[PATCH v3 0/7] SP800-90A Deterministic Random Bit Generator

Stephan Mueller smueller at chronox.de
Tue May 20 02:23:26 CEST 2014


Am Mittwoch, 19. März 2014, 08:25:43 schrieb Stephan Mueller:

Hi,

> Hi,
> 
> the following set of patches against the current GIT development tree of
> libgcrypt implements the SP800-90A DRBG and integrates it with libgcrypt.

May I ask for the inclusion of the DRBG code into libgcrypt or for suggestions 
on how to improve the code?

Please note that I have seen the patches offered here to appear in OpenSUSE 
beta code. As this code adds two more control values, I would like to ask for 
inclusion to prevent breaking binary compatibility. 

Of course, any comments or change requests are highly welcome.

Please note that the code was subject to the following tests:

- CAVS testing

- stress testing of the kernel version of this code showing no breakage or 
memleaks

- standard testing using a test application

I am not aware of pending changes or change requests. Although a preview of an 
update to SP800-90A is available which I need to check for technical changes 
(beyond dropping the Dual EC DRBG).

If needed, I can submit a full patch set to ensure nobody gets lost in the 
tree of patches submitted in this thread.

As you see with the patch set, the ANSI X9.31 DRNG will be put out of business 
in line with SP800-131A.

Ciao
Stephan
-- 
| Cui bono? |



More information about the Gcrypt-devel mailing list