[PATCH RFC] Disable save-entropy in jails

Paul Hoffman phoffman at proper.com
Tue Dec 24 22:36:04 UTC 2013


On Dec 24, 2013, at 12:44 PM, Xin Li <delphij at delphij.net> wrote:

> I think we shouldn't save entropy inside jails, as the data is not going
> to be used by rc script (pjd at 126744).  If there is no objections, I will
> commit this changeset on January 1, 2014.

Even if it is not used by an rc script, it might be used by some userland program (running as root, of course) that knows about the directory and wants some fresh entropy for its own use.

Is there a problem with saving the directory in jails? It certainly isn't taking up much space.

--Paul Hoffman


More information about the freebsd-current mailing list