Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 8 Aug 2013 23:26:03 -0700
From:      "Simon J. Gerraty" <sjg@juniper.net>
To:        <obrien@freebsd.org>, Mark R V Murray <mark@grondar.org>, Arthur Mesh <arthurmesh@gmail.com>, Steve Kargl <sgk@troutmask.apl.washington.edu>, <secteam@freebsd.org>, <freebsd-arch@freebsd.org>
Subject:   Re: random(4) plugin infrastructure for mulitple RNG in a modular fashion
Message-ID:  <20130809062603.2053E58097@chaos.jnpr.net>
In-Reply-To: <20130809013346.GG95000@dragon.NUXI.org>
References:  <20130807182858.GA79286@dragon.NUXI.org> <20130807192736.GA7099@troutmask.apl.washington.edu> <CAGE5yCq%2Bs6kYtVYyxi27RAqPmvpV42nNNykm2%2B2x1EJGCihYXw@mail.gmail.com> <5203968D.7060508@freebsd.org> <7018AAA9-0A88-430F-96B7-867E5F529B36@bsdimp.com> <50BE6942-CC39-413C-8E14-C6B93440901B@grondar.org> <20130808211657.GC95000@dragon.NUXI.org> <94E41175-EF09-47D1-9661-9AF04E8FA9A0@grondar.org> <20130808215853.2288458097@chaos.jnpr.net> <20130809013346.GG95000@dragon.NUXI.org>

next in thread | previous in thread | raw e-mail | index | archive | help

On Thu, 8 Aug 2013 18:33:46 -0700, "David O'Brien" writes:
>I may have misunderstood what you're saying.  But if not, you're
>not allowing for one using .ko's to have this functionality.

I'm simply saying that if you can arrange for a build failure instead
of producing a toxic system, it becomes much simpler to assure folk
that you cannot do them harm with these changes.

If you can't then it might be wise to leave a default like yarrow in
place, that can be used as a fallback if no (or until) suitable .ko's
are loaded?

>'sysctl kern.random.adaptors' showing an empty list does provide
>a bread crumb.  /etc/rc.d/initrandom could certainly check this
>value and complain loudly.

That's probably a bit too late though isn't it.




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20130809062603.2053E58097>