Why trust gpg4win?

NdK ndk.clanbo at gmail.com
Fri Sep 13 22:13:40 CEST 2013

Il 13/09/2013 21:12, Jan ha scritto:

>> How can you check there isn't a weakness in RNG, for exampel [...]
> There are statistical test with which you can test whether a random
> number generator produces for instance uniformly distributed numbers.
> This in connection with the above procedure might make a good output
> oriented check of gnuPG.
A good encryption algorithm should generate an output that you can't
tell is not purely random. That's why you have to compress the data
BEFORE encrypting it.
Then the output is usually "decorated" with data structures to make it
recognizeable and not attempt decrypting it the wrong way.


