3 ms·
Your comment implies that Linus trusts Intel. This is not true, since the change is unnecessary even if they were infiltrated: "Long answer: we use rdrand as _
by a1a 13y ago
Your comment implies that Linus trusts Intel. This is not true, since the change is unnecessary even if they were infiltrated:
"Long answer: we use rdrand as _one_ of many inputs into the random pool, and we use it as a way to _improve_ that random pool. So even if rdrand were to be back-doored by the NSA, our use of rdrand actually improves the quality of the random numbers you get from /dev/random."
http://www.change.org/en-GB/petitions/linus-torvalds-remove-rdrand-from-dev-random-4/responses/9066 http://www.change.org/en-GB/petitions/linus-torvalds-remove-...
- lvh 13y agoThe conclusion is arguably correct, but the premise not so much. RDRAND isn't used as an input to the random.c pool: http://blog.lvh.io/blog/2013/10/19/thoughts-on-rdrand-in-linux/ http://blog.lvh.io/blog/2013/10/19/thoughts-on-rdrand-in-lin...