FW: RES: Secure connections

Werner Koch wk@gnupg.org
Wed, 10 May 2000 11:02:59 +0200


On Tue, 9 May 2000, Eric J. Gustafson wrote:


> Here's a fun one:
> http://lavarand.sgi.com/
>
> This one's a little more practical:
>
> http://www.fourmilab.ch/hotbits/
Getting random via a network connection is a bad idea - many folks are then able to sniff it. Okay, gpg's RNG is not compromised becuase it takes it entropy from more than one source - but it does not make much sense to add these. You are doing serious encryption on a networked box? Tsssss :-) Werner -- Werner Koch OpenPGP key 621CC013 OpenIT GmbH tel +49 211 239577-0 Birkenstr. 12 email wk@OpenIT.de D-40233 Duesseldorf http://www.OpenIT.de