Groups | Search | Server Info | Keyboard shortcuts | Login | Register [http] [https] [nntp] [nntps]


Groups > linux.debian.user > #268549

Re: seeding /dev/random from a security key

From Björn Persson <Bjorn@xn--rombobjrn-67a.se>
Newsgroups linux.debian.user
Subject Re: seeding /dev/random from a security key
Date 2024-03-27 00:20 +0100
Message-ID <Imofg-1UrE-3@gated-at.bofh.it> (permalink)
References <IlZgS-1EC5-11@gated-at.bofh.it> <Im3aN-1H5X-5@gated-at.bofh.it> <Imhnr-1Q5r-13@gated-at.bofh.it> <Imitb-1QYf-5@gated-at.bofh.it>
Organization linux.* mail to news gateway

Show all headers | View raw


[Multipart message — attachments visible in raw view] - view raw

Jeffrey Walton wrote:
> For what you want to do, and if I am parsing it correctly... I would
> write a daemon in C [...]

Only in the unlikely case that both RNGD and SCDrand turn out unsuitable
somehow. Writing and compiling a daemon is no less work than compiling
an already written daemon.

> The part about extracting the entropy from the source would use
> OpenSSL or GnuPG. I believe you would compile and link to OpenSSL's
> libcrypto.{a|so}, or GnuPG's libgcrypt.{a|so}.

RNGD 6 actually uses OpenSC's libp11, where it calls the function
PKCS11_generate_random, which in turn calls the PKCS #11 function
C_GenerateRandom.

Björn Persson

Back to linux.debian.user | Previous | Next — Previous in thread | Next in thread | Find similar | Unroll thread


Thread

seeding /dev/random from a security key Björn Persson <Bjorn@xn--rombobjrn-67a.se> - 2024-03-25 21:40 +0100
  Re: seeding /dev/random from a security key Andy Smith <andy@strugglers.net> - 2024-03-25 22:30 +0100
    Re: seeding /dev/random from a security key eben@gmx.us - 2024-03-25 23:10 +0100
      Re: seeding /dev/random from a security key Greg Wooledge <greg@wooledge.org> - 2024-03-25 23:50 +0100
    Re: seeding /dev/random from a security key Björn Persson <Bjorn@xn--rombobjrn-67a.se> - 2024-03-26 00:20 +0100
  Re: seeding /dev/random from a security key Jeffrey Walton <noloader@gmail.com> - 2024-03-26 01:50 +0100
    Re: seeding /dev/random from a security key Björn Persson <Bjorn@xn--rombobjrn-67a.se> - 2024-03-26 17:00 +0100
      Re: seeding /dev/random from a security key Jeffrey Walton <noloader@gmail.com> - 2024-03-26 18:10 +0100
        Re: seeding /dev/random from a security key Björn Persson <Bjorn@xn--rombobjrn-67a.se> - 2024-03-27 00:20 +0100
          Re: seeding /dev/random from a security key Jeffrey Walton <noloader@gmail.com> - 2024-03-27 00:20 +0100

csiph-web