lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Date: Fri, 03 Oct 2014 15:17:56 -0600 From: Jens Axboe <axboe@...nel.dk> To: Mike Snitzer <snitzer@...hat.com>, linux-kernel@...r.kernel.org CC: tytso@....edu, gmazyland@...il.com, agk@...hat.com, mpatocka@...hat.com Subject: Re: [PATCH] block: disable entropy contributions from nonrot devices On 2014-10-02 18:11, Mike Snitzer wrote: > Introduce queue_flags_set_nonrot_clear_add_random() and convert all > block drivers that set QUEUE_FLAG_NONROT over to using it instead. > > Historically, all block devices have automatically made entropy > contributions. But as previously stated in commit e2e1a148 ("block: add > sysfs knob for turning off disk entropy contributions"): > - On SSD disks, the completion times aren't as random as they > are for rotational drives. So it's questionable whether they > should contribute to the random pool in the first place. > - Calling add_disk_randomness() has a lot of overhead. > > There are more reliable sources for randomness than non-rotational block > devices. From a security perspective it is better to err on the side of > caution than to allow entropy contributions from unreliable "random" > sources. Don't add a special function for this, just use the flag clear/set functions for both. -- Jens Axboe -- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@...r.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/
Powered by blists - more mailing lists