Re: CPRNGs and assurance...

2008-12-18 Thread Jerry Leichter
On Dec 17, 2008, at 3:18 PM, Perry E. Metzger wrote: I'd like to expand on a point I made a little while ago about the just throw everything at it, and hope the good sources drown out the bad ones entropy collection strategy. The biggest problem in security systems isn't whether you're using

CPRNGs and assurance...

2008-12-17 Thread Perry E. Metzger
I'd like to expand on a point I made a little while ago about the just throw everything at it, and hope the good sources drown out the bad ones entropy collection strategy. The biggest problem in security systems isn't whether you're using 128 bit or 256 bit AES keys or similar trivia. The