Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

Re: entropy + openSSL question

From: Seth Arnold <sarnold(at)wirex.com>
Date: Wed Feb 19 2003 - 13:38:43 EST

On Tue, Feb 18, 2003 at 10:32:15PM -0300, Felix Cuello wrote:
> Think about that... if you have enough entropy to do good keys, suppose

/dev/urandom on linux and openbsd will not block; they just print hashed versions of what is in the entropy pool. /dev/random on linux, and /dev/srandom on openbsd will block until entropy is available.

> Then... I start again with my first question. there´s a good way to

Robert M Love has put together some patches for the Linux kernel to add network interfaces to the device drivers that generate entropy for the random pool: http://www.tech9.net/rml/linux/ Note that this is of debatable value; since network traffic may be seen or even controlled by attackers, it may or may not add real entropy to the pool. You need to decide for yourself if this is a concern.

Cheers

-- 
Join the fight against terrorism by giving up your liberties today!

  • application/pgp-signature attachment: stored
Received on Wed Feb 19 17:41:35 2003
Do you need help?X

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:01:20 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library