$ rmadison --arch=s390x linux-generic | grep eoan-proposed linux-generic | 5.2.0.8.9 | eoan-proposed | s390x $ git tag --contains 769f020b6c Ubuntu-5.2.0-8.9 v5.2 $ git show 769f020b6c commit 769f020b6c9283d61c59de3559375ec7e961a424 Author: Harald Freudenberger <fre...@linux.ibm.com> Date: Tue Apr 16 13:41:26 2019 +0200
s390/crypto: use TRNG for seeding/reseeding With the z14 machine there came also a CPACF hardware extension which provides a True Random Number Generator. This TRNG can be accessed with a new subfunction code within the CPACF prno instruction and provides random data with very high entropy. So if there is a TRNG available, let's use it for initial seeding and reseeding instead of the current implementation which tries to generate entropy based on stckf (store clock fast) jitters. For details about the amount of data needed and pulled for seeding and reseeding there can be explaining comments in the code found. Signed-off-by: Harald Freudenberger <fre...@linux.ibm.com> Signed-off-by: Martin Schwidefsky <schwidef...@de.ibm.com> With that changing status to Fix Committed. ** Changed in: linux (Ubuntu) Status: Incomplete => Fix Committed ** Changed in: ubuntu-z-systems Status: Incomplete => Fix Committed ** Information type changed from Private to Public -- You received this bug notification because you are a member of Kernel Packages, which is subscribed to linux in Ubuntu. https://bugs.launchpad.net/bugs/1835553 Title: [19.10 FEAT] kernel crypto: seed PRNG with TRNG Status in Ubuntu on IBM z Systems: Fix Committed Status in linux package in Ubuntu: Fix Committed Bug description: On a Z14 or later system the PRNG (/dev/prandom) shall be seeded with the CPACF TRNG. In that case the default reseeding frequency shall be increased t make up for the additional cost of the TRNG instruction. In additionthe STCLKF based seeding shall use a smaller buffer. Will be provided with kernel 5.2 Git commit . 769f020b6c To manage notifications about this bug go to: https://bugs.launchpad.net/ubuntu-z-systems/+bug/1835553/+subscriptions -- Mailing list: https://launchpad.net/~kernel-packages Post to : kernel-packages@lists.launchpad.net Unsubscribe : https://launchpad.net/~kernel-packages More help : https://help.launchpad.net/ListHelp