# override -- Lintian's global `overrides' file

# These are the default permissions
base-files: non-standard-dir-perm usr/src/ 2775 != 0755
base-files: non-standard-dir-perm boot/ 2775 != 0755
base-files: non-standard-dir-perm home/ 2775 != 0755
base-files: non-standard-dir-perm tmp/ 1777 != 0755
base-files: non-standard-dir-perm var/local/ 2775 != 0755
base-files: non-standard-dir-perm var/lock/ 1777 != 0755
base-files: non-standard-dir-perm var/log/ 2775 != 0755
base-files: non-standard-dir-perm var/spool/mail/ 2775 != 0755
base-files: non-standard-dir-perm var/tmp/ 1777 != 0755
smartlist: non-standard-dir-perm var/list/ 2711 != 0755
smartlist: non-standard-dir-perm var/list/.bin/ 2755 != 0755
smartlist: non-standard-dir-perm var/list/.etc/ 2755 != 0755
smartlist: non-standard-file-perm var/list/.etc/rc.custom 0640 != 0644
smartlist: non-standard-file-perm var/list/.etc/rc.init.dist 0440 != 0644
smartlist: setuid-binary var/list/.bin/choplist 4755 root/list
smartlist: setuid-binary var/list/.bin/flist 4755 root/list
smartlist: setuid-binary var/list/.bin/idhash 4755 root/list
smartlist: setuid-binary var/list/.bin/multigram 4755 root/list
smartlist: setuid-binary var/list/.bin/senddigest 4755 root/list
tripwire: non-standard-dir-perm etc/tripwire/ 0700 != 0755
tripwire: non-standard-dir-perm usr/lib/tripwire/databases/ 0700 != 0755
tripwire: non-standard-file-perm etc/tripwire/tw.config 0600 != 0644
radiusd-merit: non-standard-dir-perm etc/radius/ 0750 != 0755
radiusd-merit: non-standard-dir-perm var/log/radius/ 0750 != 0755
radiusd-merit: non-standard-file-perm etc/radius/authfile 0640 != 0644
radiusd-merit: non-standard-file-perm etc/radius/clients 0640 != 0644
radiusd-merit: non-standard-file-perm etc/radius/dictionary 0640 != 0644
radiusd-merit: non-standard-file-perm etc/radius/users 0640 != 0644
ppp: non-standard-dir-perm etc/ppp/ 0750 != 0755
ppp: non-standard-dir-perm etc/ppp/peers/ 2750 != 0755
ppp: non-standard-file-perm etc/ppp/peers/provider 0640 != 0644
ppp: non-standard-file-perm etc/ppp/pap-secrets 0600 != 0644
ppp: non-standard-file-perm etc/ppp/chap-secrets 0600 != 0644
ppp: non-standard-dir-perm etc/chatscripts/ 2750 != 0755
ppp: non-standard-file-perm etc/chatscripts/provider 0640 != 0644
ppp: non-standard-executable-perm usr/sbin/pppd 0750 != 0755
#crossfire-server: non-standard-file-perm
#crossfire-server: non-standard-dir-perm

# These are diverts for binaries in other packages which already have a manpage.
dpkg-cross: binary-without-manpage dpkg-buildpackage
dpkg-cross: binary-without-manpage dpkg-shlibdeps   
inews: binary-without-manpage inews

# sysvinit puts lots of unregistered scripts into /etc/init.d
sysvinit: unregistered-script-in-etc-init.d

# Some packages that contains all shlibs in a single package:
svgalib-dummyg1: non-dev-pkg-with-shlib-symlink
amanda-client: non-dev-pkg-with-shlib-symlink
amanda-common: non-dev-pkg-with-shlib-symlink
amanda-server: non-dev-pkg-with-shlib-symlink
libmsql2: non-dev-pkg-with-shlib-symlink
sane: non-dev-pkg-with-shlib-symlink
ecpg: non-dev-pkg-with-shlib-symlink usr/lib/libecpg.so.1.1 usr/lib/libecpg.so
sgb: non-dev-pkg-with-shlib-symlink

