Hi,

Lorenzo Hernández García-Hierro wrote:
> After reading and trying to work around the #88831 bug
> (http://bugs.gentoo.org/show_bug.cgi?id=88831), I realized that the
> automatic generation of passwords and alike is done by using just the
> $RANDOM bash function, which is pretty weak (among that, wrongly used,
> can cause some overhead).

Nice work, but do we really need that strong passwords? IMHO the
passwords generated by portage should be changed right after emerging
the piece of software anyway, although that might not be reality in many
cases :( I didn't have a closer look to the packages you listed, but i
hope those don't need a password for a unix account. Probably (just
guessing) they save the password in plain text anyway, so it wouldn't
matter that much...

Perhaps I'm just totally wrong.
-- 
gentoo-dev@gentoo.org mailing list

Reply via email to