
Doug Barton dougb at FreeBSD.org
Wed Aug 22 07:02:53 UTC 2012

On 8/21/2012 10:22 PM, Gleb Kurtsou wrote:
> In my experience using *single* explicit entropy source was often a
> requirement. In some cases it was even forbidden to use internal PRNG of
> any sort, you had to wait for external randomness to become available.
> Anyway mixing several entropy sources was never acceptable. You either
> have good entropy/randomness source or not.

Been there, done that. :)  Hence my suggestion that we make it possible
for a dedicated device to be the sole feeder for /dev/random as one of
the three possible options.



    I am only one, but I am one.  I cannot do everything, but I can do
    something.  And I will not let what I cannot do interfere with what
    I can do.
			-- Edward Everett Hale, (1822 - 1909)

More information about the freebsd-arch mailing list