Re: use of RDRAND in $random_library


Steve Langasek:
> Debian should do the right thing, regardless of what upstreams may believe.
I don't trust the hardware random generator. At all. Given what's been
revealed about the NSA so far, being extra paranoid about anything we
cannot verify to be secure is the right thing to do.

That being said, sometimes you just need the binary equivalent of an
uncompressible Lorem Ipsum text (dd if=/dev/urandom), but IMHO the kernel
could (and should) provide a device for that.

-- Matthias Urlichs

