On Thu, 10 Jul 2008, Ian Goldberg wrote:

> The problem is that people run key generation with libgcrypt on machines
> that gather very little entropy into /dev/random, and key generation can
> literally take over an hour. 

On a desktop with IM client? They don't use disk or network IO, both of
which gather entropy (on linux)?
Which systems do people use that are so entropyless, and can we only
use /dev/urandom on those?


> I'm happy to use /dev/urandom instead,
> since the output of a PRNG that only gets, say, 200 bits of entropy,
> had better be indistinguishable from a truly random source.

I am not sure I understand this sentence with respect to random vs urandom.

Paul



-- 
To UNSUBSCRIBE, email to [EMAIL PROTECTED]
with a subject of "unsubscribe". Trouble? Contact [EMAIL PROTECTED]

Reply via email to