[openssl-dev] Plea for a new public OpenSSL RNG API

Blumenthal, Uri - 0553 - MITLL uri at ll.mit.edu
Tue Aug 29 15:06:12 UTC 2017


Could you please be more specific wrt. DRBG organization that in your opinion could impact the UI? 

NIST 90Ar1 seems specific enough on what functionality DRBG can provide to users, and it doesn't seem like a very elaborate or rich interface. Why would it change, regardless of what you may need to do with it internally?

Regards,
Uri

Sent from my iPhone

> On Aug 29, 2017, at 10:03, Salz, Rich via openssl-dev <openssl-dev at openssl.org> wrote:
> 
> 
>    dev asap. If there are problems with it we can always revert it before
>    it makes it into a release.
> 
> Someone on the OMC called that “flip-flopping” and seemed to be against this kind of thing.
> 
> If we are going to have an additional API, then we should at least see a draft of the header file first.
> 
> Keep in mind that the current DRBG organization might change, and we don’t want to lose that freedom.
> 
> 
> 
> -- 
> openssl-dev mailing list
> To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-dev
-------------- next part --------------
A non-text attachment was scrubbed...
Name: smime.p7s
Type: application/pkcs7-signature
Size: 4223 bytes
Desc: not available
URL: <http://mta.openssl.org/pipermail/openssl-dev/attachments/20170829/c6d84f80/attachment.bin>


More information about the openssl-dev mailing list