Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 14 Jan 2001 02:33:05 +0200
From:      Mark Murray <mark@grondar.za>
To:        Matt Dillon <dillon@earth.backplane.com>
Cc:        Doug Barton <DougB@FreeBSD.org>, Robert Watson <rwatson@FreeBSD.org>, cvs-committers@FreeBSD.org, cvs-all@FreeBSD.org
Subject:   Re: cvs commit: src/etc crontab rc src/etc/defaults rc.conf src/etc/mtree BSD.root.dist src/libexec Makefile src/libexec/save-entropy Makefile save-entropy.sh 
Message-ID:  <200101140033.f0E0X4I21880@gratis.grondar.za>
In-Reply-To: <200101140007.f0E07G336509@earth.backplane.com> ; from Matt Dillon <dillon@earth.backplane.com>  "Sat, 13 Jan 2001 16:07:16 PST."
References:  <200101140007.f0E07G336509@earth.backplane.com> 

next in thread | previous in thread | raw e-mail | index | archive | help
>    It is inappropriate to force the entire developer community to hack up
>    their configurations to 'avoid' a problem that should not exist by
>    default.

A problem we avoid is sshd getting predictable numbers and being 
compromised.

>    It IS appropriate to have options to enable the new /dev/random code...
>    so developers can turn it on in /etc/rc.conf while it's under development
>    if they want to mess with it.  It is NOT appropriate to have it on by
>    default and to force developers to turn it off if they don't want to mess
>    with it.
> 
>    There is a big difference.  One creates havoc, one creates a smooth
>    development path.  Doug and Mark have chosen the wrong path.

Actually, Matt, we have chosen the above path. You just don't believe us
because we haven't finished.

You also ignore the security officer's input in this whole thing.

M
-- 
Mark Murray
Warning: this .sig is umop ap!sdn


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe cvs-all" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200101140033.f0E0X4I21880>