[PATCH] Always read from /dev/urandom

Volker Lendecke Volker.Lendecke at SerNet.DE
Mon Oct 12 18:43:24 UTC 2015


On Tue, Oct 13, 2015 at 07:38:38AM +1300, Andrew Bartlett wrote:
> The main risk would seem to be the abort() on lack of access to
> /dev/urandom, it will be interesting to see if that finds places where
> Samba fell back to poor internal entropy in the past.

Right. But on the other hand -- why would open(/dev/urandom)
ever fail?

Volker

-- 
SerNet GmbH, Bahnhofsallee 1b, 37081 Göttingen
phone: +49-551-370000-0, fax: +49-551-370000-9
AG Göttingen, HRB 2816, GF: Dr. Johannes Loxen
http://www.sernet.de, mailto:kontakt at sernet.de



More information about the samba-technical mailing list