JV Roig Profile picture
I make stuff. Security, crypto, others.
Sep 15, 2018 17 tweets 7 min read
@AaronToponce (1/n) Yeah, more stuff doesn't have AES-NI, and the spec cripples the performance anyway, so it doesn't matter.

There is an interesting discussion here (userspace rng vulns, urandom, etc) but first, here: research.jvroig.com/linuxrand/ Nutshell: 40 terabytes of randomness tested. @AaronToponce (2/n) Link has pre-print (to be presented in 2 weeks) and raw results that contribute hard data for devs to see that, quality-wise, dev/urandom and /dev/random produce indistinguishable output. You'll see that Thomas Ptacek link cited in reference (sockpuppet link you posted)