# Since these libs replace "libXaw", their shlib control files only list
# libXaw.
nextaw: unused-shlib-entry-in-control-file libXaw
nextaw: shlib-missing-in-control-file
nextaw: postrm-calls-ldconfig
nextawg: unused-shlib-entry-in-control-file libXaw
nextawg: shlib-missing-in-control-file
nextawg: postrm-calls-ldconfig
xaw3d: unused-shlib-entry-in-control-file libXaw
xaw3d: postrm-calls-ldconfig
xaw3dg: unused-shlib-entry-in-control-file libXaw
xaw3dg: postrm-calls-ldconfig
xaw95: unused-shlib-entry-in-control-file libXaw
xaw95: shlib-missing-in-control-file
xaw95: postrm-calls-ldconfig
xaw95g: unused-shlib-entry-in-control-file libXaw
xaw95g: shlib-missing-in-control-file
xaw95g: postrm-calls-ldconfig

# no source available:
distributed-net: statically-linked-binary usr/bin/distributed-net
distributed-net-pproxy: statically-linked-binary
quake2: libc5-binary usr/lib/games/quake2/quake2.real
quake2: library-not-linked-against-libc usr/lib/games/quake2/libMesaGL.so.2.6
quake2: library-not-linked-against-libc usr/lib/games/quake2/ref_gl.so
quake2: library-not-linked-against-libc usr/lib/games/quake2/ref_soft.so
quake2: library-not-linked-against-libc usr/lib/games/quake2/ref_softx.so
iraf-common: statically-linked-binary
iraf-ibin: statically-linked-binary
iraf-noaobin: statically-linked-binary
netscape3: shared-lib-without-dependency-information
netscape4: shared-lib-without-dependency-information
quake2-ctf: shared-lib-without-dependency-information usr/lib/games/quake2/ctf/gamei386.so

