Received: by 2002:ac0:8c8e:0:0:0:0:0 with SMTP id r14csp973201ima; Wed, 6 Feb 2019 11:26:48 -0800 (PST) X-Google-Smtp-Source: AHgI3IYC0oUIEXfSKqHNFpiQuXavd2fsJruYdOPcLwgr8uwW3MC78GNirFTXCRSfG2J8myfBPWh+ X-Received: by 2002:a17:902:a6:: with SMTP id a35mr12333175pla.201.1549481208032; Wed, 06 Feb 2019 11:26:48 -0800 (PST) ARC-Seal: i=1; a=rsa-sha256; t=1549481208; cv=none; d=google.com; s=arc-20160816; b=cFETtQS8FmsLOGXzQvkirhtgv6TfhcChD7fuUXFknHRU5LDuCTpkMsJ/04z8w2HP0V ksRCzObLcMZq9pig0JL0E2YhbD/kt+W5/8SRMKd34nlYzuKt630N5HhEii4AVOjgZ17C Z5y1KgTGIBFpz4O+EsvqoH1kKvvu3s56JJ7zOtrb98Pb4QwvSZ21GrtusBl14QlFQ9pE tjT1+k+Cziz8CDii/v08FoUW/2s9qfM5XubiiX7kwQesZW1aB5XM1s05XV89s0n27mki rMhJ+O3cS0EP/RQEJ21GXceC3Rhynyepmenib9PhhZ53obMEuUsYux+448guM40MqbKN 3XMg== ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20160816; h=list-id:precedence:sender:user-agent:in-reply-to :content-disposition:mime-version:references:message-id:subject:cc :to:from:date:dkim-signature; bh=6lPDxmncLCWUYYgB9QD0UsaN15wHE+/VAssC7glx3F0=; b=k9KmHHoQeagOoiGXtTg7Q64LDX+DGHRBWuOQiC65oOIMT7EmfnQBSU56eLxmX0K5wv 2Kq9lqXidmQa/wAwW1LwFIMCV9nplv8ufGbLF0p6p5JSK25LabA8Tp14A5iaRgQkPKgD TB4l7ym/tJIUNSGSUgFrTxB3nX2vElYZOyWeytUK4kBsf3qhQmNBjSk+1dhnBqRrauaG xvApz+2I95aky72dZzMxsSzsZapJ7kc2q+e5MZnfFe8QcZmzoCCpJPYxKQuupkpPEiu9 3NC2VCK02wn6HVUQgXzG60kZCf0WVyPRsaSaige4t37ieKgVxEJsxypyLbm2akdqhuph ykZQ== ARC-Authentication-Results: i=1; mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b=EUmF8qxI; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Return-Path: Received: from vger.kernel.org (vger.kernel.org. [209.132.180.67]) by mx.google.com with ESMTP id r77si605080pfa.186.2019.02.06.11.26.32; Wed, 06 Feb 2019 11:26:48 -0800 (PST) Received-SPF: pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) client-ip=209.132.180.67; Authentication-Results: mx.google.com; dkim=pass header.i=@kernel.org header.s=default header.b=EUmF8qxI; spf=pass (google.com: best guess record for domain of linux-kernel-owner@vger.kernel.org designates 209.132.180.67 as permitted sender) smtp.mailfrom=linux-kernel-owner@vger.kernel.org; dmarc=pass (p=NONE sp=NONE dis=NONE) header.from=kernel.org Received: (majordomo@vger.kernel.org) by vger.kernel.org via listexpand id S1726774AbfBFT0O (ORCPT + 99 others); Wed, 6 Feb 2019 14:26:14 -0500 Received: from mail.kernel.org ([198.145.29.99]:57076 "EHLO mail.kernel.org" rhost-flags-OK-OK-OK-OK) by vger.kernel.org with ESMTP id S1726162AbfBFT0O (ORCPT ); Wed, 6 Feb 2019 14:26:14 -0500 Received: from localhost (unknown [131.107.174.119]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by mail.kernel.org (Postfix) with ESMTPSA id EFD432083B; Wed, 6 Feb 2019 19:26:13 +0000 (UTC) DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=kernel.org; s=default; t=1549481174; bh=GQAw4Gil6x0pLL207odqJVZGoRNvjnxgBfHvcEH3BEM=; h=Date:From:To:Cc:Subject:References:In-Reply-To:From; b=EUmF8qxIpkccO71U4/dvXp+D2JBBKUbA8xvLeI6tcmCLyW5JyPeAaa22P/DLQY10z ayGjXmS35YqwUIAzVchY+PzIfwskiLz6PLvhNps+Tma8gbnd93JuLNwWFqVs6BUWsk gmhKCd/jvMeT9TXmViW7oLZibwf4TsjsbfDxVqEI= Date: Wed, 6 Feb 2019 14:26:13 -0500 From: Sasha Levin To: "Rantala, Tommi T. (Nokia - FI/Espoo)" Cc: "stable@vger.kernel.org" , "keescook@chromium.org" , "linux-kernel@vger.kernel.org" , "tytso@mit.edu" Subject: Re: 4.14 "random: add a config option to trust the CPU's hwrng" Message-ID: <20190206192613.GB4119@sasha-vm> References: MIME-Version: 1.0 Content-Type: text/plain; charset=us-ascii; format=flowed Content-Disposition: inline In-Reply-To: User-Agent: Mutt/1.10.1 (2018-07-13) Sender: linux-kernel-owner@vger.kernel.org Precedence: bulk List-ID: X-Mailing-List: linux-kernel@vger.kernel.org On Wed, Feb 06, 2019 at 11:44:36AM +0000, Rantala, Tommi T. (Nokia - FI/Espoo) wrote: >Hi stable maintainers, > >Can you consider including these "random" patches in 4.14.y? > >These are very useful in fixing esp. first-bootup delays of VMs due to >entropy starvation. > > >commit 39a8883a2b989d1d21bd8dd99f5557f0c5e89694 >Author: Theodore Ts'o >Date: Tue Jul 17 18:24:27 2018 -0400 > > random: add a config option to trust the CPU's hwrng > >commit 9b25436662d5fb4c66eb527ead53cab15f596ee0 >Author: Kees Cook >Date: Mon Aug 27 14:51:54 2018 -0700 > > random: make CPU trust a boot parameter This really looks like a new feature to me. The "old" behaviour of not trusting RDRAND-like randomness was by-design rather than an oversight. -- Thanks, Sasha