Re: anyone using security/dropbear?

From: Kris Kennaway (kris_at_obsecurity.org)
Date: 09/29/05

  • Next message: Poul-Henning Kamp: "Re: dev_lock() question"
    Date: Thu, 29 Sep 2005 14:14:13 -0400
    To: Brian Reichert <reichert@numachi.com>
    
    
    

    On Thu, Sep 29, 2005 at 02:10:55PM -0400, Brian Reichert wrote:
    > I've tried using the dropbear client (0.46), built both from source and
    > ports, and consistently get this message:
    >
    > dbclient: Warning: Reading the random source seems to have blocked.
    > If you experience problems, you probably need to find a better entropy
    > source.
    >
    > Googling for this diagnostic yields essentially no info, so I don't
    > know if there's something weird about my FBSD install (4.11-R).
    >
    > Has anyone seen this before, or have any advice on the matter?

    Check the source.. is it using /dev/urandom (which never blocks), or
    /dev/random (which I still don't think blocks, but may return short
    reads). Either way, it sounds like some level of application bug...it
    probably should be using the former source, but even if it's not, it
    shouldn't be blocking.

    Kris

    
    



  • Next message: Poul-Henning Kamp: "Re: dev_lock() question"

    Relevant Pages

    • anyone using security/dropbear?
      ... I've tried using the dropbear client, built both from source and ... ports, ... If you experience problems, you probably need to find a better entropy ...
      (freebsd-hackers)
    • Re: RELENG_8 buildworld broken?
      ... Note that most ports which DO benefit from specialized ... I have seen the really bad suggestion that somehow files not built due ... want a delete-old to try to delete the files installed from ports. ... install BIND from ports. ...
      (freebsd-stable)
    • Re: Compromised Windows Server
      ... running exchange for one client. ... has been built, during the build it was not open to the internet. ... servers. ... You mention that the machine is an Exchange server, yet it has ports 80 ...
      (Incidents)
    • Re: Building UNSTRIPPED binaries in ports?
      ... Dan Mahoney, System Admin wrote: ... I am encountering a bug with named-9.4.1-P1 that I am attempting to work with ISC on, that I have built from ports. ... I can't "roll my own" binary because it may be related to some way that the port is built so I need to maintain a similar build environment. ... Is there some make.conf or compile time flag that I can set that would prevent the stripping from happening? ...
      (freebsd-questions)
    • Re: [freebsd-stable] Re: Macromedia FLASH ...
      ... Mozilla (my preferred browser), Galeon, and Opera. ... recently built 4.9-STABLE and I use cvsup and portupgrade to keep all my ... ports closely syncronized. ... I have also a problem with java plug-in. ...
      (freebsd-stable)