From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mp12.migadu.com ([2001:41d0:2:bcc0::]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)) by ms5.migadu.com with LMTPS id GNPvKUdk8WK3VwEAbAwnHQ (envelope-from ) for ; Mon, 08 Aug 2022 21:30:15 +0200 Received: from aspmx1.migadu.com ([2001:41d0:2:bcc0::]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)) by mp12.migadu.com with LMTPS id wOLTKUdk8WJiLgEAauVa8A (envelope-from ) for ; Mon, 08 Aug 2022 21:30:15 +0200 Received: from lists.gnu.org (lists.gnu.org [209.51.188.17]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by aspmx1.migadu.com (Postfix) with ESMTPS id 4CE9717600 for ; Mon, 8 Aug 2022 21:30:15 +0200 (CEST) Received: from localhost ([::1]:32892 helo=lists1p.gnu.org) by lists.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1oL8S6-0008Gc-21 for larch@yhetil.org; Mon, 08 Aug 2022 15:30:14 -0400 Received: from eggs.gnu.org ([2001:470:142:3::10]:37494) by lists.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1oL8Rv-0008G6-2Z for guix-patches@gnu.org; Mon, 08 Aug 2022 15:30:03 -0400 Received: from debbugs.gnu.org ([209.51.188.43]:52284) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_128_GCM_SHA256:128) (Exim 4.90_1) (envelope-from ) id 1oL8Ru-0000pf-OR for guix-patches@gnu.org; Mon, 08 Aug 2022 15:30:02 -0400 Received: from Debian-debbugs by debbugs.gnu.org with local (Exim 4.84_2) (envelope-from ) id 1oL8Ru-0005gO-Fc for guix-patches@gnu.org; Mon, 08 Aug 2022 15:30:02 -0400 X-Loop: help-debbugs@gnu.org Subject: [bug#56699] [PATCH v2] gnu: greetd-service-type: Add greeter-extra-groups config field. Resent-From: muradm Original-Sender: "Debbugs-submit" Resent-CC: guix-patches@gnu.org Resent-Date: Mon, 08 Aug 2022 19:30:02 +0000 Resent-Message-ID: Resent-Sender: help-debbugs@gnu.org X-GNU-PR-Message: followup 56699 X-GNU-PR-Package: guix-patches X-GNU-PR-Keywords: patch To: Liliana Marie Prikler Cc: "\(" , 56699@debbugs.gnu.org Received: via spool by 56699-submit@debbugs.gnu.org id=B56699.165998695021749 (code B ref 56699); Mon, 08 Aug 2022 19:30:02 +0000 Received: (at 56699) by debbugs.gnu.org; 8 Aug 2022 19:29:10 +0000 Received: from localhost ([127.0.0.1]:42033 helo=debbugs.gnu.org) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1oL8R3-0005eh-DD for submit@debbugs.gnu.org; Mon, 08 Aug 2022 15:29:09 -0400 Received: from nomad-cl1.staging.muradm.net ([139.162.159.157]:52776 helo=nomad-cl1.muradm.net) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1oL8R1-0005eF-7S for 56699@debbugs.gnu.org; Mon, 08 Aug 2022 15:29:07 -0400 Received: from localhost ([127.0.0.1]:45792) by nomad-cl1.muradm.net with esmtps (TLS1.3) tls TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384 (Exim 4.96) (envelope-from ) id 1oL8QM-00026a-2J; Mon, 08 Aug 2022 19:28:26 +0000 DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=muradm.net; s=mail; h=Content-Type:MIME-Version:Message-ID:In-reply-to:Date:Subject:Cc:To :From:References:Sender:Reply-To:Content-Transfer-Encoding:Content-ID: Content-Description:Resent-Date:Resent-From:Resent-Sender:Resent-To:Resent-Cc :Resent-Message-ID:List-Id:List-Help:List-Unsubscribe:List-Subscribe: List-Post:List-Owner:List-Archive; bh=5Rw59od6HpHxqFSNdFMtsdH9slULq+uXxv2Yips+z+Q=; b=xpwT1uJWXWw6Rmq956W7eHeElR 4+hkqJ3OSWKk3bVaAUY/2e/VS9O9zuVwM7ItGEWGruHivlE/FAVDU0kNfXd/4QxQTfd3fLViveLvH FzoBTJNL/0pnDkSuBaZ3RzN8JxYAKq6/WBuowwEO8DmbBi5g5Q4F5UNz2gyMBhUybrF/umvV/rtln Bnt+DI0txK1miOQtid5WEWTbpE61hLPgDg0EC1PJz+O6cKtMckSiM1sigWG6/gUbR3FKvCIsC85tu