From owner-freebsd-current Mon Jul 17 12:22: 8 2000 Delivered-To: freebsd-current@freebsd.org Received: from server.bitmcnit.bryansk.su (bitmcnit.bryansk.ru [195.239.213.9]) by hub.freebsd.org (Postfix) with ESMTP id 1826C37B560 for ; Mon, 17 Jul 2000 12:21:46 -0700 (PDT) (envelope-from alex@kapran.bitmcnit.bryansk.su) Received: (from uucp@localhost) by server.bitmcnit.bryansk.su (8.9.3/8.9.3) with UUCP id WAA02235; Mon, 17 Jul 2000 22:58:30 +0400 Received: (from alex@localhost) by kapran.bitmcnit.bryansk.su (8.9.3/8.9.3) id UAA07876; Mon, 17 Jul 2000 20:41:58 +0400 (MSD) (envelope-from alex@kapran.bitmcnit.bryansk.su) X-Authentication-Warning: kapran.bitmcnit.bryansk.su: alex set sender to alex@kapran.bitmcnit.bryansk.su using -f Date: Mon, 17 Jul 2000 20:41:58 +0400 From: Alex Kapranoff To: Leif Neland Cc: current@freebsd.org Subject: Re: randomdev entropy gathering is really weak Message-ID: <20000717204157.A7583@kapran.bitmcnit.bryansk.su> References: Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii Content-Disposition: inline User-Agent: Mutt/1.2i In-Reply-To: ; from leifn@neland.dk on Mon, Jul 17, 2000 at 05:08:35PM +0200 X-Operating-System: FreeBSD 5.0-CURRENT i386 Sender: owner-freebsd-current@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG On Mon, Jul 17, 2000 at 05:08:35PM +0200, Leif Neland wrote: > On Mon, 17 Jul 2000, Steve O'Hara-Smith wrote: > > On 17-Jul-00 Poul-Henning Kamp wrote: > > > NTP is the perfect way to gather entropy at bootup! > > > > Only if in reach of an NTP server ? > > > If you can't reach a NTP server, you are not connected to the internet. In > that case you don't need to worry so much about security... Flawed logic. That's cryptography. It's about information protection. And you of course know that about 80% of computer crimes are commited by local cow orkers in a LAN environment behind a twenty five firewalls, proxies and the like. -- Alex Kapranoff, 2:50/383.20@fidonet, Voice: +7(0832)791845. To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-current" in the body of the message