[Box Backup] New openssl packages fix predictable random number generator

Bjarne Carlsen boxbackup@fluffy.co.uk
Wed, 14 May 2008 23:16:13 +0200


By letting OpenSSL generate 1024 random characters. It's the 'openssl
rand -out <idnumber>-FileEncKeys.raw 1024' command that is used.

Bjarne

ons, 14 05 2008 kl. 19:22 +0100, skrev Kenny Millington:
> Hi,
> 
> > However the data encryption key is probably not vulnerable to this attack 
> > and therefore your data should be safe even if your account is 
> > compromised.
> 
> So out of interest how is the data encryption key generated?
> 
> 
> Thanks,