# approved by the maintainers:
deliver: setuid-binary usr/bin/deliver 4755 root/root
screen: setuid-binary usr/bin/screen 4755 root/root
vlock: setgid-binary usr/bin/vlock 2755 root/shadow
inewsinn: setgid-binary usr/bin/inews 2755 root/news
inn: non-standard-dir-perm etc/news/pgp/ 0750 != 0755
inn: non-standard-dir-perm usr/lib/news/control/ 0775 != 0755
inn: non-standard-dir-perm var/lib/news/ 0775 != 0755
inn: non-standard-dir-perm var/run/ 1777 != 0755
inn: non-standard-dir-perm var/run/innd/ 0775 != 0755
inn: non-standard-dir-perm var/spool/news/ 0775 != 0755
inn: non-standard-file-perm etc/news/hosts.nntp 0640 != 0644
inn: non-standard-file-perm etc/news/nnrp.access 0640 != 0644
inn: non-standard-file-perm etc/news/passwd.nntp 0640 != 0644
inn: setgid-binary usr/bin/rnews 2755 root/news
gfont: non-standard-dir-perm var/lib/gfont/gdf/ 1777 != 0755
mailx: setgid-binary usr/bin/mail 2755 root/mail
super: setuid-binary usr/bin/super 4755 root/root
sudo: setuid-binary usr/bin/sudo 4755 root/root
amanda-server: non-standard-dir-perm etc/amanda/ 0770 != 0755
amanda-server: non-standard-dir-perm etc/amanda/DailySet1/ 0770 != 0755
amanda-server: non-standard-file-perm etc/amanda/DailySet1/amanda.conf 0660 != 0644
amanda-server: non-standard-file-perm etc/amanda/DailySet1/disklist 0660 != 0644
amanda-server: non-standard-file-perm etc/amanda/crontab.amanda 0660 != 0644
amanda-server: non-standard-dir-perm var/log/amanda/ 0770 != 0755
amanda-server: non-standard-dir-perm var/log/amanda/DailySet1/ 0770 != 0755
amanda-server: non-standard-dir-perm var/lib/amanda/ 0770 != 0755
amanda-server: non-standard-dir-perm var/lib/amanda/DailySet1/ 0770 != 0755
amanda-server: non-standard-dir-perm var/lib/amanda/DailySet1/index/ 0770 != 0755
amanda-server: setuid-binary usr/lib/amanda/dumper 4754 root/backup
amanda-server: setuid-binary usr/lib/amanda/planner 4754 root/backup
amanda-server: setuid-binary usr/sbin/amcheck 4754 root/backup
amanda-client: setuid-binary usr/lib/amanda/runtar 4754 root/backup
# These binaries are made setuid in the postinst
amanda-server: non-standard-executable-perm usr/lib/amanda/dumper 0754 != 0755
amanda-server: non-standard-executable-perm usr/lib/amanda/planner 0754 != 0755
amanda-server: non-standard-executable-perm usr/sbin/amcheck 0754 != 0755
amanda-client: non-standard-executable-perm usr/lib/amanda/runtar 0754 != 0755
amanda-client: non-standard-dir-perm var/lib/amanda/ 0770 != 0755
amanda-client: non-standard-dir-perm var/lib/amanda/gnutar-lists/ 0770 != 0755
lpr: non-standard-dir-perm var/spool/lpd/ 2775 != 0755
lpr: non-standard-dir-perm var/spool/lpd/lp/ 2775 != 0755
lpr: non-standard-dir-perm var/spool/lpd/remote/ 2775 != 0755
lpr: setgid-binary usr/sbin/lpc 2755 root/lp
lpr: setuid-binary usr/bin/lpq 4755 root/root
lpr: setuid-binary usr/bin/lpr 4755 root/root
lpr: setuid-binary usr/bin/lprm 4755 root/root
lprng: setuid-binary usr/bin/lpq 4755 root/root
lprng: setuid-binary usr/bin/lprm 4755 root/root
lprng: setuid-binary usr/bin/lpr 4755 root/root
lprng: setuid-binary usr/sbin/lpc 4755 root/root
lprng: non-standard-dir-perm var/spool/lpd/ 2755 != 0755
lprng: non-standard-dir-perm var/spool/lpd/lp/ 2755 != 0755
exim: setuid-binary usr/sbin/exim 4755 root/root
angband: non-standard-dir-perm var/lib/games/angband/help/ 0775 != 0755
angband: non-standard-dir-perm var/lib/games/angband/info/ 0775 != 0755
angband: non-standard-dir-perm var/lib/games/angband/user/ 0775 != 0755
angband: non-standard-dir-perm var/lib/games/angband/bone/ 0775 != 0755
angband: non-standard-dir-perm var/lib/games/angband/save/ 0775 != 0755
angband: non-standard-dir-perm var/lib/games/angband/data/ 0775 != 0755
angband: non-standard-dir-perm var/lib/games/angband/apex/ 0775 != 0755
angband: non-standard-dir-perm var/lib/games/angband/xtra/ 0775 != 0755
angband: non-standard-dir-perm var/lib/games/angband/edit/ 0775 != 0755
angband: non-standard-dir-perm var/lib/games/angband/file/ 0775 != 0755
fidogate: non-standard-dir-perm etc/fido/ 2755 != 0755
eximon: non-standard-dir-perm var/run/mon/ 2775 != 0755
sash: statically-linked-binary ./bin/sash
tripwire: statically-linked-binary usr/lib/tripwire/tripwire
xvmount: setuid-binary usr/X11R6/bin/xvmount 4755 root/root
dmalloc: non-dev-pkg-with-shlib-symlink
dmalloc: script-not-executable usr/doc/dmalloc/contrib/ra_info.pl
dh-make: script-not-executable usr/lib/debhelper/dh_make/debian/preinst.ex
dh-make: script-not-executable usr/lib/debhelper/dh_make/debian/postinst.ex
dh-make: script-not-executable usr/lib/debhelper/dh_make/debian/prerm.ex
dh-make: script-not-executable usr/lib/debhelper/dh_make/debian/postrm.ex
dh-make: script-not-executable usr/lib/debhelper/dh_make/debian/emacsen-install.ex
dh-make: script-not-executable usr/lib/debhelper/dh_make/debian/emacsen-remove.ex
xemacs20-bin: setgid-binary usr/lib/xemacs-20.4/i386-debian-linux/movemail 2755 root/mail
xemacs19: setgid-binary usr/lib/xemacs-19.16/i386-debian-linux/movemail 2755 root/mail
ldso: libc5-binary usr/lib/lddstub
gnats-user: setuid-binary usr/lib/gnats/pr-edit 4555 gnats/root
gnats: non-standard-dir-perm var/lib/gnats/ 2755 != 0755
gnats: non-standard-dir-perm var/lib/gnats/dist/ 2755 != 0755
gnats: non-standard-dir-perm var/lib/gnats/gnats-db/ 2755 != 0755
gnats: non-standard-dir-perm var/lib/gnats/gnats-db/gnats-adm/ 2755 != 0755
gnats: non-standard-dir-perm var/lib/gnats/gnats-db/gnats-queue/ 2755 != 0755
gnats: non-standard-dir-perm var/lib/gnats/gnats-db/pending/ 2755 != 0755
gnats: non-standard-executable-perm usr/lib/gnats/gnatsd 0555 != 0755
gnats: setuid-binary usr/lib/gnats/gen-index 4555 gnats/root
gnats: setuid-binary usr/lib/gnats/pr-edit 4555 gnats/root
gnats: setuid-binary usr/lib/gnats/queue-pr 4555 gnats/root
ax25-utils: setuid-binary usr/bin/listen 4755 root/root
ax25-utils: setuid-binary usr/sbin/mheardd 4755 root/root
ax25-utils: setuid-binary usr/sbin/node 4755 root/root
dosemu: setuid-binary usr/bin/dos 4755 root/root
mutt: setgid-binary usr/bin/mutt 2755 root/mail
mutt-i: setgid-binary usr/bin/mutt 2755 root/mail
netstd: setuid-binary usr/bin/fping 4755 root/root
netstd: setuid-binary usr/bin/rcp 4755 root/root
netstd: setuid-binary usr/bin/rlogin 4755 root/root
netstd: setuid-binary usr/bin/rsh 4755 root/root
netstd: setuid-binary usr/sbin/traceroute 4755 root/root
netbase: setuid-binary bin/ping 4755 root/root
efax: non-standard-dir-perm var/spool/fax/ 0770 != 0755
efax: non-standard-dir-perm var/log/efax/ 0770 != 0755
# sendmail is getting a wrapper; maintain both overrides for now.
sendmail: setuid-binary usr/sbin/sendmail 4755 root/root
sendmail: setuid-binary usr/sbin/sendmail.real 4755 root/root
# write and wall need to be able to access users' ttys
bsdmainutils: setgid-binary usr/bin/write 2755 root/tty
bsdutils: setgid-binary usr/bin/wall 2755 root/tty

