[Cryptography] Proper Entropy Source

Jerry Leichter leichter at lrw.com
Wed Jan 22 19:28:30 EST 2020


>> I think relying on a combination of futex and ram latency benchmarks
>> would be enough to provide a reliable source of entropy.
> 
> Why do you think so?
> Is there any reason to imagine such a scheme would be portable?
> What happens if you guess wrong?
> Why not use some physical process that has some *provable*
> lower bound on the entropy density??????

We have the classic Knuth dictum (and example) telling (demonstrating to) us why we should not create (pseudo)random number generators "randomly."

Apparently we need a similar dictum/example for "true random number generators."

                                                        -- Jerry



More information about the cryptography mailing list