[Cryptech Tech] Some thoughts and questions on the RNG strategy

Daniel Cegiełka daniel.cegielka at gmail.com
Sat Feb 8 08:38:19 UTC 2014


2014-02-08 9:21 GMT+01:00 Joachim Strömbergson <joachim at secworks.se>:

>>> The link to Salsa20 is reassuring.  djb's analysis should, of
>>> course, be discounted...

A lot of key projects migrate to the crypto designed by djb (e.g.
OpenSSH, OpenSSL, GnuTLS, GnuPG). djb's algorithms are used in other
implementations, such as BLAKE/BLAKE2, NTRU, scrypt etc.

> It might be worth noting that the OpenBSD project replaced the RC4 based
> PRNG with ChaCha at the end of 2013. (It still retains the arc4random
> name though.)

The old name remained in order not to break compatibility with other software.

btw. http://blog.cr.yp.to/20140205-entropy.html

Daniel



More information about the Tech mailing list