On Mon, 2019-01-21 at 21:46 +0000, Ben Hutchings wrote: > On Mon, 2019-01-21 at 20:49 +0000, Andy Simpkins wrote: > [...] > > Should we add to or change the possible entropy sources? > [...] > > Yes, we should (by default) enable use of available hardware RNGs to > produce entropy and if none is available then we should (by default) > install one of the various software entropy gathering daemons.
In linux version 4.19.20-1 I've enabled CONFIG_RANDOM_TRUST_CPU. Ben. > We should also document this so that users that distrust certain > entropy sources will know how to disable them. > > Ben. > -- Ben Hutchings The world is coming to an end. Please log off.
signature.asc
Description: This is a digitally signed message part