Will Newton wrote:Inevitably some of the local-machine entropy sources will be static or externally influenced. That's the whole point of using several. If using one source was sufficient... we would just use that one and be done with it. :) The questions to ask are * is this collective snapshot of local machine state sufficiently unique? * is this local-machine state externally controllable within realistic orders of complexity? netstat reflects local machine state of all sockets, including local ones, and including local details like tcp in-q and out-q. snmp can query MIBs such as ethernet wire stats, gaining entropy from pause/collision/etc. frame statistics. A set of mitigated network interrupt events is far, far more predictable and controllable than the collective state of a machine's network sockets, or the electrical state of the ethernet LAN link. For network-interrupt randomness to be subverted in some cases, one might need only to increase overall network traffic to a certain level. Jeff -- To unsubscribe from this list: send the line "unsubscribe netdev" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html
| David Miller | Re: [PATCH] Stop pmac_zilog from abusing 8250's device numbers. |
| Andrew Morton | Re: Dual-Licensing Linux Kernel with GPL V2 and GPL V3 |
| Greg Kroah-Hartman | [PATCH 010/196] Chinese: add translation of Codingstyle |
| Jan Engelhardt | intel iommu (Re: -mm merge plans for 2.6.23) |
| Gerrit Renker | [PATCH 27/37] dccp: Integration of dynamic feature activation - part 2 (server side) |
| David Miller | Re: [GIT]: Networking |
| Jarek Poplawski | Re: [PATCH] pkt_sched: Destroy gen estimators under rtnl_lock(). |
| Felix von Leitner | socket api problem: can't bind an ipv6 socket to ::ffff:0.0.0.0 |
git: | |
