Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

Mostly. Just today I saw that the Arch Wiki is perpetuating the myth of /dev/urandom being insecure for crypto keys.

They even link to your and my writeup, but warn against mine, since it "contains fallacies".

The debate is never going to be decisively "won". Fortunately, enough holdouts have been convinced (Ruby, the kernel man page writers), so that the damage isn't as high anymore.



Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: