Skip site navigation (1)Skip section navigation (2)
Date:      Tue, 24 Oct 2000 06:56:25 -0600
From:      Warner Losh <imp@village.org>
To:        Jesper Skriver <jesper@skriver.dk>
Cc:        Mark Murray <mark@grondar.za>, "John W. De Boskey" <jwd@FreeBSD.org>, "Jordan K. Hubbard" <jkh@FreeBSD.org>, cvs-committers@FreeBSD.org, cvs-all@FreeBSD.org
Subject:   Re: cvs commit: src/etc rc 
Message-ID:  <200010241256.GAA15067@harmony.village.org>
In-Reply-To: Your message of "Tue, 24 Oct 2000 12:40:57 %2B0200." <20001024124057.A4309@skriver.dk> 
References:  <20001024124057.A4309@skriver.dk>  <200010232046.e9NKkLR01463@grimreaper.grondar.za> <20001023081548.A41843@bsdwins.com> <200010232046.e9NKkLR01463@grimreaper.grondar.za> <200010232321.RAA11268@harmony.village.org> 

next in thread | previous in thread | raw e-mail | index | archive | help
In message <20001024124057.A4309@skriver.dk> Jesper Skriver writes:
: On Mon, Oct 23, 2000 at 05:21:49PM -0600, Warner Losh wrote:
: I have a idea, what about updating /entropy from cron every hour or so,
: then if the box goes down hard for some reason, we'll have a entropy
: file anyway ...

This is bad because it exposes the state, the current state, of the
yarrow random engine to the world.  It is too insecure, imho, to do on
a regular basis.  I had this same idea at bsdcon and this was pointed
out.

Warner


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe cvs-all" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200010241256.GAA15067>