Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 15 Jan 2002 16:00:04 +0000
From:      "Graham Dunn" <graham_m_dunn@hotmail.com>
To:        freebsd-questions@freebsd.org
Subject:   dnssec-keygen needs -r /dev/urandom on 4.5-RC
Message-ID:  <F149X3cf3ednHM3SOlb00014e8f@hotmail.com>

next in thread | raw e-mail | index | archive | help
FreeBSD 4.5-RC (cvsup Fri Jan 11 14:23:07 GMT)
Bind 9.1.3 from ports

"dnssec-keygen -a hmac-md5 -b 128 -n user rndc" would just hang forever (or 
at least 15 minutes :). Adding -r /dev/urandom will allow the keys to be 
generated.

How "safe" is /dev/urandom as a source of entropy? (There were a few 
messages on the bind-workers archive about FreeBSD-4.2's /dev/random not 
generating a lot of entropy).

Graham

PS. Why does the FreeBSD list server lookup the HELO hostname and refuse 
connection if it can't resolve? I appreciate the spam protection, but that 
seems a little over the top.


_________________________________________________________________
Send and receive Hotmail on your mobile device: http://mobile.msn.com


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-questions" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?F149X3cf3ednHM3SOlb00014e8f>