aboutsummaryrefslogtreecommitdiffstats
diff options
context:
space:
mode:
authorJack Lloyd <[email protected]>2016-03-06 11:44:04 -0500
committerJack Lloyd <[email protected]>2016-03-06 11:44:04 -0500
commit58c89ae470c68bf300ea937740c233e2b5715535 (patch)
tree4a3526a71f85f7591c77bb0064158c65189e6e32
parent5a09a129e3a10153e3201e8c5df2c223c58b1c4a (diff)
Add proc_walk, egd, Darwin entropy sources to policy.
Prohibit unix_procs in BSI policy. See discussion in GH #446
-rw-r--r--src/build-data/policy/bsi.txt8
-rw-r--r--src/build-data/policy/sane.txt12
2 files changed, 11 insertions, 9 deletions
diff --git a/src/build-data/policy/bsi.txt b/src/build-data/policy/bsi.txt
index cfb319f2a..f66dda215 100644
--- a/src/build-data/policy/bsi.txt
+++ b/src/build-data/policy/bsi.txt
@@ -48,16 +48,15 @@ clmul
# entropy sources
beos_stats
+cryptoapi_rng
darwin_secrandom
+dev_random
egd
+hres_timer
proc_walk
-unix_procs
rdrand
rdseed
-hres_timer
-dev_random
system_rng
-cryptoapi_rng
win32_stats
# utils
@@ -152,5 +151,6 @@ x919_mac
# rng
x931_rng
+unix_procs
</prohibited>
diff --git a/src/build-data/policy/sane.txt b/src/build-data/policy/sane.txt
index 3482296d6..f75242266 100644
--- a/src/build-data/policy/sane.txt
+++ b/src/build-data/policy/sane.txt
@@ -98,10 +98,8 @@ unix_procs
clmul
locking_allocator
-sha1_sse2
aes_ni
aes_ssse3
-noekeon_simd
serpent_simd
threefish_avx2
@@ -110,11 +108,15 @@ simd_sse2
simd_altivec
# entropy sources
+beos_stats
+cryptoapi_rng
+darwin_secrandom
+dev_random
+egd
+hres_timer
+proc_walk
rdrand
rdseed
-hres_timer
-dev_random
system_rng
-cryptoapi_rng
win32_stats
</if_available>