Entropy in VMs

57 views
Skip to first unread message

kwadronaut

unread,
Jul 11, 2017, 6:37:05 PM7/11/17
to qubes...@googlegroups.com
Hi,

I noticed that the default templates for Debian and Ubuntu contain
haveged. I've also read
https://github.com/QubesOS/qubes-issues/issues/673 There's been some
noise on the 'Better Crypto' project regarding entropy in VMs and
haveged [1]. Whether the noise is justified, is something I don't know.

Is it time to revisit issue #673, by for example using entropybroker on
the dom0 [3] or something else? Another idea is to explain me why the
current setup for Qubes is still the right thing to do™ ;-)

Ciao,

kwadronaut

[1]
https://github.com/BetterCrypto/Applied-Crypto-Hardening/commit/cf7cef7a870c1b77089b1bd6209ded6525b5a4e0#commitcomment-23006392
[2] https://lists.cert.at/pipermail/ach/2017-May/002251.html
[3] https://github.com/flok99/entropybroker/

Reply all
Reply to author
Forward
0 new messages