[tor-bugs] #10676 [Tor]: Verify urandom-style RNG is seeded before generating ID keys

Tor Bug Tracker & Wiki blackhole at torproject.org
Fri Jan 24 23:26:39 UTC 2014


#10676: Verify urandom-style RNG is seeded before generating ID keys
-----------------------------+--------------------------------------------
     Reporter:  nickm        |      Owner:
         Type:  enhancement  |     Status:  needs_review
     Priority:  major        |  Milestone:  Tor: 0.2.5.x-final
    Component:  Tor          |    Version:
   Resolution:               |   Keywords:  tor-server rng urandom startup
Actual Points:               |  Parent ID:
       Points:               |
-----------------------------+--------------------------------------------

Comment (by cypherpunks):

 This paper/project is relevant, especially the section "Weak entropy and
 the Linux RNG" and the "Defenses and Lessons":

 "Mining Your Ps and Qs: Detection of Widespread Weak Keys in Network
 Devices"
 Nadia Heninger, Zakir Durumeric, Eric Wustrow, J. Alex Halderman
 To appear in ''Proceedings of the 21st USENIX Security Symposium'', August
 2012.

 cf [[https://factorable.net/paper.html]]

--
Ticket URL: <https://trac.torproject.org/projects/tor/ticket/10676#comment:9>
Tor Bug Tracker & Wiki <https://trac.torproject.org/>
The Tor Project: anonymity online


More information about the tor-bugs mailing list