3 ms·
The problem with /dev/urandom is that it's always available, even before any entropy was added. Fixing /dev/urandom to block until enough entropy is available o
by kroeckx 7y ago
The problem with /dev/urandom is that it's always available, even before any entropy was added. Fixing /dev/urandom to block until enough entropy is available once causes breakage like in the article. That is one of the reasons why getrandom() was added, so that existing applications can keep using the old and broken behavior but applications that care about the RNG being properly initialized can wait for it. So software that does crypto switched to it, and then things broke anyway.
- cat199 7y ago> Fixing /dev/urandom to block until enough entropy is available once causes breakage like in the article. ... not to mention it is the entire point of /dev/urandom .. if you want something to block for entropy, you use /dev/random. if you are using /dev/urandom, you are saying I want something 'randomly random' and I'm okay if I can't get something random enough..