[Cryptech Tech] User auditable hardware entropy source/random number generator

Joachim Strömbergson joachim at secworks.se
Fri Jul 11 14:24:42 UTC 2014


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA256

Aloha!

Short response: Yes! We are interested. We need several entropy sources
and esp ones designed to be user auditable. The idea with the complete
Cryptech RNG is to be testable and open from the sources all the way to
the CSPRNG.

Please post any links and we will gladly look at it.

Thanks!

JoachimS

Benedikt Stockebrand wrote:
> Hi folks,
> 
> at the end of the last RIPE meeting I told Randy about a somewhat 
> related but smaller scale project of mine and promised to let you
> all know as soon as I got any consistent results.
> 
> My intention is to build a hardware random number generator which is 
> expressly designed to be auditable in a non-destructive way by a
> user with enthusiast grade electronics equipment and knowledge.
> 
> The current prototype runs at about 20 kByte/s and just passed the
> tests I currently use (FIPS140-2 and dieharder) on about 40 GB worth
> of output.
> 
> The noise generator/entropy source is using the avalanche effect in
> a Zener/avalanche diode, two transistors, a few passive components,
> and if otherwise unavailable a 5V->12V step-up converter.
> 
> I've also spent a bit of time on how to process the analog(ish)
> noise from the generator into a proper random bitstream.
> 
> However, I currently use a microcontroller instead of an FPGA, so
> aside from the fact that the microcontroller appears to be the
> bottleneck right now, some of my results may need some modification
> to be of use to your project.  If nothing else I can tell about my
> results with various extraction algorithms.
> 
> If you are interested in this, let me know and I'll provide you with 
> more details.
> 
> 
> Cheers,
> 
> Benedikt
> 


- -- 
Med vänlig hälsning, Yours

Joachim Strömbergson - Alltid i harmonisk svängning.
========================================================================
 Joachim Strömbergson          Secworks AB          joachim at secworks.se
========================================================================
-----BEGIN PGP SIGNATURE-----
Version: GnuPG/MacGPG2 v2.0.22 (Darwin)
Comment: GPGTools - http://gpgtools.org
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org/
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=1Erm
-----END PGP SIGNATURE-----


More information about the Tech mailing list