ocgbVjpcl79pYJiuViW2XqlHw3xirMtlTnuX8NCyY8W6YwGNp67B96cG6bM/uKa2fxYkl3X7kACJL kjQaEhdZzo7s6W2zhglmGhHPmIOIhuFCip3hwnwgZRUIWUYQkN1jFhdXlF0KVCxQv5UUajEyOvbbW kPAsn3/EkRHIEONRSMCKb3vT4phI6C3QRzh0fwAeL3BMXNuxhab39VJZbxZx074bGLpbz7PZE3/Rr Z08aqyg3TyiuWUi2H85e68uX; Received: from muradm by localhost with local (Exim 4.96) (envelope-from ) id 1oL8Qo-0006hb-2z; Mon, 08 Aug 2022 22:28:54 +0300 References: <874jyn20et.fsf@muradm.net> <20220807214804.22323-1-mail@muradm.net> <1d138ba85a305947acc267d995179effd6be0edd.camel@ist.tugraz.at> User-agent: mu4e 1.8.7; emacs 29.0.50 From: muradm Date: Mon, 08 Aug 2022 22:27:40 +0300 In-reply-to: <1d138ba85a305947acc267d995179effd6be0edd.camel@ist.tugraz.at> Message-ID: <87edxqzg95.fsf@muradm.net> MIME-Version: 1.0 Content-Type: multipart/signed; boundary="==-=-="; micalg=pgp-sha256; protocol="application/pgp-signature" X-BeenThere: debbugs-submit@debbugs.gnu.org X-Mailman-Version: 2.1.18 Precedence: list X-BeenThere: guix-patches@gnu.org List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: guix-patches-bounces+larch=yhetil.org@gnu.org Sender: "Guix-patches" X-Migadu-Flow: FLOW_IN X-Migadu-To: larch@yhetil.org X-Migadu-Country: US ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=yhetil.org; s=key1; t=1659987015; h=from:from:sender:sender:reply-to:subject:subject:date:date: message-id:message-id:to:to:cc:cc:mime-version:mime-version: content-type:content-type:resent-cc:resent-from:resent-sender: resent-message-id:in-reply-to:in-reply-to:references:references: list-id:list-help:list-unsubscribe:list-subscribe:list-post: dkim-signature; bh=5Rw59od6HpHxqFSNdFMtsdH9slULq+uXxv2Yips+z+Q=; b=hGDDR5Gy3/f8XbPx2wusOFTAMCbMb+WgQV3Hcc1qxGBwC1zyXq0HI1AiZbRvG56YmJRBfM jHmPqLJeV24Gcoy4hB3PnU710ik0zPMcMhZKSAm6FXY0bT/cLz+FN/QjsyXOcV8rFFCVRw oJIWqg/EHv5EcK+N8VZ2aXE7pq8ow8QK2vteAY3vbxdn+FqHxb0f8udvly3aA64GD3B3Du xT5mJbNDyuPl5M6OdZv0z5aw45cMLtlpOGrD6/f2wz5opiCcFGUTt1wSRrjkZD1HEM5BX/ lkFNZdHyWb752r+p+XOo8kKOxuLOWdSV3DoJWbOmxQ7GUSSWt6wf1wmnQcAGcQ== ARC-Seal: i=1; s=key1; d=yhetil.org; t=1659987015; a=rsa-sha256; cv=none; b=d11EqmMy4Yq6jUuMssJjZgK1zfycZWJc4uWZYPnaKHx4bR37j0WjoQswpcDRu7vM5ZSt+m 4bh0UHwbbWJL1zTURfztLiNgo2Z6N7b63jJAz9yR5hOJRa77nfEqFqYA+ryOcHuIXNiyQA vYd/Rj2wa1WXhWQtoELRdKmzxT1OWeA0GwgfsAv/8Iio5v7iOuX/2BSjhtkc6LO/PSQD/2 ClEYV7fFpRSUR0nOXBCC4UWplxPi/89+D4UF9D6W2fqcRFlQiNtGJ3qyDMtrZaFrBbwwkF +smakP+8oxyTX29DRx2gybOAGGY483lzh9akCwI5w0vJ+gGSd4PtS8KkietvRw== ARC-Authentication-Results: i=1; aspmx1.migadu.com; dkim=fail ("headers rsa verify failed") header.d=muradm.net header.s=mail header.b=xpwT1uJW; dmarc=none; spf=pass (aspmx1.migadu.com: domain of "guix-patches-bounces+larch=yhetil.org@gnu.org" designates 209.51.188.17 as permitted sender) smtp.mailfrom="guix-patches-bounces+larch=yhetil.org@gnu.org" X-Migadu-Spam-Score: -1.49 Authentication-Results: aspmx1.migadu.com; dkim=fail ("headers rsa verify failed") header.d=muradm.net header.s=mail header.b=xpwT1uJW; dmarc=none; spf=pass (aspmx1.migadu.com: domain of "guix-patches-bounces+larch=yhetil.org@gnu.org" designates 209.51.188.17 as permitted sender) smtp.mailfrom="guix-patches-bounces+larch=yhetil.org@gnu.org" X-Migadu-Queue-Id: 4CE9717600 X-Spam-Score: -1.49 X-Migadu-Scanner: scn0.migadu.com X-TUID: 8CrIWnZxylaQ --==-=-= Content-Type: multipart/mixed; boundary="=-=-=" --=-=-= Content-Type: text/x-patch Content-Disposition: inline; filename=v3-0001-gnu-greetd-service-type-Add-greeter-extra-groups-.patch