Re: monitoring entropy

Jeffrey B. Siegal (jbs@quiotix.com)
Tue, 14 Oct 1997 21:41:52 -0700


While we're on the topic of /dev/random, shouldn't the saved state file be
readable only by root (to prevent knowledge of the starting state stored in
the file combined with knowledge of the startup sequence from yielding
information about the resulting state of the randomizer)? There is no
mention of this in the comments in random.c, and RedHat release 4.2 (based on
2.0.30) leaves the file readable by all.