VOTE Apply PR#9084 reverting DEVRANDOM_WAIT

Kurt Roeckx kurt at roeckx.be
Fri Jun 7 17:42:12 UTC 2019


On Fri, Jun 07, 2019 at 06:03:26PM +1000, Dr Paul Dale wrote:
> 
> My suggestion as a fallback would be Stephan Müller’s CPU Jitter <http://chronox.de/jent/doc/CPU-Jitter-NPTRNG.html>.  He’s collected a large corpus of data from many processors and the scheme works relatively quickly.

I don't think we should be collecting entropy from CPU jitter
ourself. If that's something useful, it should be up to the OS
to provide it to us. But it seems highly unlikely that that will
happen since there seems to be little trust in that it actually
provides the entropy.


Kurt



More information about the openssl-project mailing list