Re: [apache-ssl] Generating randomness in MacOSX Server
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [apache-ssl] Generating randomness in MacOSX Server



Ben Srour '00 wrote:
> 
> Has anyone here used egd in their SSL config file?
> 
> I have my entropy going to /tmp/entropy but when I switched /dev/random to
> /tmp/entropy in the configs I got the same error in the logs.
> 
> SSLRandomFile /tmp/entropy 1024
> SSLRandomFilePerConnection /tmp/entropy 1024
> 
> the entropy generator is working supposedly....all I get in my ssl error
> log is:
> (the same error that is in the faq on www.apache-ssl.org)
> [Fri Apr 28 16:24:08 2000] [error] SSL_accept failed
>   [Fri Apr 28 16:24:08 2000] [error] error:24064064:random number
> generator:SSLEAY_RAND_BYTES:prng not seeded
>   [Fri Apr 28 16:24:08 2000] [error] error:04069003:rsa
> routines:RSA_generate_key:BN lib
>   [Fri Apr 28 16:24:08 2000] [error] error:1409B444:SSL
> routines:SSL3_SEND_SERVER_KEY_EXCHANGE:error generating tmp rsa key
> 
> Anyone have any ideas?

Yep - EGD requires more than just simple reading. The next version of
Apache-SSL supports it. We should release it next week (would be sooner,
but I'm off to a conference tomorrow).

Cheers,

Ben.

--
http://www.apache-ssl.org/ben.html

Coming to ApacheCon Europe 2000? http://apachecon.com/