Greetings,

I performed an analysis of the RAND_bytes/RAND_pseudo_bytes API and
its callers. My write up is here:

http://jbp.io/2014/01/16/openssl-rand-api/

Feedback gratefully received.

There's a pull request as a result of this:

https://github.com/openssl/openssl/pull/38

I think this change is both an improvement to the OpenSSL, and has the
nice side effect of improving the error behaviour of many downstream
callers. There are testing and documentation improvements alongside.

Thanks,
Joseph Birr-Pixton
______________________________________________________________________
OpenSSL Project                                 http://www.openssl.org
Development Mailing List                       [email protected]
Automated List Manager                           [email protected]

Reply via email to