[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

[EP-tech] controlling security settings



I have just spotted for Ubuntu 20.04 (at least) that there is this 
enabled setting:

<policy domain="coder" rights="none" pattern="PDF" />

This would need to be changed to:

<policy domain="coder" rights="read" pattern="PDF" />

On CentOS 7 there is no enabled setting, so I assume there is no rights 
restriction.? ImageMagick should only need to be able read (and not 
write) PDFs to be able to generate thumbnail and preview images for EPrints.

On 12/01/2021 18:40, David R Newman wrote:
>
> Hi Thomas,
>
> I have seen this issue before you need to change the configuration 
> settings for ImageMagick.? You need to edit policy.xml in 
> /etc/ImageMagick/ (in CentOS 7 this is /etc/ImageMagick-6/ but may 
> have a different name in Debian/Ubuntu or other version of 
> RHEL/CentOS/Fedora).? In this file add the following line to the 
> <policymap> block:|
> |
>
> |<policy domain="module" rights="read" pattern="{PS,PDF,XPS}" />|
>
> ||Regards
>
> David Newman
> ||
> |
> |
> On 12/01/2021 17:34, th.lauke--- via Eprints-tech wrote:
>> CAUTION: This e-mail originated outside the University of Southampton.
>>
>> Hi all,
>>
>> running
>> epadmin redo_thumbnails repoID EPrintsID
>> refuses working with
>> convert: attempt to perform an operation not allowed by the security policy `PDF' @ error/constitute.c/IsCoderAuthorized/408.
>>
>> It seems, the content of security.pl has no influence!?
>> How to control the access rights from console?
>>
>> Many thanks for any pointers in advance
>> Thomas
>>
>>
>>
>> *** Options:http://mailman.ecs.soton.ac.uk/mailman/listinfo/eprints-tech
>> *** Archive:https://eur03.safelinks.protection.outlook.com/?url=http%3A%2F%2Fwww.eprints.org%2Ftech.php%2F&amp;data=04%7C01%7Ceprints-tech%40ecs.soton.ac.uk%7Cbf37a04c422a4db904b108d8b72a89da%7C4a5378f929f44d3ebe89669d03ada9d8%7C0%7C0%7C637460740613182459%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C1000&amp;sdata=7tPEY2tuX6%2FScozyyAlpzqK5F27IE6CCoVHKocdE2%2Fo%3D&amp;reserved=0
>> *** EPrints community wiki:https://eur03.safelinks.protection.outlook.com/?url=http%3A%2F%2Fwiki.eprints.org%2F&amp;data=04%7C01%7Ceprints-tech%40ecs.soton.ac.uk%7Cbf37a04c422a4db904b108d8b72a89da%7C4a5378f929f44d3ebe89669d03ada9d8%7C0%7C0%7C637460740613182459%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C1000&amp;sdata=H6wHy9pEdBNTTefyR%2F49ELZ9JNxM41nO5yjnSexyi7A%3D&amp;reserved=0


-- 
This email has been checked for viruses by AVG.
https://eur03.safelinks.protection.outlook.com/?url=https%3A%2F%2Fwww.avg.com%2F&amp;data=04%7C01%7Ceprints-tech%40ecs.soton.ac.uk%7Cbf37a04c422a4db904b108d8b72a89da%7C4a5378f929f44d3ebe89669d03ada9d8%7C0%7C0%7C637460740613192415%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C1000&amp;sdata=AMWoVa3MUS5eI7rrSRANbePQpQNCA3VR0Nt%2F8Xyn1SM%3D&amp;reserved=0
-------------- next part --------------
An HTML attachment was scrubbed...
URL: http://mailman.ecs.soton.ac.uk/pipermail/eprints-tech/attachments/20210112/1a57b217/attachment-0001.html