-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

This is the important point here. If it's the sole source of entropy, that's when it becomes a security risk. As long as it's being mixed with something else, it's pretty safe imo.

Maybe there should be (if there isn't already) a piece of code that disables RdRand when no other source of entropy is available, to ensure that it's never used as the sole source of entropy.
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.11 (GNU/Linux)

iF4EAREIAAYFAlIx7EkACgkQgijxUCZnvls88wD/eC3sYIqolBA7YSIvz1WUw/we
87A6ZsaepZQ8LIEnhr4A/3KJFN5kFIhl/qv78fXV4oXiehG9CwVMXJxRRBAZ8OmB
=iL8S
-----END PGP SIGNATURE-----

Reply via email to