PRNG design document?

Fri Aug 29 06:27:41 EDT 2003

Anton Stiglic wrote:

Subject: Re: PRNG design document?
>>     One issue to consider is whether the system
>>that includes the PRNG will ever need a FIPS-140-2
> As you mentioned, the FIPS-140-2 approved PRNG 
> are deterministic, they take a random seed and extend it
> to more random bytes.  But FIPS-140-2 has no 
> provision for generating the seed in the first place, 
> this is where something like Yarrow or the cryptlib
> RNG come in handy.

Actually, FIPS-140 _does_ have provision for seeding, at least for X9.17
(you use the time :-), but not for keying.




