From owner-freebsd-current Sun Jul 23 3:42:39 2000 Delivered-To: freebsd-current@freebsd.org Received: from grimreaper.grondar.za (grimreaper.grondar.za [196.7.18.138]) by hub.freebsd.org (Postfix) with ESMTP id 28BAE37B70C; Sun, 23 Jul 2000 03:42:29 -0700 (PDT) (envelope-from mark@grondar.za) Received: from grimreaper.grondar.za (localhost [127.0.0.1]) by grimreaper.grondar.za (8.9.3/8.9.3) with ESMTP id MAA00486; Sun, 23 Jul 2000 12:16:08 +0200 (SAST) (envelope-from mark@grimreaper.grondar.za) Message-Id: <200007231016.MAA00486@grimreaper.grondar.za> To: Kris Kennaway Cc: Poul-Henning Kamp , "Jeroen C. van Gelderen" , Mark Murray , current@FreeBSD.org Subject: Re: randomdev entropy gathering is really weak References: In-Reply-To: ; from Kris Kennaway "Sun, 23 Jul 2000 01:08:54 MST." Date: Sun, 23 Jul 2000 12:16:08 +0200 From: Mark Murray Sender: owner-freebsd-current@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG > On Sun, 23 Jul 2000, Poul-Henning Kamp wrote: > > > Obviously, if you need more randomness than a stock FreeBSD system > > can provide you with, you add hardware to give you more randomness. > > This won't help if it's fed through Yarrow. *BZZZZTTT!* Wrong. A good hardware RNG when fed at a high-enough rate through Yarrow can easily produce a continuous stream of what you need. (If we take that route, the current implementation may need to be tweaked a bit to stop reseeding after a period of unuse to avoid hammering the kernel too much; this needs careful thought). M -- Mark Murray Join the anti-SPAM movement: http://www.cauce.org To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-current" in the body of the message