Skip site navigation (1)Skip section navigation (2)
Date:      Fri, 9 Aug 2013 08:29:10 +0100
From:      Mark R V Murray <mark@grondar.org>
To:        obrien@freebsd.org
Cc:        Arthur Mesh <arthurmesh@gmail.com>, Scott Long <scott4long@yahoo.com>, secteam@freebsd.org, freebsd-arch@freebsd.org
Subject:   Re: random(4) plugin infrastructure for mulitple RNG in a modular fashion
Message-ID:  <71489715-FB89-48CA-8DD6-88AEEA996EA9@grondar.org>
In-Reply-To: <20130808214033.GE95000@dragon.NUXI.org>
References:  <20130807183516.GC79319@dragon.NUXI.org> <1EDB5C8E-5755-4A8A-89F1-A64412080744@yahoo.com> <20130808205514.GA95000@dragon.NUXI.org> <1F5C260F-DA73-4D71-BB4B-E749BA9DEB57@grondar.org> <20130808214033.GE95000@dragon.NUXI.org>

next in thread | previous in thread | raw e-mail | index | archive | help

[-- Attachment #1 --]

On 8 Aug 2013, at 22:40, David O'Brien <obrien@FreeBSD.org> wrote:

> On Thu, Aug 08, 2013 at 10:22:42PM +0100, Mark R V Murray wrote:
>> Mechanism exists, but its disabled. I'd like to re-enable it. Look for
>> "seeded = 1" in randomdev_soft.c, and see what that "seeded" variable
>> does.
> 
> Hi Mark,
> I'm not sure what you're saying here.  That we could block at boot for
> reason of the PRGN not being seeded if desired?

Correct!

> Or that we start seeded and thus never get unseeded?

That is what we currently do. We "fix" it by pumping junk into /dev/random with initrandom, but this is racey and suboptimal.

M
-- 
Mark R V Murray


[-- Attachment #2 --]
-----BEGIN PGP SIGNATURE-----
Version: GnuPG/MacGPG2 v2.0.20 (Darwin)
Comment: GPGTools - http://gpgtools.org

iQCVAwUBUgSaUd58vKOKE6LNAQpP+wP+M9oIujCWbyHzOu5xL0cnybRsZBSXZnBC
URVYFpnb+rfQU2C+h5tD+1p+PSBGhaZGtLel6ewssh1/3hvdphUuckgBNIrzJ+q5
pltL2lXrr87dd1GPdfoiUZYzR4zgUamU97sIamRG34PqixaUjArADfsutvZYce6k
ALAL5oG8oGA=
=0Gsa
-----END PGP SIGNATURE-----

Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?71489715-FB89-48CA-8DD6-88AEEA996EA9>