• J
    random: prime last_data value per fips requirements · ec8f02da
    Jarod Wilson 提交于
    The value stored in last_data must be primed for FIPS 140-2 purposes. Upon
    first use, either on system startup or after an RNDCLEARPOOL ioctl, we
    need to take an initial random sample, store it internally in last_data,
    then pass along the value after that to the requester, so that consistency
    checks aren't being run against stale and possibly known data.
    
    CC: Herbert Xu <herbert@gondor.apana.org.au>
    CC: "David S. Miller" <davem@davemloft.net>
    CC: Matt Mackall <mpm@selenic.com>
    CC: linux-crypto@vger.kernel.org
    Acked-by: NNeil Horman <nhorman@tuxdriver.com>
    Signed-off-by: NJarod Wilson <jarod@redhat.com>
    Signed-off-by: N"Theodore Ts'o" <tytso@mit.edu>
    ec8f02da
random.c 44.3 KB