tech-userlevel archive

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index][Old Index]

Re: getrandom and getentropy



On Mon, May 11, 2020 at 04:16:12PM -0000, Michael van Elst wrote:
> nia%NetBSD.org@localhost (nia) writes:
> 
> >is insisting). All of that depends on assumptions and trust - it
> >does no measurement of the value of the entropy being provided.
> 
> Previously we could trust in random processes, whether the entropy
> estimation was scientific or not. We could also chose what source
> to trust.
> 
> Now we put all trust in loading a constant file.

That is not the case, because the data from the supposedly "random
processes" is still mixed into the pool.  We just don't make unsupportable
claims about how much entropy it contributed.



Home | Main Index | Thread Index | Old Index