[exim-dev] [Bug 654] [GnuTLS] [patch] Use a random seed file…

Page principale
Supprimer ce message
Répondre à ce message
Auteur: Andreas Metzler
Date:  
À: exim-dev
Sujet: [exim-dev] [Bug 654] [GnuTLS] [patch] Use a random seed file to limit entropy usage
------- You are receiving this mail because: -------
You are on the CC list for the bug.

http://bugs.exim.org/show_bug.cgi?id=654




--- Comment #4 from Andreas Metzler <eximusers@???> 2008-01-21 17:59:30 ---
I have asked on gcrypt-devel now ...

> 2. Technically a spool directory can be shared - hence the
> localhost_number parameter.
> Having a hard coded file path means that in this case the
> seed file would also be shared.
> a. Is this a bad thing?


Yes, it should be avoided.

>   b. How do we mitigate it (either use localhost_number or
>      make the filename a parameter)
>   c. Should we make the file path a parameter anyway?


I think we should not have a dedicated option for this, it feels too lowlevel
to me.


--
Configure bugmail: http://bugs.exim.org/userprefs.cgi?tab=email