mirror of
https://git.hardenedbsd.org/hardenedbsd/HardenedBSD.git
synced 2024-12-23 10:06:25 +01:00
27a803d631
it can be used to reseed at boot time. This will greatly increase the chances that there will be sufficient entropy available at boot time to prevent long delays. For /etc/rc, remove the vmstat and iostat runs from the attempt to provide some cheesy randomness if the files fail, since those programs are dynamically linked, and ldd seems to want some randomness to do its magic. Guidance and parameters for this project were provided by Mark Murray, based on the requirements of the Yarrow algorithm. Some helpful suggestions for implementation (including the tip about iostat and vmstat) were provided by Sheldon Hearn. All blame for problems or mistakes is mine of course.
81 lines
1.3 KiB
Plaintext
81 lines
1.3 KiB
Plaintext
# $FreeBSD$
|
|
#
|
|
# Please see the file README before making changes to this file.
|
|
#
|
|
|
|
/set type=dir uname=root gname=wheel mode=0755
|
|
.
|
|
/set type=dir uname=operator gname=operator mode=0700
|
|
.entropy
|
|
..
|
|
/set type=dir uname=root gname=wheel mode=0755
|
|
bin
|
|
..
|
|
boot
|
|
defaults
|
|
..
|
|
kernel
|
|
..
|
|
modules
|
|
..
|
|
..
|
|
/set type=dir uname=root gname=wheel mode=0555
|
|
dev mode=0755
|
|
fd
|
|
..
|
|
..
|
|
/set type=dir uname=root gname=wheel mode=0755
|
|
etc
|
|
defaults
|
|
..
|
|
periodic
|
|
daily
|
|
..
|
|
weekly
|
|
..
|
|
monthly
|
|
..
|
|
..
|
|
ssh
|
|
..
|
|
ssl
|
|
..
|
|
gnats
|
|
..
|
|
isdn mode=0700
|
|
..
|
|
kerberosIV
|
|
..
|
|
mail
|
|
..
|
|
mtree
|
|
..
|
|
namedb
|
|
# leave commented out until buildworld/installworld can
|
|
# handle new user ids
|
|
# s uname=bind gname=bind mode=0750
|
|
# ..
|
|
..
|
|
ppp
|
|
..
|
|
skel
|
|
..
|
|
uucp uname=uucp gname=uucp mode=0770
|
|
..
|
|
..
|
|
mnt
|
|
..
|
|
proc mode=0555
|
|
..
|
|
root
|
|
..
|
|
sbin
|
|
..
|
|
tmp mode=01777
|
|
..
|
|
usr
|
|
..
|
|
var
|
|
..
|
|
..
|