Re: Speed and security of /dev/urandom

看板FB_security作者時間11年前 (2014/07/20 06:32), 編輯推噓0(000)
留言0則, 0人參與, 最新討論串23/24 (看更多)
On Sat, 19 Jul 2014, Steven Chamberlain wrote: > Or if we're worried about draining entropy too quickly from the CSPRNG, > a non-privileged user could do that anyway from /dev/urandom, or it may > happen when a server doing crypto work is under stress? Can we please disabuse ourselves of the notion that entropy can be "drained too quickly" (or even drained at all) from the CSPRNG? Once properly seeded, it produces unpredictable bits. Period. It does not matter how many bits are output (well, for achievable quantities of output); the bits are still unpredictable. -Ben _______________________________________________ freebsd-security@freebsd.org mailing list http://lists.freebsd.org/mailman/listinfo/freebsd-security To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"
文章代碼(AID): #1Jol7Z-4 (FB_security)
討論串 (同標題文章)
文章代碼(AID): #1Jol7Z-4 (FB_security)