Skip site navigation (1)Skip section navigation (2)
Date:      Wed, 22 Aug 2012 00:02:49 -0700
From:      Doug Barton <dougb@FreeBSD.org>
To:        Gleb Kurtsou <gleb.kurtsou@gmail.com>
Cc:        Ben Laurie <ben@links.org>, Steve Kargl <sgk@troutmask.apl.washington.edu>, freebsd-arch@freebsd.org
Subject:   Re: /dev/random
Message-ID:  <50348419.8060604@FreeBSD.org>
In-Reply-To: <20120822052221.GA1692@reks>
References:  <CAG5KPzz4GQ2C_ky_qrDroQ4srGL4daW0OO-F3eOvvL-9AO6zoQ@mail.gmail.com> <20120820220243.GA96700@troutmask.apl.washington.edu> <CAG5KPzwBzWvDFDZqzT4masbknKfVe-rvdTd1h6ZxEoG90Rcxqg@mail.gmail.com> <20120820225504.GA78528@server.rulingia.com> <5033346C.3080907@FreeBSD.org> <20120821073931.GA99502@troutmask.apl.washington.edu> <CAG5KPzxd16k12adjsbtF5S7XTYk61rkv903nUc0ub=c0bHBKCg@mail.gmail.com> <20120822052221.GA1692@reks>

next in thread | previous in thread | raw e-mail | index | archive | help
On 8/21/2012 10:22 PM, Gleb Kurtsou wrote:
> In my experience using *single* explicit entropy source was often a
> requirement. In some cases it was even forbidden to use internal PRNG of
> any sort, you had to wait for external randomness to become available.
> Anyway mixing several entropy sources was never acceptable. You either
> have good entropy/randomness source or not.

Been there, done that. :)  Hence my suggestion that we make it possible
for a dedicated device to be the sole feeder for /dev/random as one of
the three possible options.

Doug

-- 

    I am only one, but I am one.  I cannot do everything, but I can do
    something.  And I will not let what I cannot do interfere with what
    I can do.
			-- Edward Everett Hale, (1822 - 1909)



Want to link to this message? Use this URL: <https://mail-archive.FreeBSD.org/cgi/mid.cgi?50348419.8060604>