livemedia-creator: Remove random-seed from images (#1258986)

systemd uses /var/lib/systemd/random-seed to add entropy to /dev/urandom
at boot time. During image creation this file is created, and if not
removed everything using the image will be adding the same seed.

This is only additional entropy, NOT a seed in the sense of a starting
point for a PRNG, so it will be mixed with other entropy as the system
runs. It isn't a good idea to use the same value everywhere so make sure
it is removed in %post

Resolves: rhbz#1258986
This commit is contained in:
Brian C. Lane 2015-09-02 10:32:30 -07:00
parent bf255a41a5
commit 6f6af862c6
6 changed files with 21 additions and 0 deletions

View File

@ -28,6 +28,10 @@ clearpart --all --initlabel
# Disk partitioning information
part / --fstype="ext4" --size=3000
%post
# Remove random-seed
rm /var/lib/systemd/random-seed
%end
%packages --nocore --instLangs en
httpd

View File

@ -115,3 +115,7 @@ passwd -d root > /dev/null
%end
%post
# Remove random-seed
rm /var/lib/systemd/random-seed
%end

View File

@ -289,6 +289,8 @@ fi
echo 'File created by kickstart. See systemd-update-done.service(8).' \
| tee /etc/.updated >/var/.updated
# Remove random-seed
rm /var/lib/systemd/random-seed
%end
%post --nochroot

View File

@ -33,6 +33,9 @@ part swap --size=1000
%post
# Remove root password
passwd -d root > /dev/null
# Remove random-seed
rm /var/lib/systemd/random-seed
%end
%packages

View File

@ -33,6 +33,9 @@ part swap --size=1000
%post
# Remove root password
passwd -d root > /dev/null
# Remove random-seed
rm /var/lib/systemd/random-seed
%end
%packages

View File

@ -32,6 +32,11 @@ clearpart --all
# Disk partitioning information
part / --fstype="ext4" --size=3000
%post
# Remove random-seed
rm /var/lib/systemd/random-seed
%end
%packages
@core
kernel