Return-Path: Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1757224Ab3ILXjv (ORCPT ); Thu, 12 Sep 2013 19:39:51 -0400 Received: from mail-oa0-f51.google.com ([209.85.219.51]:50854 "EHLO mail-oa0-f51.google.com" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1756700Ab3ILXjs convert rfc822-to-8bit (ORCPT ); Thu, 12 Sep 2013 19:39:48 -0400 MIME-Version: 1.0 In-Reply-To: <20130912215718.GF3809@logfs.org> References: <1378920168.26698.64.camel@localhost> <1378925224.26698.90.camel@localhost> <20130912215718.GF3809@logfs.org> Date: Thu, 12 Sep 2013 19:39:47 -0400 X-Google-Sender-Auth: qTY5StJ_n_M1mBepikjyACDfN9w Message-ID: Subject: Re: TPMs and random numbers From: Jeff Garzik To: =?UTF-8?Q?J=C3=B6rn_Engel?= Cc: David Safford , Andy Lutomirski , "H. Peter Anvin" , Leonidas Da Silva Barbosa , Ashley Lai , Rajiv Andrade , Marcel Selhorst , Sirrix AG , Linux Kernel Mailing List , "Ted Ts'o" , Kent Yoder , David Safford , Mimi Zohar , "Johnston, DJ" Content-Type: text/plain; charset=UTF-8 Content-Transfer-Encoding: 8BIT Sender: linux-kernel-owner@vger.kernel.org List-ID: X-Mailing-List: linux-kernel@vger.kernel.org Content-Length: 738 Lines: 17 On Thu, Sep 12, 2013 at 5:57 PM, Jörn Engel wrote: > On Wed, 11 September 2013 14:47:04 -0400, David Safford wrote: >> But I also think that the existing (certified) TPMs are good enough >> for direct use. > That is equivalent to trusting the TPM chip not to be malicious. It Indeed. While it need not be rngd or userland at all, it seems reasonable to require any hardware RNG to have its data pushed through AES mix steps (as kernel random does now IIUC). Jeff -- To unsubscribe from this list: send the line "unsubscribe linux-kernel" in the body of a message to majordomo@vger.kernel.org More majordomo info at http://vger.kernel.org/majordomo-info.html Please read the FAQ at http://www.tux.org/lkml/