Arthur Mesh <arthurmesh@gmail.com> writes:
> "Dag-Erling Sm=C3=B8rgrav" <des@des.no> writes:
> > Is there a reason to choose sha256 over a weaker, faster hash?
> Given the fact that yarrow uses sha256 internally, I don't think it's a
> sound idea to add weaker links to the chain.
What can possibly be weaker than discarding most of the entropy provided
by the administrator? David had a genuine concern about performance
when stuffing large amounts of data into /dev/random.
DES
--=20
Dag-Erling Sm=C3=B8rgrav - des@des.no
_______________________________________________
freebsd-security@freebsd.org mailing list
http://lists.freebsd.org/mailman/listinfo/freebsd-security
To unsubscribe, send any mail to "freebsd-security-unsubscribe@freebsd.org"