# renamed to ldconfig (which has a manpage) at installation time
ldso: binary-without-manpage ldconfig.new

# since the actual files which produce these message carry version numbers,
# I disable this tag for the whole package (the package doesn't contain lots
# of other files)
ldso: shlib-missing-in-control-file
ldso: statically-linked-binary
ldso: unstripped-binary-or-object
ldso: shared-lib-without-dependency-information

# locale links in /usr/man are ok:
manpages-fr: manpage-in-wrong-directory usr/man/fr_FR
manpages-fr: manpage-in-wrong-directory usr/man/fr_CA
manpages-fr: manpage-in-wrong-directory usr/man/fr_CH
manpages-fr: manpage-in-wrong-directory usr/man/fr_BE
manpages-fr: manpage-in-wrong-directory usr/man/fr_LU

# Needs to be setuid to edit utmp:
# (Not strictly necessary, but a good feature).
splitvt: setuid-binary usr/bin/splitvt 4755 root/root

# These directories contain passwords
jhcore: non-standard-dir-perm var/lib/lambdamoo/ 0700 != 0755
lambdacore: non-standard-dir-perm var/lib/lambdamoo/ 0700 != 0755
lambdamoo: non-standard-dir-perm var/lib/lambdamoo/ 0700 != 0755
slrn: non-standard-dir-perm etc/ppp/ 0700 != 0755
slrnpull: non-standard-dir-perm etc/ppp/ 0700 != 0755

# Leafnode runs as group news, and needs to be able to write to this 
# directory.
leafnode: non-standard-dir-perm var/spool/news/ 2755 != 0755

# these packages aren't used for compilation
termcap-compat: no-shlibs-control-file
quake2: no-shlibs-control-file
binutils: no-shlibs-control-file
gtk-engines-gtkstep: no-shlibs-control-file
gtk-engines-gtkstep: non-dev-pkg-with-shlib-symlink


# These libs display nice banners when being executed:
libc6: shlib-with-executable-bit lib/ld-2.0.7.so 0755
libc6: shlib-with-executable-bit lib/libc-2.0.7.so 0755

# This needs to be statically linked:
libc6: shared-lib-without-dependency-information lib/ld-2.0.7.so
# It also doesn't use rpath the way other programs do:
libc6: binary-or-shlib-defines-rpath lib/ld-2.0.7.so /lib:/usr/lib

# This is a special case:
libc6: unused-shlib-entry-in-control-file /lib/ld-linux

# These need to be unstripped to work.
libc6-pic: unstripped-binary-or-object usr/lib/libc_pic/interp.so
libc6-pic: unstripped-binary-or-object usr/lib/libc_pic/sofini.so
libc6-pic: unstripped-binary-or-object usr/lib/libc_pic/soinit.so

