1 From 29af78b112f7956ac1211fbfec2eadbf4caca40f Mon Sep 17 00:00:00 2001
2 From: Yaya <yaya@uwu.is>
3 Date: Sun, 6 Aug 2023 00:02:40 +0000
4 Subject: [PATCH] Revert "Config: Restrict permissions of OTP config file"
6 This reverts commit 4befb3b1d02f32eb2c56f12e4684a7bb3167b0ee.
8 The Nix store is world readable by design.
10 lib/pleroma/config/release_runtime_provider.ex | 14 --------------
11 1 file changed, 14 deletions(-)
13 diff --git a/lib/pleroma/config/release_runtime_provider.ex b/lib/pleroma/config/release_runtime_provider.ex
14 index 9ec0f975e..91e5f1a54 100644
15 --- a/lib/pleroma/config/release_runtime_provider.ex
16 +++ b/lib/pleroma/config/release_runtime_provider.ex
17 @@ -20,20 +20,6 @@ def load(config, opts) do
20 if File.exists?(config_path) do
21 - # <https://git.pleroma.social/pleroma/pleroma/-/issues/3135>
22 - %File.Stat{mode: mode} = File.lstat!(config_path)
24 - if Bitwise.band(mode, 0o007) > 0 do
25 - raise "Configuration at #{config_path} has world-permissions, execute the following: chmod o= #{config_path}"
28 - if Bitwise.band(mode, 0o020) > 0 do
29 - raise "Configuration at #{config_path} has group-wise write permissions, execute the following: chmod g-w #{config_path}"
32 - # Note: Elixir doesn't provides a getuid(2)
33 - # so cannot forbid group-read only when config is owned by us
35 runtime_config = Config.Reader.read!(config_path)