Skip site navigation (1)Skip section navigation (2)
Date:      Sat, 12 Oct 2013 16:44:14 +0000
From:      "Teske, Devin" <Devin.Teske@fisglobal.com>
To:        Mark R V Murray <mark@grondar.org>
Cc:        "svn-src-head@freebsd.org" <svn-src-head@freebsd.org>, "svn-src-all@freebsd.org" <svn-src-all@freebsd.org>, Devin Teske <dteske@freebsd.org>, "src-committers@freebsd.org" <src-committers@freebsd.org>, "Teske, Devin" <Devin.Teske@fisglobal.com>
Subject:   Re: svn commit: r256377 - in head: etc/defaults etc/rc.d share/examples/kld/random_adaptor share/man/man4 sys/boot/forth sys/conf sys/dev/glxsb sys/dev/hifn sys/dev/random sys/dev/rndtest sys/dev/safe ...
Message-ID:  <13CA24D6AB415D428143D44749F57D720FC5BF0D@LTCFISWMSGMB21.FNFIS.com>
In-Reply-To: <AF43CD01-BE33-4EE5-8414-22E6B8040BEC@grondar.org>
References:  <201310121257.r9CCvvjO006546@svn.freebsd.org> <CAJ-VmomMvW3k%2BD-t29nb9JByrE_rt7yXEyBnKzvN3KnhXjdXVw@mail.gmail.com> <13CA24D6AB415D428143D44749F57D720FC5BE74@LTCFISWMSGMB21.FNFIS.com> <AF43CD01-BE33-4EE5-8414-22E6B8040BEC@grondar.org>

next in thread | previous in thread | raw e-mail | index | archive | help

On Oct 12, 2013, at 9:39 AM, Mark R V Murray wrote:

>=20
> On 12 Oct 2013, at 17:35, "Teske, Devin" <Devin.Teske@fisglobal.com> wrot=
e:
>> Can you maybe test with ZFS + Geli? I'm concerned because we told it to =
use random(4)
>> instead of urandom(4). I hope there's enough entropy when creating the g=
eli stuff that
>> said process doesn't hang. I think DES's patch will help there too (not =
that anyone
>> testing our ZFS patches reported any hangs... including when testing GEL=
I -- this was
>> before DES's patch).
>=20
> urandom is a symlink to random.
>=20

Hmmm, interesting ;D

You know... for years I've been compiling a custom apache for $work and usi=
ng the
--with-random=3D/dev/urandom flag. And then recently in the past couple yea=
rs in 8.x
I recall having problems with a GnuPG related tool that would hang due to l=
ack of
entropy on a freshly installed box when generating "stuff" using random(4).

Are the days of choosing between urandom(4) and random(4) over?

Would SSL function great on a freshly installed box even if using random(4)=
 for
apache? (it wants to default to /dev/random anyways)
--=20
Devin

_____________
The information contained in this message is proprietary and/or confidentia=
l. If you are not the intended recipient, please: (i) delete the message an=
d all copies; (ii) do not disclose, distribute or use the message in any ma=
nner; and (iii) notify the sender immediately. In addition, please be aware=
 that any message addressed to our domain is subject to archiving and revie=
w by persons other than the intended recipient. Thank you.



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?13CA24D6AB415D428143D44749F57D720FC5BF0D>