[Ach] Proposal of Random-number section

christian mock cm at coretec.at
Sat Nov 30 20:45:34 CET 2013

On Wed, Nov 27, 2013 at 08:48:49PM +0100, Ralf Schlatterbeck wrote:
> Attached I've written a proposal for the random-number section.
> I've tried to incorporate the information from the recent discussions.
> Please check if everything you care for is there.

Great section!

One thing I'd add in the linux subsection is that one can

cat /proc/sys/kernel/random/entropy_avail

and see how much (or little) entropy the kernel thinks it has. I think
it is instructive to see that even on a desktop machine (i.e. one with
much external user input) the entropy can be only about 100 bits.


Christian Mock                          Wiedner Hauptstr. 15
Senior Security Engineer                1040 Wien
CoreTEC IT Security Solutions GmbH      +43-1-5037273
FN 214709 z

CoreTEC: Web Application Audit - Damit so etwas nicht passiert!



More information about the Ach mailing list