Fix VIA Padlock RNG support ?

2008-09-01 Thread Harald Welte
I (or VIA) do anything to help this along? Thanks in advance, -- - Harald Welte <[EMAIL PROTECTED]> http://laforge.gnumonks.org/ "Privacy in residential applica

Re: Fix VIA Padlock RNG support ?

2008-09-10 Thread Harald Welte
case, I am here, I have time, and I will do whatever it takes to the code to make you guys happy with it for integration. So please talk to me ;) Thanks again. On Mon, Sep 01, 2008 at 09:51:30PM +0800, Harald Welte wrote: > Hi Michal, > Hi OpenSSL developers, > > as part of my work f

Re: Fix VIA Padlock RNG support ?

2008-09-10 Thread Harald Welte
nSSL mainline disabled it. I searched the list archives and RT before, but didn't find anything on either the RNG or the SHA issue. Cheers, -- - Harald Welte <[EMAIL PROTECTED]> http://laforge.gnumonks.org/

Re: Fix VIA Padlock RNG support ?

2008-09-11 Thread Harald Welte
agree. So the best option really is to make OpenSSL use the userspace interface for the kernel random number generator, and feed that kernel RNG's entropy pool from the hardware RNG. I'll submit a patch to OpenSSL which gives a more detailed description in the comment since I t

Re: Fix VIA Padlock RNG support ?

2008-09-11 Thread Harald Welte
> I'll submit a patch to OpenSSL which gives a more detailed description in > > the comment since I think it is sort of like a FAQ for those people who > > actually discover the padlocn no-RNG flag :) > >

VIA PadLock PHE test script / 'openssl' software engine?

2008-10-05 Thread Harald Welte
e software implementation as opposed to any hardware-accelerated engine? Just not use the '-engine' statement? But I guess in this case the default depends on the openssl configuration file, doesn't it? Thanks in advance, -- - Harald Welte <[E

Re: Fix VIA Padlock RNG support ?

2008-10-05 Thread Harald Welte
just implementation... > > Thoughts? Sounds completely fine with me. I'll do some experimentation after I'm finished with the PadLock PHE (hashing) stuff and cook up a patch. Since I'm currently quite busy it will probably take some time. -- - Harald Welte <[EMAIL PROTE