Re: [PATCH 2/5] clocksource: add support for entropy-generation function

2011-06-17 Thread Jarod Wilson
Thomas Gleixner wrote: On Mon, 13 Jun 2011, Jarod Wilson wrote: Add a new function pointer to struct clocksource that can optionally be filled in by clocksources deemed to be high enough resolution to feed the random number generator entropy pool. Uurrg. + * @entropy: random entrop

Re: [PATCH 5/5] misc: add clocksource-based entropy generation driver

2011-06-17 Thread Thomas Gleixner
On Mon, 13 Jun 2011, Jarod Wilson wrote: > This is a fairly simple driver that just starts up a kernel thread that > periodically calls the active clocksource's entropy-gathering function, > if it has one. The default interval of 100us between polls doesn't show > any measurable impact to cpu usage

Re: [PATCH 4/5] tsc: wire up entropy generation function

2011-06-17 Thread Thomas Gleixner
On Mon, 13 Jun 2011, Venkatesh Pallipadi wrote: > On Mon, Jun 13, 2011 at 3:06 PM, Jarod Wilson wrote: > > TSC is high enough resolution that we can use its low-order byte to > > stir new data into the random number generator entropy pool. > > >From what I vaguely remember from years past, rdt

Re: [PATCH 2/5] clocksource: add support for entropy-generation function

2011-06-17 Thread Thomas Gleixner
On Mon, 13 Jun 2011, Jarod Wilson wrote: > Add a new function pointer to struct clocksource that can optionally be > filled in by clocksources deemed to be high enough resolution to feed > the random number generator entropy pool. Uurrg. > + * @entropy: random entropy pool addition funct

Re: [PATCH 0/5] Feed entropy pool via high-resolution clocksources

2011-06-17 Thread Matt Mackall
On Fri, 2011-06-17 at 15:29 -0400, Neil Horman wrote: > On Fri, Jun 17, 2011 at 02:51:31PM -0400, Jarod Wilson wrote: > > Matt Mackall wrote: > > >On Wed, 2011-06-15 at 10:49 -0400, Jarod Wilson wrote: > > >>Matt Mackall wrote: > > >>>On Tue, 2011-06-14 at 18:51 -0400, Jarod Wilson wrote: > > M

Re: [PATCH 0/5] Feed entropy pool via high-resolution clocksources

2011-06-17 Thread Matt Mackall
On Fri, 2011-06-17 at 12:48 -0700, h...@zytor.com wrote: > On 06/14/2011 04:12 PM, Matt Mackall wrote: > > > > Various people have offered to spend some time fixing this; I haven't > > had time to look at it for a while. > > > > So on my (long...) list of things to do for a while is enablement o

Re: [PATCH 0/5] Feed entropy pool via high-resolution clocksources

2011-06-17 Thread hpas
On 06/14/2011 04:12 PM, Matt Mackall wrote: > > Various people have offered to spend some time fixing this; I haven't > had time to look at it for a while. > So on my (long...) list of things to do for a while is enablement of RDRAND, which is a new instruction in Ivy Bridge disclosed in the lat

Re: [PATCH 0/5] Feed entropy pool via high-resolution clocksources

2011-06-17 Thread Neil Horman
On Fri, Jun 17, 2011 at 02:51:31PM -0400, Jarod Wilson wrote: > Matt Mackall wrote: > >On Wed, 2011-06-15 at 10:49 -0400, Jarod Wilson wrote: > >>Matt Mackall wrote: > >>>On Tue, 2011-06-14 at 18:51 -0400, Jarod Wilson wrote: > Matt Mackall wrote: > >>... > >But that's not even the point. E

Re: [PATCH 0/5] Feed entropy pool via high-resolution clocksources

2011-06-17 Thread Jarod Wilson
Matt Mackall wrote: On Wed, 2011-06-15 at 10:49 -0400, Jarod Wilson wrote: Matt Mackall wrote: On Tue, 2011-06-14 at 18:51 -0400, Jarod Wilson wrote: Matt Mackall wrote: ... But that's not even the point. Entropy accounting here is about providing a theoretical level of security above "crypt