From 2556863129c2b7b16522f47b5b94bf37bcfcd77f Mon Sep 17 00:00:00 2001 From: Claude Date: Mon, 15 Jun 2026 23:20:14 +0000 Subject: [PATCH] fix: use sudo for all config.json access in configure_authelia MIME-Version: 1.0 Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8bit /home/kiosk/ has 750 permissions so the install user can't read inside it. The -f check and both jq reads were running as the current user and failing silently, causing the false "config.json not found" error. Changed: [[ ! -f "$config_file" ]] → sudo test -f "$config_file" jq -r ... "$config_file" → sudo -u kiosk jq -r ... "$config_file" jq ... > "$tmp" → sudo -u kiosk jq ... > "$tmp" && sudo mv https://claude.ai/code/session_01EyjEQLWbTXcZgbMDarf7NU --- ubuntu-based-kiosk-v1.0.2.sh | 10 +++++----- 1 file changed, 5 insertions(+), 5 deletions(-) diff --git a/ubuntu-based-kiosk-v1.0.2.sh b/ubuntu-based-kiosk-v1.0.2.sh index cb4ba38..8b9087c 100644 --- a/ubuntu-based-kiosk-v1.0.2.sh +++ b/ubuntu-based-kiosk-v1.0.2.sh @@ -9979,15 +9979,15 @@ configure_authelia() { echo local config_file="$KIOSK_DIR/config.json" - if [[ ! -f "$config_file" ]]; then + if ! sudo test -f "$config_file"; then echo "✗ config.json not found — run a full install first." read -r -p "Press Enter to return..." _; return fi # Show current status local current_url current_user - current_url=$(jq -r '.autheliaURL // ""' "$config_file" 2>/dev/null) - current_user=$(jq -r '.autheliaUsername // ""' "$config_file" 2>/dev/null) + current_url=$(sudo -u "$KIOSK_USER" jq -r '.autheliaURL // ""' "$config_file" 2>/dev/null) + current_user=$(sudo -u "$KIOSK_USER" jq -r '.autheliaUsername // ""' "$config_file" 2>/dev/null) if [[ -n "$current_url" ]]; then echo "Current config:" echo " URL: $current_url" @@ -10025,11 +10025,11 @@ process.stdout.write(Buffer.concat([iv,enc]).toString('base64')); local tmp tmp=$(mktemp) - jq --arg url "$authelia_url" \ + sudo -u "$KIOSK_USER" jq --arg url "$authelia_url" \ --arg user "$authelia_user" \ --arg enc "$encrypted" \ '. + {autheliaURL: $url, autheliaUsername: $user, autheliaEncryptedPassword: $enc}' \ - "$config_file" > "$tmp" && mv "$tmp" "$config_file" + "$config_file" > "$tmp" && sudo mv "$tmp" "$config_file" sudo chown "$KIOSK_USER:$KIOSK_USER" "$config_file" echo