security: Fix access denied for user daemon from cron

When 'restrict console logins' is activated, debsecan hourly cron jobs fail
because the 'daemon' user is not allowed to run cron jobs. Add rule to the
login access control file to allow 'daemon' user to run cron jobs.

Fixes #1770

Tested that after I copied the file to /etc/security/access.d/10freedombox-security.conf,
there are no more debsecan cron job errors in the journalctl logs.

Signed-off-by: Veiko Aasa <veiko17@disroot.org>
Reviewed-by: Fioddor Superconcentrado <fioddor@gmail.com>
This commit is contained in:
Veiko Aasa 2020-12-21 15:48:36 +02:00 committed by Fioddor Superconcentrado
parent 79acc9b918
commit 6665052fe8
No known key found for this signature in database
GPG Key ID: 6E98A18FEBF77724

View File

@ -0,0 +1,2 @@
# allow debsecan cron job
+:daemon:cron