Re: cprng_fast implementation benchmarks

Greg Troxel <[email protected]> Sat, 26 Apr 2014 08:42:18 -0400
Newsgroups gmane.os.netbsd.devel.crypto,gmane.os.netbsd.devel.kernel
Message-ID <[email protected]>
After reading all these messages a bit too fast, it seems to be that we
can add to Thor's analysis

  Moving the fast-not-super-strong PRNG to ChaCha8 is clearly a step
  forward from what we have now.  (really this is his conclusion)

  It remains for Someone to do more formal work (perhaps in an academic
  context) to give specifications for good-enough-random, to analayze if
  our implementation meets the specification, and if our uses can
  reasonably rely on them.   (I think the lack of this is the essence of
  what Paul is pointing out, and it's a fair point).

I'll ask around to see if I can find a spare intern.  (That's sort of a
joke but not 100%; this does seem like useful work to do.)
signature.asc (application/pgp-signature, 180 B)
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1

iEYEARECAAYFAlNbqaoACgkQ+vesoDJhHiW2IwCeI+YtN/vm6337m5UPgd15iwPV
NtgAn0iUA5NYNQZLR6yqzKgJUTxjuVk0
=mF7v
-----END PGP SIGNATURE-----