-in-requisites.patch
drop-serial-from-event.unpack-in-cli.batch_async.patch
early-feature-support-config.patch
enable-keepalive-probes-for-salt-ssh-executions-bsc-.patch
enable-passing-a-unix_socket-for-mysql-returners-bsc.patch
enhance-openscap-module-add-xccdf_eval-call-386.patch
fix-bsc-1065792.patch
fix-calculation-of-sls-context-vars-when-trailing-do.patch
fix-cve-2023-34049-bsc-1215157.patch
fix-cve-2024-22231-and-cve-2024-22232-bsc-1219430-bs.patch
fix-for-suse-expanded-support-detection.patch
fix-gitfs-__env__-and-improve-cache-cleaning-bsc-119.patch
fix-issue-2068-test.patch
fix-missing-minion-returns-in-batch-mode-360.patch
fix-optimization_order-opt-to-prevent-test-fails.patch
fix-ownership-of-salt-thin-directory-when-using-the-.patch
fix-problematic-tests-and-allow-smooth-tests-executi.patch
fix-regression-multiple-values-for-keyword-argument-.patch
fix-regression-with-depending-client.ssh-on-psutil-b.patch
fix-salt-ssh-opts-poisoning-bsc-1197637-3004-501.patch
fix-salt-warnings-and-testuite-for-python-3.11-635.patch
fix-salt.utils.stringutils.to_str-calls-to-make-it-w.patch
fix-some-issues-detected-in-salt-support-cli-module-.patch
fix-tests-failures-and-errors-when-detected-on-vm-ex.patch
fix-tests-to-make-them-running-with-salt-testsuite.patch
fix-the-aptpkg.py-unit-test-failure.patch
fix-the-regression-for-yumnotify-plugin-456.patch
fix-the-regression-of-user.present-state-when-group-.patch
fix-traceback.print_exc-calls-for-test_pip_state-432.patch
fix-utf8-handling-in-pass-renderer-and-make-it-more-.patch
fix-version-detection-and-avoid-building-and-testing.patch
fixed-gitfs-cachedir_basename-to-avoid-hash-collisio.patch
fixed-keyerror-in-logs-when-running-a-state-that-fai.patch
fixes-for-python-3.10-502.patch
implement-the-calling-for-batch-async-from-the-salt-.patch
improve-pip-target-override-condition-with-venv_pip_.patch
improve-salt.utils.json.find_json-bsc-1213293.patch
include-aliases-in-the-fqdns-grains.patch
info_installed-works-without-status-attr-now.patch
let-salt-ssh-use-platform-python-binary-in-rhel8-191.patch
make-aptpkg.list_repos-compatible-on-enabled-disable.patch
make-importing-seco.range-thread-safe-bsc-1211649.patch
make-master_tops-compatible-with-salt-3000-and-older.patch
make-setup.py-script-to-not-require-setuptools-9.1.patch
make-sure-configured-user-is-properly-set-by-salt-bs.patch
make-sure-the-file-client-is-destroyed-upon-used.patch
mark-salt-3006-as-released-586.patch
only-call-native_str-on-curl_debug-message-in-tornad.patch
pass-the-context-to-pillar-ext-modules.patch
prefer-unittest.mock-for-python-versions-that-are-su.patch
prevent-affection-of-ssh.opts-with-lazyloader-bsc-11.patch
prevent-pkg-plugins-errors-on-missing-cookie-path-bs.patch
prevent-possible-exceptions-on-salt.utils.user.get_g.patch
prevent-shell-injection-via-pre_flight_script_args-4.patch
read-repo-info-without-using-interpolation-bsc-11356.patch
restore-default-behaviour-of-pkg-list-return.patch
return-the-expected-powerpc-os-arch-bsc-1117995.patch
revert-fixing-a-use-case-when-multiple-inotify-beaco.patch
revert-make-sure-configured-user-is-properly-set-by-.patch
revert-usage-of-long-running-req-channel-bsc-1213960.patch
run-salt-api-as-user-salt-bsc-1064520.patch
run-salt-master-as-dedicated-salt-user.patch
salt-tmpfiles.d
salt.changes
salt.spec
save-log-to-logfile-with-docker.build.patch
skip-package-names-without-colon-bsc-1208691-578.patch
switch-firewalld-state-to-use-change_interface.patch
switch-oscap-encoding-to-utf-8-639.patch
temporary-fix-extend-the-whitelist-of-allowed-comman.patch
tornado-fix-an-open-redirect-in-staticfilehandler-cv.patch
transactional_update.conf
travis.yml
update-__pillar__-during-pillar_refresh.patch
update-documentation.sh
update-target-fix-for-salt-ssh-to-process-targets-li.patch
use-adler32-algorithm-to-compute-string-checksums.patch
use-rlock-to-avoid-deadlocks-in-salt-ssh.patch
use-salt-bundle-in-dockermod.patch
use-salt-call-from-salt-bundle-with-transactional_up.patch
write-salt-version-before-building-when-using-with-s.patch
x509-fixes-111.patch
zypper-pkgrepo-alreadyconfigured-585.patch
zypperpkg-ignore-retcode-104-for-search-bsc-1176697-.patch
html.tar.bz2
v3006.0.tar.gz
README.SUSE
Salt-master as non-root user ============================ With this version of salt the salt-master will run as salt user. Why an extra user ================= While the current setup runs the master as root user, this is considered a security issue and not in line with the other configuration management tools (eg. puppet) which runs as a dedicated user. How can I undo the change ========================= If you would like to make the change before you can do the following steps manually: 1. change the user parameter in the master configuration user: root 2. update the file permissions: as root: chown -R root /etc/salt /var/cache/salt /var/log/salt /var/run/salt 3. restart the salt-master daemon: as root: rcsalt-master restart or systemctl restart salt-master NOTE ==== Running the salt-master daemon as a root user is considers by some a security risk, but running as root, enables the pam external auth system, as this system needs root access to check authentication. For more information: http://docs.saltstack.com/en/latest/ref/configuration/nonroot.html