Quotes of the week
[Posted September 5, 2013 by corbet]
Please people! When you post ssh addresses, always remember to also
post your user name and password or private key with the pull
request.
—
Linus Torvalds
I fail to see the benefit of just using the hardware random number
generator. We are already mixing in the hardware random number
generator into the /dev/random pool, and so the only thing that
using only the HW source is to make the kernel more vulnerable to
an attack where the NSA leans on a few Intel employee and
forces/bribes them to make a change such that the last step in the
RDRAND's AES whitening step is changed to use a counter plus a AES
key known by the NSA.
—
Ted Ts'o
(
Log in to post comments)