Philip Pemberton wrote, On 10/10/2007 23:06:

 >    I'm having some issues with Cherokee (0.5.5.dfsg-2 on Debian
 > 4.0/Etch, ARM CPU -- Linux 2.6.18-5-ixp4xx armv5tel). More
 > specifically, the SSL code is using /dev/random as an entropy
 > source, and blocking when it runs out of randomness. Thus, any SSL
 > connections grind to a screeching halt pretty quickly.

I "fixed" this in trunk a few weeks ago. I do not remember the details
right now, although it was a GNUTLS variable/call to define what type
random number source ought to be used.

Now trunk behaves properly, but it's suppose to be slightly easier to
crack because of the quality of the random numbers.

I do not think we can do much here. This is a problem that we are
inheriting from either GNUTLS or OpenSSL.

 > FWIW, I'm also building 0.5.6 for Etch/arm5tel, and might have a go
 > at building one of the 0.6 CVS releases to play with too. Assuming
 > Alvaro doesn't mind, I'll put the .deb files online later.

I would be delighted!! :-)

-- 
Greetings, alo.
http://www.alobbs.com
_______________________________________________
Cherokee mailing list
[email protected]
http://cherokee-project.com/cgi-bin/mailman/listinfo/cherokee

Reply via email to