Content-Transfer-Encoding: quoted-printable Content-Description: v3-0001-gnu-greetd-service-type-Add-greeter-extra-groups-.patch From=20c8ba263cd3323c06cd3044243347e76a85cb9628 Mon Sep 17 00:00:00 2001 From: muradm Date: Fri, 22 Jul 2022 14:28:57 +0300 Subject: [PATCH v3] gnu: greetd-service-type: Add greeter-extra-groups conf= ig field. To: 56699@debbugs.gnu.org * gnu/services/base.scm (greetd-service-type): Added configurable supplementary groups. [extensions]: Switching accounts-service-type from const to function. (): Added greeter-supplementary-groups field. (greetd-accounts-service): New variable, function returning list necessary accounts for accounts-service-type, including the greeter-supplementary-groups. (%greetd-accounts): Removed. * gnu/tests/desktop.scm (%minimal-services): Add test for greeter-supplementary-groups. * doc/guix.texi: Mention greeter-supplementary-groups field with example. =2D-- doc/guix.texi | 8 ++++++++ gnu/services/base.scm | 24 +++++++++++------------- gnu/tests/desktop.scm | 7 +++++++ 3 files changed, 26 insertions(+), 13 deletions(-) diff --git a/doc/guix.texi b/doc/guix.texi index 9a6a5c307d..8eda5bb2c0 100644 =2D-- a/doc/guix.texi +++ b/doc/guix.texi @@ -18541,6 +18541,14 @@ the 'root' account has just been created. @item @code{terminals} (default: @code{'()}) List of @code{greetd-terminal-configuration} per terminal for which @code{greetd} should be started. + +@item @code{greeter-supplementary-groups} (default: @code{'()}) +List of groups which should be added to @code{greeter} user. For instance: +@lisp +(greeter-supplementary-groups '("seat" "video")) +@end lisp +Note that, however it will fail if @code{seatd-service-type} is not presen= t, +or to be more specific, @code{seat} group is not present. @end table @end deftp =20 diff --git a/gnu/services/base.scm b/gnu/services/base.scm index 27eae75c46..251196b108 100644 =2D-- a/gnu/services/base.scm +++ b/gnu/services/base.scm @@ -2918,17 +2918,6 @@ (define (make-greetd-terminal-configuration-file con= fig) "user =3D " default-session-user "\n" "command =3D " default-session-command "\n"))) =20 =2D(define %greetd-accounts =2D (list (user-account =2D (name "greeter") =2D (group "greeter") =2D ;; video group is required for graphical greeters. =2D (supplementary-groups '("video")) =2D (system? #t)) =2D (user-group =2D (name "greeter") =2D (system? #t)))) =2D (define %greetd-file-systems (list (file-system (device "none") @@ -2956,7 +2945,16 @@ (define-record-type* greetd-configuration? (motd greetd-motd (default %default-motd)) (allow-empty-passwords? greetd-allow-empty-passwords? (default #t)) =2D (terminals greetd-terminals (default '()))) + (terminals greetd-terminals (default '())) + (greeter-supplementary-groups greetd-greeter-supplementary-groups (defau= lt '()))) + +(define (greetd-accounts-service config) + (list (user-group (name "greeter") (system? #t)) + (user-account + (name "greeter") + (group "greeter") + (supplementary-groups (greetd-greeter-supplementary-groups config= )) + (system? #t)))) =20 (define (make-greetd-pam-mount-conf-file config) (computed-file @@ -3033,7 +3031,7 @@ (define greetd-service-type login manager daemon.") (extensions (list =2D (service-extension account-service-type (const %greetd-accounts)) + (service-extension account-service-type greetd-accounts-service) (service-extension file-system-service-type (const %greetd-file-syste= ms)) (service-extension etc-service-type