From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: X-Spam-Checker-Version: SpamAssassin 3.4.0 (2014-02-07) on aws-us-west-2-korg-lkml-1.web.codeaurora.org X-Spam-Level: X-Spam-Status: No, score=-0.6 required=3.0 tests=DKIM_INVALID,DKIM_SIGNED, HEADER_FROM_DIFFERENT_DOMAINS,MAILING_LIST_MULTI,SPF_HELO_NONE,SPF_PASS, URIBL_BLOCKED autolearn=no autolearn_force=no version=3.4.0 Received: from mail.kernel.org (mail.kernel.org [198.145.29.99]) by smtp.lore.kernel.org (Postfix) with ESMTP id 9ED8EC49ED7 for ; Tue, 17 Sep 2019 00:34:57 +0000 (UTC) Received: from vger.kernel.org (vger.kernel.org [209.132.180.67]) by mail.kernel.org (Postfix) with ESMTP id 68F7220650 for ; Tue, 17 Sep 2019 00:34:57 +0000 (UTC) Authentication-Results: mail.kernel.org; dkim=fail reason="signature verification failed" (1024-bit key) header.d=codon.org.uk header.i=@codon.org.uk header.b="OddDl5cW" Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1732031AbfIQAey (ORCPT ); Mon, 16 Sep 2019 20:34:54 -0400 Received: from cavan.codon.org.uk ([93.93.128.6]:47627 "EHLO cavan.codon.org.uk" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1726118AbfIQAey (ORCPT ); Mon, 16 Sep 2019 20:34:54 -0400 X-Greylist: delayed 1828 seconds by postgrey-1.27 at vger.kernel.org; Mon, 16 Sep 2019 20:34:53 EDT DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=codon.org.uk; s=63138784; h=Subject:Message-ID:From:CC:To: Content-Transfer-Encoding:Content-Type:MIME-Version:References:In-Reply-To: Date:Sender:Reply-To:Content-ID:Content-Description:Resent-Date:Resent-From: Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:List-Id:List-Help: List-Unsubscribe:List-Subscribe:List-Post:List-Owner:List-Archive; bh=l3IKMcFp3pF8Yj9IbZO95fl3sTGVdQA6I+JoxhN1omQ=; b=OddDl5cWFC2aHqjj+QoVHM8VXp Ef6xGczkV0PZk0RwJ7ksQGn8r8hf9CkBoEie/n30/9xFrc4qQ97aZZ7qZRI6e3G5NyTQmRTJl+Koj znz1kFFLLDAaMJ4N3kyvB8Fa80oAeDk1x3wAqrxGy+2e5wOvkl2ipX5rDKasCPeeV2FI=; Received: from [2607:fb90:27d6:137c:ca37:9d20:ab62:c332] by cavan.codon.org.uk with esmtpsa (TLS1.2:ECDHE_RSA_AES_128_GCM_SHA256:128) (Exim 4.89) (envelope-from ) id 1iA0yL-00026n-Al; Tue, 17 Sep 2019 01:03:59 +0100 Date: Mon, 16 Sep 2019 17:03:42 -0700 User-Agent: K-9 Mail for Android In-Reply-To: References: <20190916014833.cbetw4sqm3lq4x6m@shells.gnugeneration.com> <20190916024904.GA22035@mit.edu> <20190916042952.GB23719@1wt.eu> <20190916061252.GA24002@1wt.eu> <20190916172117.GB15263@mit.edu> <20190916230217.vmgvsm6o2o4uq5j7@srcf.ucam.org> <20190916231103.bic65ab4ifv7vhio@srcf.ucam.org> MIME-Version: 1.0 Content-Type: text/plain; charset=utf-8 Content-Transfer-Encoding: quoted-printable To: Linus Torvalds CC: "Theodore Y. Ts'o" , Willy Tarreau , Vito Caputo , "Ahmed S. Darwish" , Lennart Poettering , Andreas Dilger , Jan Kara , Ray Strode , William Jon McCann , "Alexander E. Patrakov" , zhangjs , linux-ext4@vger.kernel.org, lkml From: Matthew Garrett Message-ID: X-SA-Do-Not-Run: Yes X-SA-Exim-Connect-IP: 2607:fb90:27d6:137c:ca37:9d20:ab62:c332 X-SA-Exim-Mail-From: mjg59@srcf.ucam.org Subject: Re: Linux 5.3-rc8 X-SA-Exim-Version: 4.2.1 (built Tue, 02 Aug 2016 21:08:31 +0000) X-SA-Exim-Scanned: No (on cavan.codon.org.uk); Unknown failure Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On 16 September 2019 16:18:00 GMT-07:00, Linus Torvalds wrote: >On Mon, Sep 16, 2019 at 4:11 PM Matthew Garrett >wrote: >> >> In one case we have "Systems don't boot, but you can downgrade your >> kernel" and in the other case we have "Your cryptographic keys are >weak >> and you have no way of knowing unless you read dmesg", and I think >> causing boot problems is the better outcome here=2E > >Or: In one case you have a real and present problem=2E In the other >case, people are talking hypotheticals=2E We've been recommending that people use getrandom() for key generation sin= ce it was first added to the kernel=2E Github suggests there are users in t= he wild - there's almost certainly more cases where internal code depends o= n the existing semantics=2E --=20 Matthew Garrett | mjg59@srcf=2Eucam=2Eorg