Re: svn commit: r239569 - head/etc/rc.d

看板FB_security作者時間13年前 (2012/09/15 03:32), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串118/145 (看更多)
Ben Laurie writes: > > I'll send patches (untested) in a couple of hours for discussion. > > I used to like this idea, but it can break pretty badly if you repeat > input, so in the end I decided hashes were the only safe way. What??! Have you seen how Yarrow does its harvesting?? Presupposing there is no other source of randomness to get swamped out of the way, $ cat /dev/zero > /dev/random # pretend that /dev/zero is finite length. .... is harmless, and actually adds a small bit of perturbation to the entropy. Please explain how repeating input can "break" things here? M -- Mark R V Murray Pi: 132511160 _______________________________________________ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
文章代碼(AID): #1GKuOpy0 (FB_security)
討論串 (同標題文章)
文章代碼(AID): #1GKuOpy0 (FB_security)