Uploaded image for project: 'Axis2-C'
  1. Axis2-C
  2. AXIS2C-273

rampart_generate_nonce should not use rand()

    XMLWordPrintableJSON

Details

    • Bug
    • Status: Closed
    • Major
    • Resolution: Fixed
    • None
    • None
    • rampart
    • None

    Description

      It's not thread-safe and it's not cryptographically strong. I believe openssl provides some functions for random number generation; use them instead.

      Attachments

        Activity

          People

            kau Malinda Kaushalye Kapuruge
            jjc James Clark
            Votes:
            0 Vote for this issue
            Watchers:
            0 Start watching this issue

            Dates

              Created:
              Updated:
              Resolved: