Uses too much entropy (Debian Bug #343085)

Werner Koch wk at
Fri Jan 4 14:14:50 CET 2008

On Fri,  4 Jan 2008 13:35, simon at said:

> I think the daemon is there to help libgcrypt maintain randomness state
> between invocations of applications that use randomness from libgcrypt.

Right.  And it is still flagged as experimental because it lacks any
fair distribution of random to requesting clients.

> The 3000+ bits part doesn't seem excessive to me, but I think the
> problem is that it is required each time a server or client starts up.
> Saving a random seeds file would help with this.  Or using the libgcrypt

You need a seed file for good performace.  That's all.



Die Gedanken sind frei.  Auschnahme regelt ein Bundeschgesetz.

More information about the Gnutls-devel mailing list