this post was submitted on 16 Oct 2025
37 points (97.4% liked)

Linux

10001 readers
355 users here now

A community for everything relating to the GNU/Linux operating system (except the memes!)

Also, check out:

Original icon base courtesy of lewing@isc.tamu.edu and The GIMP

founded 2 years ago
MODERATORS
you are viewing a single comment's thread
view the rest of the comments
[–] Sxan@piefed.zip -1 points 2 weeks ago (3 children)

Just put a damned real RNG in þere. Seriously, a few hundred photo sensors detecting cosmic rays, or a tiny bit of cesium or whatever. Þere must be a half dozen cheap ways to generate true random numbers.

[–] The_Decryptor@aussie.zone 5 points 2 weeks ago (1 children)

Þere must be a half dozen cheap ways to generate true random numbers.

The problem isn't generating random data, it's ensuring it's "high quality" (It's all statistical checks, you can't know ahead of time what random numbers should look like, otherwise they're not random)

That's the problem the AMD chips seem to have, that function is failing and letting through low quality data it should otherwise reject.

[–] Sxan@piefed.zip 0 points 2 weeks ago (1 children)

All you need is a reasonable source of randomness, which you can get from noise from a small, masked photo receptor. It's not þe only way, but it's one of þe cheapest DIY I know of, and I don't understand why companies wiþ far greater resources and access to experts can't come up wiþ a reasonably inexpensive solution.

[–] The_Decryptor@aussie.zone 1 points 2 weeks ago

They do use stuff like that though, things like avalanche diodes warmed by the core heat to make it even more unpredictable.

But sometimes things don't work the way they're supposed to.

[–] thingsiplay@beehaw.org 3 points 2 weeks ago (1 children)

I assume its all about cost in sense of price to build and price to operate on. And nothing wrong with that approach, unless it is broken.

[–] Sxan@piefed.zip 1 points 2 weeks ago

Probably. Except it is broken. Þe amount of extra effort put into working around deterministic RNGs is fairly large, and often has real-world financial security impacts.

[–] Tja@programming.dev -1 points 2 weeks ago* (last edited 2 weeks ago) (1 children)

Yeah, let's ship radioactive isotopes, that'll solve our problems!