[Pkg-openssl-devel] Bug#689490: openssl: using openssl from maintainer scripts creates /root/.rnd

Sebastian Andrzej Siewior sebastian at breakpoint.cc
Wed May 25 22:03:10 UTC 2016


On 2012-10-03 18:05:21 [+0200], Kurt Roeckx wrote:
> > while doing piuparts tests I noticed several packages leaving around a
> > /root/.rnd file. The thing all these have in common is a (indirect)
> Oh, you want random users to write to root's .rnd file?  That sounds
> like a good idea.

Kurt, what about dropping that .rnd thingy and going straight for
/dev/urandom as default?
If I read it right, it is just the internal seed. We would use instead
always what the 2KiB the OS gives us and never write it back. The random
data is still produce by openssl. And we would have a more random 1st
start than without it :)
It does not look like a loss.

> Kurt

Sebastian



More information about the Pkg-openssl-devel mailing list