[openssl-dev] Plea for a new public OpenSSL RNG API

Salz, Rich rsalz at akamai.com
Tue Aug 29 20:44:11 UTC 2017


➢ But now we just ignore it and assume every bit with get contains 1
➢     bit of randomness and we're sundenly seriously overestimating the
➢     amount of randomness we're getting. This is a documented public API,
➢     you can't just go and ignore this parameter.
    
Sure I can.  Because the DRBG seeds from the system anyway



More information about the openssl-dev mailing list