[Opendnssec-develop] libhsm: hsm_random() and friends

Jakob Schlyter jakob at kirei.se
Wed May 20 10:10:42 UTC 2009


On 20 maj 2009, at 12.00, John Dickinson wrote:

>
> On 20 May 2009, at 10:42, Jakob Schlyter wrote:
>
>> hi,
>>
>> can someone remind me and why we want a hsm_random() function in  
>> libhsm? if not, we should remove it for now. for the jitter needed  
>> by the signer, it seems a bit overkill to use the HSM for that.
>
>
> for the salt? Also the HSM is likely to be the best source of  
> randomness in the system.

true. thanks for reminding me!

	j




More information about the Opendnssec-develop mailing list