NSS libraries prevent prelinking?

Ulrich Drepper drepper at redhat.com
Thu Apr 23 14:07:10 UTC 2009


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Bill Crawford wrote:
> Is there any way to avoid this? As time goes on, more and more programs and 
> plugins (like the kde address book / calendar) are relying on encryption and / 
> or signing, and starting to link against nss.

IMO this policy to prevent prelinking should be optional.  I certainly
don't need the self-testing of NSS on my system .  I trust prelink and
if someone can change the NSS libs, s/he can do much worse things, too.

I think the self-testing in NSS should be done only in FIPS mode.

- --
➧ Ulrich Drepper ➧ Red Hat, Inc. ➧ 444 Castro St ➧ Mountain View, CA ❖
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)

iEYEARECAAYFAknwdg4ACgkQ2ijCOnn/RHRyXgCfSMGfcEywognvQsda+y6HdQWO
ueYAn1Fgdp//44k3HElL/C624cj/dD/E
=goTb
-----END PGP SIGNATURE-----




More information about the fedora-test-list mailing list