[Cryptography] Is Ron right on randomness

Jeremy Stanley fungi at yuggoth.org
Wed Nov 30 15:23:31 EST 2016


On 2016-11-30 05:59:24 -0800 (-0800), Bill Cox wrote:
> On Sat, Nov 26, 2016 at 6:38 AM, Salz, Rich <rsalz at akamai.com> wrote:
[...]
> > Meanwhile, back in the real world... What should OpenSSL do,
> > given the wide number of platforms and huge uninformed community
> > that depends on it, do?
> 
> I just learned on another thread that Linux provided a fixed API.
> The new right answer on Linux is to call getrandom
[...]

Looks like libressl-portable already started doing that a couple
years ago:

    https://github.com/libressl-portable/openbsd/commit/91858fc

Similar effort for OpenSSL seems to be under discussion:

    https://github.com/openssl/openssl/issues/898

-- 
Jeremy Stanley


More information about the cryptography mailing list