> On 17 Dec 2009 at 0:55, shyam_i...@dell.com wrote:
> > Essentially what you are saying is that we haven't implemented the
> > secret's bit randomness calculation to check if has atleast 96bits
> > entropy.
> >
> No, I just wanted to point out that the quality of a secret key cannot
> simply be
> measured with "strlen(password)", and that 96 bits of randomness may
> require a
> longer string as one might initially have guessed.

Right I get you right then.. 

Don't want to rework on getting the entropy of the secret. Do you mind
open-sourcing it so we could do the checks as I detailed in the previous



