-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Hello Rickard,

Rickard Bellgrim wrote:
> 
> What worries me is, as a user of OpenDNSSEC, is that it is not 
> transparent which entropy source is used. There might be an
> compile-time or run-time option to Botan to influence or force the
> selection, but I'm not an expert in Botan.
> 
> 
> OpenDNSSEC just uses an HSM. It has no knowledge of the entropy
> source. Any checks should thus go into SoftHSM which is the one using
> Botan.
> 

Sorry, yes, my fault.

I still see SoftHSM as a part of OpenDNSSEC.

- -- Carsten
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.14 (Darwin)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/

iEUEARECAAYFAlIkVcYACgkQElgUYvSqn/RgowCYjA6uSl3MoVflyvRlzFX3LYKh
PgCfUSijWBP7BfU/MUm+MRix9cmN6iA=
=D6ah
-----END PGP SIGNATURE-----
_______________________________________________
Opendnssec-user mailing list
[email protected]
https://lists.opendnssec.org/mailman/listinfo/opendnssec-user

Reply via email to