greetd-etc-service) (service-extension pam-root-service-type greetd-pam-service) diff --git a/gnu/tests/desktop.scm b/gnu/tests/desktop.scm index 25971f9225..f20423f0aa 100644 =2D-- a/gnu/tests/desktop.scm +++ b/gnu/tests/desktop.scm @@ -122,6 +122,7 @@ (define %minimal-services (service seatd-service-type) (service greetd-service-type (greetd-configuration + (greeter-supplementary-groups '("input" "video")) (terminals (list ;; we can make any terminal active by default @@ -286,6 +287,12 @@ (define (greetd-pid-to-sock pid) (marionette-type "echo alice > /run/user/1000/test\n" marion= ette) (file-get-all-strings "/run/user/1000/test"))) =20 + (test-equal "check greeter user has correct groups" + "greeter input video\n" + (begin + (marionette-type "id -Gn greeter > /run/user/1000/greeter-gr= oups\n" marionette) + (file-get-all-strings "/run/user/1000/greeter-groups"))) + (test-assert "screendump" (begin (marionette-control (string-append "screendump " #$output =2D-=20 2.37.1 --=-=-= Content-Type: text/plain; charset=utf-8; format=flowed Content-Transfer-Encoding: quoted-printable Liliana Marie Prikler writes: > Am Montag, dem 08.08.2022 um 00:48 +0300 schrieb muradm: >> --- >> =C2=A0doc/guix.texi=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0=C2=A0 |=C2= =A0 8 ++++++++ >> =C2=A0gnu/services/base.scm | 24 +++++++++++------------- >> =C2=A0gnu/tests/desktop.scm |=C2=A0 7 +++++++ >> =C2=A03 files changed, 26 insertions(+), 13 deletions(-) >> >> diff --git a/doc/guix.texi b/doc/guix.texi >> index 21cee4e369..2b09bea3b0 100644 >> --- a/doc/guix.texi >> +++ b/doc/guix.texi >> @@ -18509,6 +18509,14 @@ the 'root' account has just been=20 >> created. >> =C2=A0@item @code{terminals} (default: @code{'()}) >> =C2=A0List of @code{greetd-terminal-configuration} per terminal for=20 >> which >> =C2=A0@code{greetd} should be started. >> + >> +@item @code{greeter-groups} (default: @code{'()}) >> +List of groups which should be added to @code{greeter} user.=20 >> For >> instance: >> +@lisp >> +(greeter-groups '("seat" "video")) >> +@end lisp >> +Note that, however it will fail if @code{seatd-service-type}=20 >> is not >> present, >> +or to be more specific, @code{seat} group is not present. > Note that this example will fail if the @code{seat} group does=20 > not > exist. Which is stated right on the next line. >> +=C2=A0 (greeter-groups greetd-greeter-groups (default '()))) > I think, we can err a little on the side of verbosity here and=20 > make > clear that it's greeter-supplementary-groups. done > Other than that LGTM --=-=-=-- --==-=-= Content-Type: application/pgp-signature; name="signature.asc" -----BEGIN PGP SIGNATURE----- iQIzBAEBCAAdFiEESPY5lma9A9l5HGLP6M7O0mLOBeIFAmLxY/YACgkQ6M7O0mLO BeJEpRAAkwJTDFqHu7oYZzuZdzFj4l0IfaEuKrJ5CYYEjuRkNbSo2bN0+26BeKVQ JGCcMelNAtBMblrDd5DCDq16NQIXwnkiHyl/6bjLdDHSA4oZOR0WTopYOaRcyagP dJ3kNnaNX2RZeZzm5OMkC5A4NlHGsBV6QlY8IcCz9+/UfO6CMhwX28k5XvPiMiSw i3/5i0HpRnsutQAK/ZCuwcafqg70EOwaasab78fJVnsoDjFiJb8Aju8IIzPJCbgM lOF4+CjsXE9BcqJgUCTESuVuNFESiX9JdpOQBlwRVhN+cDsLtXsnSOg1rGux421j cJ/sHDesL7tKJXTEPY9B8p/3CfT+t/swwFAT8+9UWYTMnlsA9EsCqwv/ZcdmHVWV JWu32Axu6xVnXycB8BgNcJOU0WBduo41xgpj5cGT4zB5gGDmRoncVbsCpA/urOfq g573iHT/B7PzVbCbYjQ1qb2l34CYht4PRZMa9HcPikepFAFPX5u6vLfFaMv0un7f qlREWw/+14a2GCKt6h213oBBPUGylIqIA/0RNb4+QdOCCjJUmpBXz+75y+dTQrGK HLDxppK1aZQkRRcLoQyzAi+ujoKRRBt+EvY+Tww+9GIcc81Z6YIXB3exYECPJTx4 x+aaGLv+K+qTZAsOeB3RU8+hF5QHB5MghCBhzjfIWYCODUGyFqQ= =Qib/ -----END PGP SIGNATURE----- --==-=-=--