On Sun, Mar 23, 2014 at 10:55 AM, Sandy Harris <[email protected]> wrote:
> ...
>>  5.: at shutdown of physical host entropy state is saved to FDE
>> protected root volume for re-incorporation into entropy state on next
>> start.
>
> It is not enough to just have this in shutdown scripts, because
> that does not cover the case of a system crash or other
> unplanned shutdown. Restarting a VM is another case.


excellent point!

the stored entropy seed should be routinely written to, so that on
event of unplanned crash or restart, a valid seed (not re-used) is
available. thanks for the correction!


best regards,
_______________________________________________
RNG mailing list
[email protected]
http://lists.bitrot.info/mailman/listinfo/rng

Reply via email to