Skip site navigation (1)Skip section navigation (2)
Date:      Thu, 2 Oct 2003 12:10:11 +0100
From:      Matthew Seaman <matthew@cryptosphere.com>
To:        Panagiotis Astithas <past@noc.ntua.gr>
Cc:        James Adams <seventyforty@hotmail.com>
Subject:   Re: SSL on Java 1.4.1 native port
Message-ID:  <20031002111011.GC13305@happy-idiot-talk.infracaninophile.co.uk>
In-Reply-To: <3F7C0299.1000001@noc.ntua.gr>
References:  <Law14-F63x4FR0rmTIV00003acd@hotmail.com> <3F7C0299.1000001@noc.ntua.gr>

next in thread | previous in thread | raw e-mail | index | archive | help

--B4IIlcmfBL/1gGOG
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline
Content-Transfer-Encoding: quoted-printable

On Thu, Oct 02, 2003 at 01:48:57PM +0300, Panagiotis Astithas wrote:

> I' ve had similar symptoms using SSL+Tomcat and I overcame them using=20
> rndcontrol to put some more interrupts (ethernet & clock, IIRC) to seed=
=20
> the PRNG.

Using the clock interrupt won't introduce any randomness into the
PRNG... The randomness that is derived from interrupts comes out of
the unpredictability of the time gap between them.  That obviously
doesn't apply to the clock interrupt.

	Cheers,

	Matthew

--=20
Dr Matthew J Seaman MA, D.Phil.                       26 The Paddocks
                                                      Savill Way
PGP: http://www.infracaninophile.co.uk/pgpkey         Marlow
Tel: +44 1628 476614                                  Bucks., SL7 1TH UK

--B4IIlcmfBL/1gGOG
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.3 (FreeBSD)

iD8DBQE/fAeTdtESqEQa7a0RAqQGAKCTK+pcy1WsbOYaD3cWXnvOJOUhzACfRndB
XZ582XYFuAPWX/M/QfouL3s=
=DMU0
-----END PGP SIGNATURE-----

--B4IIlcmfBL/1gGOG--



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?20031002111011.GC13305>