From owner-freebsd-audit Tue Nov 30 7:50:36 1999 Delivered-To: freebsd-audit@freebsd.org Received: from spirit.jaded.net (spirit.jaded.net [216.94.113.12]) by hub.freebsd.org (Postfix) with ESMTP id 5515B14D85; Tue, 30 Nov 1999 07:50:31 -0800 (PST) (envelope-from dan@spirit.jaded.net) Received: (from dan@localhost) by spirit.jaded.net (8.9.3/8.9.3) id KAA02169; Tue, 30 Nov 1999 10:52:41 -0500 (EST) Date: Tue, 30 Nov 1999 10:52:41 -0500 From: Dan Moschuk To: Brad Knowles Cc: Kris Kennaway , Dan Moschuk , Bruce Evans , Mike Smith , audit@FreeBSD.ORG, Warner Losh Subject: Re: cvs commit: src/sys/i386/conf files.i386 src/sys/kern kern_fork.c src/sys/libkern arc4random.c src/sys/sys libkern.h Message-ID: <19991130105241.A279@spirit.jaded.net> References: Mime-Version: 1.0 Content-Type: text/plain; charset=us-ascii X-Mailer: Mutt 1.0i In-Reply-To: ; from blk@skynet.be on Tue, Nov 30, 1999 at 11:16:29AM +0100 Sender: owner-freebsd-audit@FreeBSD.ORG Precedence: bulk X-Loop: FreeBSD.ORG | > If we were to use Yarrow, we get the review for free by virtue of it being | > designed & reviewed by a professional cryptographer. | | Regardless of who the designer was, I think we need a review by | an independent third party. | | The fact that Yarrow is a respected professional cryptographer | would raise the bar and should make it less likely that there are | really glaring stupid problems, and might require that we find | someone of higher caliber than perhaps we might otherwise have sought | out. | | But I don't think this eliminates the need for a review by an | independent third party. Right, but I think you miss the point. Yarrow WILL be reviewed by third parties whether it is in our kernel or not. -- Dan Moschuk (TFreak!dan@freebsd.org) "Cure for global warming: One giant heatsink and dual fans!" To Unsubscribe: send mail to majordomo@FreeBSD.org with "unsubscribe freebsd-audit" in the body of the message