[145766] in cryptography@c2.net mail archive

home help back first fref pref prev next nref lref last post

Re: questions about RNGs and FIPS 140

daemon@ATHENA.MIT.EDU (Werner Koch)
Fri Aug 27 12:41:41 2010

From: Werner Koch <wk@gnupg.org>
To: cryptography@metzdowd.com
Date: Fri, 27 Aug 2010 12:03:49 +0200
In-Reply-To: <20100825203716.GA1717@subspacefield.org> (travis's message of
	"Wed, 25 Aug 2010 13:37:16 -0700")

On Wed, 25 Aug 2010 22:37, travis+ml-cryptography@subspacefield.org
said:

> 1) Is Linux /dev/{u,}random FIPS 140 certified?

I am nor sure whether it is already certified.  However a FIPS mode was
added to Linux featuring an FIPS approved ANSI X9.31 PRNG instead of the
/dev/random.  /dev/random is still used for initial seeding.


Salam-Shalom,

   Werner

-- 
Die Gedanken sind frei.  Ausnahmen regelt ein Bundesgesetz.

---------------------------------------------------------------------
The Cryptography Mailing List
Unsubscribe by sending "unsubscribe cryptography" to majordomo@metzdowd.com

home help back first fref pref prev next nref lref last post