# cron needs to be setuid root to allow users to edit their crontabs
# as these are owned by root.root
cron: setuid-binary usr/bin/crontab 4755 root/root

# /etc/init.d/modutils is directly used by sysvinit, so there is no need
# to register it via update-rc.d
modutils: unregistered-script-in-etc-init.d /etc/init.d/modutils

# Directory is sgid news so files within it will be owned by user news.
slrn: non-standard-dir-perm var/spool/slrnpull/ 2755 != 0755
slrnpull: non-standard-dir-perm var/spool/slrnpull/ 2755 != 0755

# Of course, perl-suid must be setuid :)
perl-suid: setuid-binary usr/bin/sperl5.00404 4755 root/root
perl-suid: setuid-binary usr/bin/suidperl 4755 root/root

# templates
autoconf: script-not-executable usr/lib/autoconf/config.guess
autoconf: script-not-executable usr/lib/autoconf/config.sub
autoconf: script-not-executable usr/lib/autoconf/install-sh
autoconf: script-not-executable usr/lib/autoconf/mkinstalldirs

# CNews is too complex:
cnews: executable-not-elf-or-script usr/lib/news/config 
cnews: executable-not-elf-or-script usr/lib/news/dbzinfo
cnews: executable-not-elf-or-script usr/lib/news/inject/defhdrs.awk
cnews: executable-not-elf-or-script usr/lib/news/inject/lines  
cnews: executable-not-elf-or-script usr/lib/news/maint/histdups

# copyright files are created at installation time:
netscape3: no-copyright-file
netscape4: no-copyright-file

# These are not stand alone scripts, they are all code fragments that
# begin with #! to tell emacs and other editors what file type they
# are.
lambdamoo: script-not-executable etc/lambdamoo.conf
pdmenu: script-not-executable etc/pdmenurc

# contributed script, that isn't necessary to run gnats
gnats: ksh-script-but-no-pdksh-dep usr/lib/gnats/cross-check

# It's just an example, and besides, there is a bash shell script example
# as well that does the same thing.
xbanner: csh-considered-harmful usr/doc/xbanner/examples/Demo/Demo

# false alarm:
rvplayer: possibly-insecure-handling-of-tmp-files-in-maintainer-script

# Octave _needs_ rpath as Octave loads some DLLs from /usr/lib/octave-$VERSION/
octave: binary-or-shlib-defines-rpath

# debmake itself does not require make
debmake: make-script-but-no-make-dep usr/lib/deb-make/debianl/rules

# defaults for pike:

# xntp3 maintainer: The following errors are not really errors, since
# the xntp3 package provides superior handling of the init.d fragment in
# the maintainer scripts.  I suspect that checking for this sort of
# thing will be hard to do in lintian, so I suggest you just provide
# exceptions for these errors.
xntp3: init.d-script-not-marked-as-conffile /etc/init.d/xntp3
xntp3: init.d-script-not-included-in-package /etc/init.d/xntp3

# postgresql has its docs in a separate package; because of that, the
# test on /usr/doc/$pkg/examples/ does not work.
postgresql-doc: script-not-executable usr/doc/postgresql-doc/libpgperl/eg/ApachePg.pl
# postgresql-pl has shared libs that it loads, not ld.so
postgresql-pl: ldconfig-symlink-missing-for-shlib usr/lib/postgresql/lib/plpgsql.so libplpgsql.so.1.0
postgresql-pl: no-shlibs-control-file usr/lib/postgresql/lib/plpgsql.so
libpgtcl: non-dev-pkg-with-shlib-symlink usr/lib/libpgtcl.so.2.0 usr/lib/libpgtcl.so

# This ldconfig call is actually necessary because this is an installer
# package that installs some shared libraries, and then must run ldconfig.
rvplayer: postinst-has-useless-call-to-ldconfig
# It's not actually doing anything with tmp files, just deleting a file with
# "tmp" in its name.
slrn: possibly-insecure-handling-of-tmp-files-in-maintainer-script postinst:34

# Handling this kind of filename correctly is too expensive.
console-tools: md5sums-lists-nonexisting-file usr/doc/console-tools-libs/examples/unicode/\231\231

xabacus: x11-games-should-be-in-usr-games usr/X11R6/man/man6/xabacus.6x.gz

xtrlock: setgid-binary usr/X11R6/bin/xtrlock 2755 root/shadow

# libc5-compat libraries that don't install in libc5-compat
ncurses3.0: libc5-binary lib/libncurses.so.3.0
ncurses3.0: libc5-binary usr/lib/libform.so.3.0
ncurses3.0: libc5-binary usr/lib/libmenu.so.3.0
ncurses3.0: libc5-binary usr/lib/libpanel.so.3.0
termcap-compat: libc5-binary lib/libtermcap.so.2.0.8

