看板FB_security
标 题Re: svn commit: r239569 - head/etc/rc.d
发信站NCTU CS FreeBSD Server (Sat Sep 15 04:50:32 2012)
转信站ptt!csnews.cs.nctu!news.cs.nctu!.cs.nctucs.nctu!.org!ownorg!owner-free
On Fri, Sep 14, 2012 at 8:22 PM, Mark Murray <
[email protected]> wrote:
> Ben Laurie writes:
>> > What??! Have you seen how Yarrow does its harvesting??
>>
>> If you XOR into the as-yet-unharvested buffer, then appropriately
>> aligned repeated input makes the buffer zero.
>
I have no idea what point you're trying to make.
> There is an "if"
"if you use your proposed solution"
> and an "appropriately" in there.
And the input happens to line up.
> The entropy is
> estimated as Zero anyway, in spite of getting "free" TSC jitter, and if
> this is an attack, the system is screwed to begin with.
What I am trying to do is extract whatever entropy there is in the
input. You appear to be saying that there's no point adding extra
entropy because it is estimated at zero. This makes no sense to me.
_______________________________________________
[email protected] mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-security
To unsubscribe, send any mail to "
[email protected]"