From mboxrd@z Thu Jan 1 00:00:00 1970 From: Leo Famulari Subject: [PATCH 1/1] services: urandom-seed: Set umask to 077 while shutting down. Date: Sun, 29 May 2016 11:18:10 -0400 Message-ID: <0de3fd1e02890401dcd91f6804c097ca5ef549fb.1464534882.git.leo@famulari.name> References: Return-path: Received: from eggs.gnu.org ([2001:4830:134:3::10]:35565) by lists.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1b72UA-0005lq-Ne for guix-devel@gnu.org; Sun, 29 May 2016 11:18:39 -0400 Received: from Debian-exim by eggs.gnu.org with spam-scanned (Exim 4.71) (envelope-from ) id 1b72U5-0007c3-7X for guix-devel@gnu.org; Sun, 29 May 2016 11:18:38 -0400 Received: from out3-smtp.messagingengine.com ([66.111.4.27]:33754) by eggs.gnu.org with esmtp (Exim 4.71) (envelope-from ) id 1b72U2-0007Ze-Rr for guix-devel@gnu.org; Sun, 29 May 2016 11:18:33 -0400 Received: from localhost.localdomain (c-73-188-17-148.hsd1.pa.comcast.net [73.188.17.148]) by mail.messagingengine.com (Postfix) with ESMTPA id 7103CF2A6A for ; Sun, 29 May 2016 11:18:19 -0400 (EDT) In-Reply-To: In-Reply-To: References: List-Id: "Development of GNU Guix and the GNU System distribution." List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: guix-devel-bounces+gcggd-guix-devel=m.gmane.org@gnu.org Sender: "Guix-devel" To: guix-devel@gnu.org * gnu/services/base.scm (urandom-seed-shepherd-service): Call 'umask'. --- gnu/services/base.scm | 1 + 1 file changed, 1 insertion(+) diff --git a/gnu/services/base.scm b/gnu/services/base.scm index a45f219..8ed40a4 100644 --- a/gnu/services/base.scm +++ b/gnu/services/base.scm @@ -461,6 +461,7 @@ stopped before 'kill' is called." (call-with-input-file "/dev/urandom" (lambda (urandom) (get-bytevector-n! urandom buf 0 512) + (umask #o077) (call-with-output-file #$%random-seed-file (lambda (seed) (put-bytevector seed buf))) -- 2.8.3