# These are wrapper libraries, they are never compiled against.
fakeroot: shlib-missing-in-control-file libfakeroot usr/lib/libfakeroot/libfakeroot.so.0.0

# These are examples for conffiles that should have these ownerships.
inewsinn: bad-owner-for-doc-file usr/doc/inewsinn/examples/moderators news/news != root/root
inewsinn: bad-owner-for-doc-file usr/doc/inewsinn/examples/inn.conf news/news != root/root
inewsinn: bad-owner-for-doc-file usr/doc/inewsinn/examples/organization news/news != root/root

# This cleans up a bug in an older version
doc-base: preinst-calls-installdocs
doc-base: maintainer-script-does-not-check-for-existence-of-installdocs postinst

# xconq can't use xaw-wrappers because it is suid games.
xconq: binary-or-shlib-defines-rpath usr/games/xconq /usr/X11R6/lib

# menufile is generated by postinst
netscape4: postinst-has-useless-call-to-update-menus
twm: postinst-does-not-call-updatemenus usr/lib/menu/twm
menu: postrm-does-not-call-updatemenus usr/lib/menu/menu

wmaker: menu-item-needs-tag-has-unknown-value wmappearance /usr/lib/menu/wmaker:40

imap: setgid-binary usr/sbin/imapd 2755 root/mail
imap: setgid-binary usr/sbin/ipop2d 2755 root/mail
imap: setgid-binary usr/sbin/ipop3d 2755 root/mail
ipopd: setgid-binary usr/sbin/ipop2d 2755 root/mail
ipopd: setgid-binary usr/sbin/ipop3d 2755 root/mail

# Overrides for libc5, given by Marcus Brinkmann
# not dangerous because it is only done in purge and remove phase:
libc5: postrm-calls-ldconfig
# this is a renamed .o file
libc5-altdev: unstripped-binary-or-object usr/i486-linuxlibc1/lib/libmcheck.a
# not in /libc5-compat/ because nothing replaces it
libc5: libc5-binary usr/lib/libgnumalloc.so.5.4.46
# These don't have to be linked to libc
libc5: shared-lib-without-dependency-information lib/libc.so.5.4.46
libc5: shared-lib-without-dependency-information lib/libm.so.5.0.9
# This is a preload library.
libc5: shlib-missing-in-control-file libgnumalloc usr/lib/libgnumalloc.so.5.4.46

# Maintainer says this is ok  (ups-monitor is a symlink)
apcd: unregistered-script-in-etc-init.d /etc/init.d/ups-monitor

# These are datafiles used to construct scripts, not scripts themselves.
ocaml: script-not-executable usr/lib/ocaml/camlheader
ocaml: script-without-interpreter usr/lib/ocaml/camlheader_ur

# This package contains some csh scripts that also have sh versions
gstep-make: csh-script-but-no-c-shell-dep
gstep-make: csh-considered-harmful

# These are used in the boot process, before a linker is started.
hurd: statically-linked-binary boot/serverboot
hurd: statically-linked-binary hurd/ufs.static
hurd: statically-linked-binary hurd/ext2fs.static

# the manpage for X is in xfree86-common, upon which xserver-common depends
# the X manpage is kind of a meta-manpage, so it belongs in xfree86-common
# but the X binary is a setuid root wrapper around the X servers
xserver-common: binary-without-manpage X

# ldconfig is only called for the remove and purge actions
xlib6g: postrm-calls-ldconfig

# ldconfig is only called for the remove and purge actions
xlib6: postrm-calls-ldconfig

# Since log files about connections to the system are kept in this
# directory I feel this is a safe choice to not let everybody read those
# files.  -- Frederic Peters
iptraf: non-standard-dir-perm var/log/iptraf/ 0750 != 0755

# the file contains a message that the file is not used :-)
# That's why it's 0444. Please add this to the override. -- Paul Slootman
isdnutils: non-standard-file-perm etc/ppp/ioptions 0444 != 0644

# uvscan is an installer package, with the manpage in the package it installs.
uvscan: binary-without-manpage uvscan
