[4047] in cryptography@c2.net mail archive
Re: Intel announcements at RSA '99
daemon@ATHENA.MIT.EDU (Alex Alten)
Fri Jan 22 13:37:58 1999
Date: Thu, 21 Jan 1999 23:34:36 -0800
To: "David R. Conrad" <drc@adni.net>, Steve Bellovin <smb@research.att.com>
From: Alex Alten <Alten@Home.Com>
Cc: cryptography@c2.net, coderpunks@toad.com
In-Reply-To: <Pine.LNX.4.05.9901211920400.409-100000@darwin.adni.net>
At 07:47 PM 1/21/99 -0500, David R. Conrad wrote:
>
>On Wed, 20 Jan 1999, Steve Bellovin wrote:
>
>> Intel has announced a number of interesting things at the RSA conference.
>> The most important, to me, is the inclusion of a hardware random number
>> generator (based on thermal noise) in the Pentium III instruction set.
>> They also announced hardware support for IPSEC.
>
>Doesn't seem to me that the new features are of much use to anyone. As
>others have pointed out, it's quite difficult to assure oneself that the
>RNG is true and not a fair PRNG in disguise. The code for, for instance,
>the linux /dev/random driver will probably change slightly:
What is needed is a certification of the RNG. Like the NSA does for
Fortezza cards (which contain an RNG). Otherwise the only other way
is to do it yourself using RNG analysis software like Diehard.
- Alex
--
Alex Alten
Alten@Home.Com
Alten@TriStrata.Com
P.O. Box 11406
Pleasanton, CA 94588 USA
(925) 417-0159