Re: svn commit: r239598 - head/etc/rc.d

看板FB_security作者時間13年前 (2012/09/08 14:01), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串27/29 (看更多)
--P+33d92oIH25kiaB Content-Type: text/plain; charset=us-ascii Content-Disposition: inline Content-Transfer-Encoding: quoted-printable On 2012-Sep-04 15:59:45 -0700, Doug Barton <dougb@freebsd.org> wrote: >I'm not sure I agree with that, since the combination of lower quality >input (the boilerplate) and higher quality (changing numbers) still >provides more bits to stir the pool with. Even though the average >quality is lower over the total number of bits I still think it's >probably more valuable to pump in the higher quantity given the internal >chewing that Yarrow does with the bits. I don't understand the point of feeding boilerplate into Yarrow. Yes, it will stir Yarrow's internal state but it does so in a predictable way so it doesn't add any entropy. On the downside, it doesn't appear to be possible to queue more than 4KB of input every 100msec - excess input is just discarded. This implies that feeding boilerplate into /dev/random just increases the probability that real entropy will be discarded. --=20 Peter Jeremy --P+33d92oIH25kiaB Content-Type: application/pgp-signature -----BEGIN PGP SIGNATURE----- Version: GnuPG v2.0.19 (FreeBSD) iEYEARECAAYFAlBHvScACgkQ/opHv/APuIeYAgCgkpswJECvg09j61VhF5I/xqjb IYwAn1/NGKekUCoF9/YkelwcLZDWDDNE =r7Cu -----END PGP SIGNATURE----- --P+33d92oIH25kiaB--
文章代碼(AID): #1GIjyp1J (FB_security)
討論串 (同標題文章)
文章代碼(AID): #1GIjyp1J (FB_security)