[rhelv6-list] Random seed on stateless system

John Haxby john.haxby at gmail.com
Fri Feb 27 10:12:37 UTC 2015


On 26 February 2015 at 20:31, Andrew Ruch <adruch2002 at gmail.com> wrote:

>
> I have a question about how the handle the random-seed file on a
> stateless system. I get RHEL6 installed and configured as desired and
> then switch to a stateless system using /etc/sysconfig/readonly-root.
> During the install process, /var/lib/random-seed is generated. This
> file is also read and written to during startup/shutdown via
> rc.sysinit and halt.
>
> However, once the system is stateless, this file can never be modified
> again. Is it better for this file to exist on a stateless system and
> every boot will feed /dev/urandom the same seed? Or should this file
> be deleted so no seed exists?



I'd be very surprised if a read-only /var worked.   All kinds of things
expect to be able to write files there.   /var/lib is comparatively static,
but not entirely static (/var/lib/random-seed is the obvious one).

jch
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://listman.redhat.com/archives/rhelv6-list/attachments/20150227/896d53b0/attachment.htm>


More information about the rhelv6-list mailing list