Rusty Russell wrote:
quoted text > Unfortunately not. Hardware randomness devices export /dev/hwrng, and it's up
> to userspace to feed that into /dev/random (or not). That's usually done by
> rngd, which at least on my system, assumes 1 bit of entropy per bit of data
> from /dev/hwrng by default.
>
> I was a little surprised that this decision was exported to userspace, but if
> you're not prepared to unconditionally trust hw rngs, it makes sense to palm
> it off.
Yeah, that's a bit of a pity. Hardware rngs can often generate really
crappy randomness, which needs tons of processing to remove noise like
50/60hz hum, etc.
quoted text > We could write a boutique device for virtualization which *did* feed
> directly, but that would be a little gauche.
>
Well, yes, we can certainly do any amount of processing we like to the
stuff provided to guests, so that the 1:1 bits/entropy ratio is as true
as we can make it.
J
--
unsubscribe notice To unsubscribe from this list: send the line "unsubscribe linux-kernel" in
the body of a message to
majordomo@vger.kernel.org
More majordomo info at
http://vger.kernel.org/majordomo-info.html
Please read the FAQ at
http://www.tux.org/lkml/
Messages in current thread:
Virt RNG? , Jeff Garzik , (Thu May 15, 11:48 am)
Re: [PATCH 2/2] lguest: virtio-rng support , Jeremy Fitzhardinge , (Mon May 19, 2:45 am)