From owner-freebsd-hackers@FreeBSD.ORG Fri May 31 12:26:41 2013 Return-Path: Delivered-To: freebsd-hackers@freebsd.org Received: from mx1.freebsd.org (mx1.freebsd.org [IPv6:2001:1900:2254:206a::19:1]) by hub.freebsd.org (Postfix) with ESMTP id A1FBA7B2 for ; Fri, 31 May 2013 12:26:41 +0000 (UTC) (envelope-from dirkx@webweaving.org) Received: from pikmeer.webweaving.org (pikmeer.webweaving.org [178.18.23.51]) by mx1.freebsd.org (Postfix) with ESMTP id 3EBC0CEE for ; Fri, 31 May 2013 12:26:40 +0000 (UTC) Received: from beeb.leiden.webweaving.org (5ED28243.cm-7-3c.dynamic.ziggo.nl [94.210.130.67]) (authenticated bits=0) by pikmeer.webweaving.org (8.14.5/8.14.5) with ESMTP id r4VCQdv9081297 (version=TLSv1/SSLv3 cipher=AES128-SHA bits=128 verify=NO); Fri, 31 May 2013 12:26:39 GMT (envelope-from dirkx@webweaving.org) Content-Type: text/plain; charset=us-ascii Mime-Version: 1.0 (Mac OS X Mail 6.3 \(1503\)) Subject: Re: seeding randomness in zee cloud From: Dirk-Willem van Gulik In-Reply-To: <20130531130243.18fb9a30@gumby.homeunix.com> Date: Fri, 31 May 2013 14:26:39 +0200 Content-Transfer-Encoding: quoted-printable Message-Id: References: <0BF6FBDD-47E8-44F1-BA71-A355EDCDEDB6@webweaving.org> <20130531130243.18fb9a30@gumby.homeunix.com> To: RW X-Mailer: Apple Mail (2.1503) X-Greylist: Sender succeeded SMTP AUTH, not delayed by milter-greylist-4.2.5 (pikmeer.webweaving.org [178.18.23.51]); Fri, 31 May 2013 12:26:40 +0000 (UTC) Cc: freebsd-hackers@freebsd.org X-BeenThere: freebsd-hackers@freebsd.org X-Mailman-Version: 2.1.14 Precedence: list List-Id: Technical Discussions relating to FreeBSD List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , X-List-Received-Date: Fri, 31 May 2013 12:26:41 -0000 Op 31 mei 2013, om 14:02 heeft RW het = volgende geschreven: > On Fri, 31 May 2013 12:01:02 +0200 Dirk-Willem van Gulik wrote: >> # Seed Software random generator >> # >> cat rnd > /dev/random >=20 > To be on the safe side you should sleep for about 0.5 seconds after > this=20 >=20 >>=20 >> # Activate software random generator as an additional source >> sysctl kern.random.sys.harvest.swi=3D1 >=20 > IIRC this doesn't do anything Thanks. So the man page says: The kern.random.sys.harvest.swi variable is used to select software interrupts as an entropy source. A 0 (zero) value means software = inter- rupts are not considered as an entropy source. Set the variable to = 1 (one) if you wish to use them for entropy harvesting. but it is fair to assume that even when it is set to '0' (the default = observerd on 9.1-RELEASE) - that the randomness sent to /dev/random is = still mixed in ? Thanks, Dw.