> There have been a number of third-party evaluations of the hardware RNG in
> the new Pentium chip. So far it's gotten a clean bill of health. Of course,
> since the Micro$oft CryptoAPI has to be invoked to get to it, I don't
> feel like trusting it any further than just _initializing_ the RNG at
> this point.
If this is the thermo-resistive generator that Intel has been putting on
their other chips, it's quite decent from what I understand. Bob Baldwin
of Plus Five gave a talk on hardware RNGs at RSA 2000 and seemed generally
confident in the capabilites of these generators. I'd guess Intel has to
have some sort of spec for the generator function and or parameters.
Considering what most people are using for their RNGs, I'd have a hard
time believing this is anywhere near as bad.
--Chris
______________________________________________________________________
OpenSSL Project http://www.openssl.org
User Support Mailing List [EMAIL PROTECTED]
Automated List Manager [EMAIL PROTECTED]