On Fri, Oct 20, 2000 at 10:06:37AM -0700, Mark Murray wrote: > > It seems I find the problem area. 4096 bytes written in rc.shutdown are > > not enough for reseeding. When I change them to 16384 bytes, it works! > > I'll commit working rc.shutdown variant. > > This is bogus. > > _Any_ randomness written to /dev/random is good enough to perturb the > sequence. > > Please do _not_ make that commit. Oops, sorry, already commited (I was not thinking it is principal, but it really fix potential security hole). I can back it out if you wish. But anything less then 16384 not reseed it. -- Andrey A. Chernov http://ache.pp.ru/ To Unsubscribe: send mail to [EMAIL PROTECTED] with "unsubscribe freebsd-current" in the body of the message