1996-02-22 - No Subject

Header Data

From: owner-cypherpunks@toad.com
To: N/A
Message Hash: 5f5ae68ac465ddb48d44e6af19661a4fe49a092f48c6992660b23b17ca72ed2a
Message ID: <QQadzr22552.199602220945@relay3.UU.NET>
Reply To: N/A
UTC Datetime: 1996-02-22 09:47:56 UTC
Raw Date: Thu, 22 Feb 1996 17:47:56 +0800

Raw message

From: owner-cypherpunks@toad.com
Date: Thu, 22 Feb 1996 17:47:56 +0800
Subject: No Subject
Message-ID: <QQadzr22552.199602220945@relay3.UU.NET>
MIME-Version: 1.0
Content-Type: text/plain


> -----BEGIN PGP SIGNED MESSAGE-----
> 
> A Kerberos V4 session key is chosen by calling random() repeatedly.
> THe PRNG is seeded with srandom(time.tv_usec ^ time.tv_sec ^ p ^ n++),
> where p is a static integer set to getpid() ^ gethostid() on the first
> call and n is a static counter.
> 
> Is there any entropy here???  Most, if not all, Kerberos servers run one
> time synchronization protocol or another, which reduces the entropy to a
> few bits at most.
> 
> DEADBEAT <na5877@anon.penet.fi>

usec grainlessness typically doesn't approach anything like a usec on most
OS implimentations either.


-- 
+----------------------------------+-----------------------------------------+
|Julian Assange                    | "if you think the United  States has    |
|FAX: +61-3-9819-9066              |  stood still, who built the largest     |
|EMAIL: proff@suburbia.net         |  shopping centre in the world?" - Nixon |
+----------------------------------+-----------------------------------------+





Thread