Subject: Re: add rnd(4) to install floppy
To: David Brownlee <abs@netbsd.org>
From: None <itojun@iijlab.net>
List: tech-security
Date: 09/05/2003 17:17:44
>> 	(switching the mailing list)
>> 	i'd propose to add rnd(4) to every installation floppy kernel,
>> 	because of the following reason:
>>
>> > 	seriously, we should consider adding rnd(4) device to installation
>> > 	kernel -
>> > 	(1) every password generator uses random number as seed so passwd(1)
>> > 	called from sysinst (for root password!) needs rnd(4).
>> > 	(2) we may want to generate ssh host keys in boot floppy.
>
>	Some install media are already on the limits on small memory
>	machines. Maybe this could be conditional on larger install
>	options?

	if the install media does not use sysinst and does not include
	passwd(1), i think it okay to omit rnd(4), as we won't configure
	password using that kernel.

itojun