Skip to content

Mod random - #650

Closed
PilouGit wants to merge 3 commits into
apache:trunkfrom
PilouGit:mod_random
Closed

PilouGit wants to merge 3 commits into
apache:trunkfrom
PilouGit:mod_random

Conversation

@PilouGit

Copy link
Copy Markdown

An Apache module that generates cryptographically secure random base64-encoded strings and injects them as environment variables for use by applications and other modules.

@dune73

dune73 commented May 18, 2026

Copy link
Copy Markdown

Thank you.

@notroj

notroj commented May 20, 2026

Copy link
Copy Markdown
Collaborator

If it depends on OpenSSL and says it uses a CSPRNG I think it would be better to use RAND_bytes directly, which is actually a CSPRNG. No opinion really on adding it to httpd, you will have more flexibility maintaining this as a third-party module.

@PilouGit

Copy link
Copy Markdown
Author

I will have more flexibility maintaining this as a third-party module, that’s true. But my goal is to share this code with as many people as possible (nobody goes to my repo). In an industrial context, no one installs a third-party module if it’s not part of the httpd trunk.

@notroj

notroj commented Oct 7, 2026

Copy link
Copy Markdown
Collaborator

Given that that one bit of feedback here - use the actual CSPRNG API - was ignored - not sure there's much point leaving this open. I'd suggest again maintaining it as a third-party module, many other such modules exist and are widely distributed.

@notroj notroj closed this Oct 7, 2026
@dune73

dune73 commented Oct 7, 2026

Copy link
Copy Markdown

This is unfortunate, but understandable given the lack of interest.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants