OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: New entropy source proposal.

From: Richard Coleman (rcolemancriticalmagic.com)
Date: Tue Mar 08 2005 - 08:19:10 CST


Ian G wrote:
> You might want to check out:
>
> http://www.av8n.com/turbid/paper/turbid.htm
>
> There is some controversy over the new FreeBSD /dev/random system,
> is there any analysis of the system? I wasn't able to find anything
> from a brief search.
>
> iang

The FreeBSD /dev/random was originally based on the Yarrow paper that is
given as a reference in the paper above. But I think the current
implementation is more similar to to the version of Yarrow that is
discussed in Bruce Schneier's "Practical Cryptography". I'm not sure if
that is a coincidence or not.

The paper mentioned above only briefly mentions Yarrow, and doesn't
mention the FreeBSD implementation, so it's hard to compare the two.

At first glance, both systems appear strong.

Richard Coleman
rcolemancriticalmagic.com
_______________________________________________
freebsd-securityfreebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-security
To unsubscribe, send any mail to "freebsd-security-unsubscribefreebsd.org"