From owner-svn-src-all@freebsd.org Tue Apr 16 15:50:10 2019 Return-Path: Delivered-To: svn-src-all@mailman.ysv.freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2610:1c1:1:606c::19:1]) by mailman.ysv.freebsd.org (Postfix) with ESMTP id E121115764EF for ; Tue, 16 Apr 2019 15:50:09 +0000 (UTC) (envelope-from wlosh@bsdimp.com) Received: from mail-qk1-x72c.google.com (mail-qk1-x72c.google.com [IPv6:2607:f8b0:4864:20::72c]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (Client CN "smtp.gmail.com", Issuer "GTS CA 1O1" (verified OK)) by mx1.freebsd.org (Postfix) with ESMTPS id 7DFB76B874 for ; Tue, 16 Apr 2019 15:50:09 +0000 (UTC) (envelope-from wlosh@bsdimp.com) Received: by mail-qk1-x72c.google.com with SMTP id g1so12441859qki.5 for ; Tue, 16 Apr 2019 08:50:09 -0700 (PDT) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=bsdimp-com.20150623.gappssmtp.com; s=20150623; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=0g0RjS34/3cH4j/R9MxG0zJb0uG7JrC/U5HNj3Xk6g4=; b=yp7SZWxwvmWm9XApYkp2AswlIdDmAQZzoZvCwynMTf/GTP2qt0IJERcVJdNfmKYIhV FxhlLXrgpzP/0JPhxoD9jAlp5GvoTjVHl4a13fRAPWcByh/PrPnHnnydwpqgv5d4qJcH XB9NEPDyRJzDvZlLpDfSG9A80y0u78zSz2YJ8n90uHncPFbLzwJIbGa38ZGlUCCV4E/w X59QN38C0XD/u+T58qQ5iyGrq8BPwn1d5Udiuzf7FwYC+WaxNqvczy1BqOn95pm9fElq 9QGwmmeRLAanV/MTAJ5eZdQLNaJre9Jom7iC7FQXwWSuELgWHB7oUyNVDpv0oXIN7rqV +K4A== X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=0g0RjS34/3cH4j/R9MxG0zJb0uG7JrC/U5HNj3Xk6g4=; b=DtgUjxi5PhQiDNG/myTrFYA0jgujGtFJk6b7GZImDO9sVPC4qM+vUU39f0S9uC339M oY3UwwlQ1XPR7jPCC35d2bZZVjtLfkuubdQaUUxpiNAbbGDLHMFqyZLqV9oa4u12Bh/v q7YsiNVL88qyKB/Kkp14EHYusYkZAQEUGLbCPkk1xSWOtTfmnqLclf9jJ7HcU0M9Yp/X Tmt4uaRUSNRyZEvjc3zw09zu8CC2kS81yoomf9s6LSpg9qbBVnORxRMcbhnepEsR57sG BwJBaiNAOEMiRKzvySxfzaKPjd1r/u6XgIRl7P++odKfCwqKPMomzrx7xoqyOCyW3Own u1fw== X-Gm-Message-State: APjAAAVHvNigZhEh5WQp/BuhrBVYBj2zV+FoYR1t1bEU/0jbdgoyrFf8 UcfW6CZS084M67Cj2cBBQU4Nc8Fu7kPzIBN3pseiRg== X-Google-Smtp-Source: APXvYqxtkg52BRk3b62Q+e1D6syBnLgp4oySSIEilBjJGlOsLC9gJWXvIhqCWv7cTomDVjzby9lZg2nZvSl41/Amk5E= X-Received: by 2002:a37:9e0d:: with SMTP id h13mr63733955qke.135.1555429809011; Tue, 16 Apr 2019 08:50:09 -0700 (PDT) MIME-Version: 1.0 References: <201904151840.x3FIeaEQ009242@repo.freebsd.org> <20190416092402.4288bc90@titan.knownspace> In-Reply-To: From: Warner Losh Date: Tue, 16 Apr 2019 09:49:58 -0600 Message-ID: Subject: Re: svn commit: r346250 - in head: share/man/man4 share/man/man9 sys/dev/random sys/kern sys/libkern sys/sys To: "Conrad E. Meyer" Cc: Justin Hibbits , src-committers , svn-src-all , svn-src-head X-Rspamd-Queue-Id: 7DFB76B874 X-Spamd-Bar: ------ Authentication-Results: mx1.freebsd.org X-Spamd-Result: default: False [-6.97 / 15.00]; REPLY(-4.00)[]; NEURAL_HAM_SHORT(-0.97)[-0.972,0]; NEURAL_HAM_MEDIUM(-1.00)[-1.000,0]; NEURAL_HAM_LONG(-1.00)[-1.000,0] Content-Type: text/plain; charset="UTF-8" X-Content-Filtered-By: Mailman/MimeDel 2.1.29 X-BeenThere: svn-src-all@freebsd.org X-Mailman-Version: 2.1.29 Precedence: list List-Id: "SVN commit messages for the entire src tree \(except for " user" and " projects" \)" List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Tue, 16 Apr 2019 15:50:10 -0000 On Tue, Apr 16, 2019 at 9:27 AM Conrad Meyer wrote: > On Tue, Apr 16, 2019 at 7:24 AM Justin Hibbits > wrote: > > > > Hi Conrad, > > ... > > [Power] does use bsdinstall to install. How is entropy loaded at > startup, > > which causes the problem noted in github? > > There are a couple very early load sources. loader(8) will load > early-boot entropy from /boot/entropy and pass it to the kernel as a > fake module (entropy_cache_load in loader.conf(5)), similar to > cpu_microcode early load. > > The fallback option is random(4) itself groping into the filesystem > during early auto-conf (SI_SUB_RANDOM:SI_ORDER_FOURTH, IIRC) to access > /boot/entropy directly. > SI_SUB_RANDOM is too early. It's at 0x2160000, while SI_SUB_ROOT_CONF doesn't happen until 0xb000000. > > If it's loaded before > > filesystems get mounted, that could be a problem for us, because /boot > > is on a different filesystem (msdosfs, to be read by petitboot). > > Petitboot also does not have a way to preload modules, so all we have > > at startup, until spawning init, is the kernel. > > Yes, that seems potentially problematic. Can the Power kernel access > the non-msdosfs root filesystem? Let's follow-up offline about > PPC-specific early entropy seeding. I would much prefer we figure out > a way to provide early entropy to Power than disabling or crippling > every early random consumer on the arch. Do you know what the Linux > folks do? > > On Power with darn, we could probably just spin in SI_ORDER_FOURTH > until we have enough darn output to seed random. Similar for x86 CI > images, I guess; though they do not have the loader problem, some > people have non-bsdinstall installation methods. > They do have the loader problem because many means to generate an image don't generate /boot/entropy. Warner