Skip site navigation (1)Skip section navigation (2)
Date:      Sun, 18 Jun 2000 20:01:54 -0600
From:      Warner Losh <imp@village.org>
To:        "Jeroen C. van Gelderen" <jeroen@vangelderen.org>
Cc:        Mark Murray <mark@grondar.za>, Kris Kennaway <kris@FreeBSD.ORG>, current@FreeBSD.ORG
Subject:   Re: mktemp() patch 
Message-ID:  <200006190201.UAA52489@harmony.village.org>
In-Reply-To: Your message of "Fri, 09 Jun 2000 13:09:23 EDT." <394124C3.221E61BC@vangelderen.org> 
References:  <394124C3.221E61BC@vangelderen.org>  <Pine.BSF.4.21.0006072338550.73192-100000@freefall.freebsd.org> <200006081724.TAA00705@grimreaper.grondar.za> 

next in thread | previous in thread | raw e-mail | index | archive | help
In message <394124C3.221E61BC@vangelderen.org> "Jeroen C. van Gelderen" writes:
: Pseudo random numbers are so cheap (or they should be) that you 
: just don't want to try and 'optimize' here. It is much better to 
: be conservative and use a good PRNG until it *proves* to be very
: problematic.

I disagree with this strongly.  PRNG have proven time and time again
to weaken security due to their less than random nature.  It is my
judgement that going down this path would be very bad, especially when 
cryptographically strong random number generators exist and are part
of the base FreeBSD system.  We should just use those...

Warner


To Unsubscribe: send mail to majordomo@FreeBSD.org
with "unsubscribe freebsd-current" in the body of the message




Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?200006190201.UAA52489>