Skip to content
Discussion options

You must be logged in to vote

A common group and a shared directory are not enough because Borg writes with umask 0077 by default, so everything in the repository ends up owned by user A with mode 0600 and the group bit is useless. You need --umask 002 on every Borg call from both users, and there is a trap if one of them forgets.

I set this up with two local accounts, both in a borg group, and a setgid directory (chgrp borg /srv/backup && chmod 2775 /srv/backup), which is the setup you describe. With the default umask, user B cannot even list the repository, and the error does not mention reading at all:

Failed to create/acquire the lock /srv/backup/repo/lock.exclusive
([Errno 13] Permission denied: '/srv/backup/repo…

Replies: 1 comment 1 reply

Comment options

You must be logged in to vote
1 reply
@Jopp-gh
Comment options

Answer selected by Jopp-gh
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
FAQ
Labels
None yet
2 participants