[prev in list] [next in list] [prev in thread] [next in thread] 

List:       kroupware
Subject:    Re: sasl ldap problem
From:       Sascha Wilde <wilde () intevation ! de>
Date:       2006-11-17 8:43:12
Message-ID: s7wodr6o44f.fsf () intevation ! de
[Download RAW message or body]

[Attachment #2 (multipart/signed)]

Content-Transfer-Encoding: quoted-printable

Divan Santana <Divan.Santana@gmail.com> writes:

> I am glad to contribute this fix back. I hope someone finds it useful.
> I think it might be kubuntu specific.
>
> http://www.kolab.org/pipermail/kolab-users/2006-February/004394.html
> mv /dev/random /dev/random.backup
> ln -s /dev/urandom /dev/random

Please note that this "fix" introduces serious security issues!

It replaces the widely used user land interface to a source of "true"
randomness with one, which will instrument a pseudo random generator
when running out of entropy.  See random(4) for further information.

This will not only affect POP3S and other SSL secured network
protocols, but many (any?) other cryptographic applications (for
example GnuPG) running on the host, too.

So please DON'T DO THIS until you are running _only_ applications with
low security requisitions on the system in question.

cheers
sascha
-- 
Sascha Wilde                                 Intevation GmbH

wilde@intevation.de                          intevation@intevation.de
http://www.intevation.de/~wilde/             http://www.intevation.de/

[Attachment #5 (application/pgp-signature)]

_______________________________________________
Kolab-users mailing list
Kolab-users@kolab.org
https://kolab.org/mailman/listinfo/kolab-users


[prev in list] [next in list] [prev in thread] [next in thread] 

Configure | About | News | Add a list | Sponsored by KoreLogic