Gentoo Archives: gentoo-hardened

From: "Joseph C. Lininger" <jbahm@××××××.net>
To: gentoo-hardened@l.g.o
Subject: Re: [gentoo-hardened] Running short of entropy...
Date: Mon, 08 Mar 2010 06:02:37
Message-Id: 4B948FD1.9050000@pcdesk.net
In Reply to: [gentoo-hardened] Running short of entropy... by Ed W
1 -----BEGIN PGP SIGNED MESSAGE-----
2 Hash: SHA256
3
4 > I think I may be running short of entropy, presumed due to SSP?
5 > Essentially I have two or three digit numbers from /proc/sys/kernel/random/entropy_avail
6
7 Try timer_entropyd. It's written by the same person who wrote
8 audio_entropyd and video_entropyd. The up side is you don't need any
9 special hardware and it will jump your available entropy up by quite a
10 bit. Not as good as a true hardware generator most likely, but probably
11 perfectly fine for your purposes.
12
13 http://www.vanheusden.com/te/
14
15 It's not available in portage, though I've been looking at writing an
16 ebuild for it. I am not a cryptographer, and can not speak as to the
17 quality of the random data. I have run FIPS tests on /dev/random with it
18 in use, however, and in the tests I ran no blocks of random data failed
19 the tests.
20 - --
21 Yes means no and no means yes. Delete all files [Y]?
22 Joseph C. Lininger, <jbahm@××××××.net>
23 -----BEGIN PGP SIGNATURE-----
24 Version: GnuPG v1.4.9 (MingW32)
25
26 iQEcBAEBCAAGBQJLlI/RAAoJEMh8jNraUiwqQLIH/izshiIa6U63AI6jmUXvd9Iq
27 fEhWJ3s5AvkdfxYZZ10LznqjOhmOQhtllrgFX+k/2fvJ869lJ3d9oGB1LVW3/ZyD
28 ACXC6XFfyFVJRTu1EE9BsF26p+Kow5pvc0m1Bmp9hep8KjHipwohSX/fgCQ45XET
29 3fmfZ6uJrvmmJMpy1b6SsbCUlXwvMmoz8Gx5BArbDDiaIra7v5d6iXg53TtCI5Y+
30 oONv1XqpqSYR07hhRrXIQ44h8iVyJAVjgtGlGx6H3LA4NmWzO/eix/9aS3xbPemU
31 6qKf1xyyTnTZoDOLhBqXVhQD1gk0qZWXuCjb5aA/MdSyNXt4AsGPJVQaOc2Fv+E=
32 =VxZe
33 -----END PGP SIGNATURE-----

Replies

Subject Author
Re: [gentoo-hardened] Running short of entropy... Ed W <lists@××××××××××.com>