Bug#689490: openssl: using openssl from maintainer scripts creates /root/.rnd

2016-05-26 Thread Kurt Roeckx
On Thu, May 26, 2016 at 11:30:50PM +0200, Sebastian Andrzej Siewior wrote: > On 2016-05-26 23:11:13 [+0200], Kurt Roeckx wrote: > > > So do we feel like changing something or sitting that one out until post > > > new > > > RNG code? I *guess* a patch to allow using /dev/urandom instead of .rnd >

Bug#689490: openssl: using openssl from maintainer scripts creates /root/.rnd

2016-05-26 Thread Sebastian Andrzej Siewior
On 2016-05-26 23:11:13 [+0200], Kurt Roeckx wrote: > > So do we feel like changing something or sitting that one out until post new > > RNG code? I *guess* a patch to allow using /dev/urandom instead of .rnd will > > be deferred until the new RNG is there. > > I guess I didn't look close enough to

Bug#689490: openssl: using openssl from maintainer scripts creates /root/.rnd

2016-05-26 Thread Kurt Roeckx
On Thu, May 26, 2016 at 10:57:53PM +0200, Sebastian Andrzej Siewior wrote: > On 2016-05-26 00:28:05 [+0200], Kurt Roeckx wrote: > > > Kurt, what about dropping that .rnd thingy and going straight for > > > /dev/urandom as default? > > > If I read it right, it is just the internal seed. We would use

Bug#689490: openssl: using openssl from maintainer scripts creates /root/.rnd

2016-05-26 Thread Sebastian Andrzej Siewior
On 2016-05-26 00:28:05 [+0200], Kurt Roeckx wrote: > > Kurt, what about dropping that .rnd thingy and going straight for > > /dev/urandom as default? > > If I read it right, it is just the internal seed. We would use instead > > always what the 2KiB the OS gives us and never write it back. The rand

Bug#689490: openssl: using openssl from maintainer scripts creates /root/.rnd

2016-05-25 Thread Kurt Roeckx
On Thu, May 26, 2016 at 12:03:10AM +0200, Sebastian Andrzej Siewior wrote: > On 2012-10-03 18:05:21 [+0200], Kurt Roeckx wrote: > > > while doing piuparts tests I noticed several packages leaving around a > > > /root/.rnd file. The thing all these have in common is a (indirect) > > Oh, you want ran

Bug#689490: openssl: using openssl from maintainer scripts creates /root/.rnd

2016-05-25 Thread Sebastian Andrzej Siewior
On 2012-10-03 18:05:21 [+0200], Kurt Roeckx wrote: > > while doing piuparts tests I noticed several packages leaving around a > > /root/.rnd file. The thing all these have in common is a (indirect) > Oh, you want random users to write to root's .rnd file? That sounds > like a good idea. Kurt, wha

Bug#689490: openssl: using openssl from maintainer scripts creates /root/.rnd

2012-10-05 Thread Andreas Beckmann
On 2012-10-03 18:05, Kurt Roeckx wrote: > On Wed, Oct 03, 2012 at 11:43:48AM +0200, Andreas Beckmann wrote: >> I think this is a FHS violation, dropping anything in root's HOME. >> Wouldn't /var/lib/openssl/rnd be a more appropriate place? > > Oh, you want random users to write to root's .rnd file

Bug#689490: openssl: using openssl from maintainer scripts creates /root/.rnd

2012-10-03 Thread Kurt Roeckx
On Wed, Oct 03, 2012 at 11:43:48AM +0200, Andreas Beckmann wrote: > Package: openssl > Version: 1.0.1c-4 > Severity: important > User: debian...@lists.debian.org > Usertags: piuparts > > > Hi, > > while doing piuparts tests I noticed several packages leaving around a > /root/.rnd file. The thing

Bug#689490: openssl: using openssl from maintainer scripts creates /root/.rnd

2012-10-03 Thread Andreas Beckmann
Package: openssl Version: 1.0.1c-4 Severity: important User: debian...@lists.debian.org Usertags: piuparts Hi, while doing piuparts tests I noticed several packages leaving around a /root/.rnd file. The thing all these have in common is a (indirect) dependency on openssl: courier-mta-ssl cour