Speed and security of /dev/urandom

Steven Chamberlain steven at pyro.eu.org
Sat Jul 19 20:47:33 UTC 2014


On 19/07/14 20:26, Konstantin Belousov wrote:
> I think that using sysctl for non-management functionality is wrong.
> If this feature is for the libraries and applications, and not for
> system management and introspection utilities, it should be normal
> syscall.

If this is only to seed the arc4random in userland (with ~256 bytes or
so), it would be just like OpenBSD getentropy(2)?

Just yesterday, something very similar is proposed for Linux, called
getrandom(2):
http://lists.openwall.net/linux-kernel/2014/07/18/329

Regards,
-- 
Steven Chamberlain
steven at pyro.eu.org

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 551 bytes
Desc: OpenPGP digital signature
URL: <http://lists.freebsd.org/pipermail/freebsd-security/attachments/20140719/a25da66d/attachment.sig>


More information about the freebsd-security mailing list