On Sun, Jul 21, 2019 at 11:55:23AM -0400, Greg Troxel wrote: > Another approach, harder, is to create a xenrnd(4) pseudodevice and > hypervisor call that gets bits from the host's /dev/random and injects > them as if from a hardware rng. > >
That requires the ability coordinate "please run this backported patch" to whoever does the package builds. Since we don't let anyone volunteer for tasks and would rather have highly critical things rely on people who stopped having NetBSD time about 5 years ago, that's not going to happen.