rampart_generate_nonce should not use rand()
--------------------------------------------

                 Key: AXIS2C-273
                 URL: http://issues.apache.org/jira/browse/AXIS2C-273
             Project: Axis2-C
          Issue Type: Bug
          Components: rampart
    Affects Versions: Current (Nightly)
            Reporter: James Clark


It's not thread-safe and it's not cryptographically strong.  I believe openssl 
provides some functions for random number generation; use them instead.

-- 
This message is automatically generated by JIRA.
-
If you think it was sent incorrectly contact one of the administrators: 
http://issues.apache.org/jira/secure/Administrators.jspa
-
For more information on JIRA, see: http://www.atlassian.com/software/jira

        

---------------------------------------------------------------------
To unsubscribe, e-mail: [EMAIL PROTECTED]
For additional commands, e-mail: [EMAIL PROTECTED]

Reply via email to