Scientific Linux Forum.org



  Reply to this topicStart new topicStart Poll

> virtual randomness
krachbumm
 Posted: Mar 12 2015, 11:16 AM
Quote Post


SLF Member
***

Group: Members
Posts: 66
Member No.: 1961
Joined: 15-October 12









Hi Forum,

somehow this came to my attention. And I am not sure what it is. huh.gif
/dev/random does not seem to provide enough entropy on my kvm-guests.

Testing SL6.6 kvm-guest with rngtest for /dev/random takes for ever:
CODE
[root@v1 ~]# cat /dev/random | rngtest -c 1000
rngtest 2
Copyright (c) 2004 by Henrique de Moraes Holschuh
This is free software; see the source for copying conditions.  There is NO warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.

rngtest: starting FIPS tests...
^Crngtest: bits received from input: 23136
rngtest: FIPS 140-2 successes: 1
rngtest: FIPS 140-2 failures: 0
rngtest: FIPS 140-2(2001-10-10) Monobit: 0
rngtest: FIPS 140-2(2001-10-10) Poker: 0
rngtest: FIPS 140-2(2001-10-10) Runs: 0
rngtest: FIPS 140-2(2001-10-10) Long run: 0
rngtest: FIPS 140-2(2001-10-10) Continuous run: 0
rngtest: input channel speed: (min=20.332; avg=20.332; max=20.332)bits/s
rngtest: FIPS tests speed: (min=85.917; avg=85.917; max=85.917)Mibits/s
rngtest: Program run time: 1147583916 microseconds

[root@v1 ~]#


I installed haveged on the guest, ran rngtest again and the results are better:
CODE
[root@v1 ~]# cat /dev/random | rngtest -c 20000
rngtest 2
Copyright (c) 2004 by Henrique de Moraes Holschuh
This is free software; see the source for copying conditions.  There is NO warranty; not even for MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE.

rngtest: starting FIPS tests...
rngtest: bits received from input: 400000032
rngtest: FIPS 140-2 successes: 19988
rngtest: FIPS 140-2 failures: 12
rngtest: FIPS 140-2(2001-10-10) Monobit: 4
rngtest: FIPS 140-2(2001-10-10) Poker: 1
rngtest: FIPS 140-2(2001-10-10) Runs: 5
rngtest: FIPS 140-2(2001-10-10) Long run: 2
rngtest: FIPS 140-2(2001-10-10) Continuous run: 0
rngtest: input channel speed: (min=390.985; avg=8049.819; max=13029.520)Kibits/s
rngtest: FIPS tests speed: (min=33.818; avg=94.447; max=97.813)Mibits/s
rngtest: Program run time: 52594465 microseconds



What is the best solution to get good randomness on guest? And what about other guests? Eg Windows7 or freebsd... wacko.gif


Ext-Links:
Thanks and Greetings
PM
^
toracat
 Posted: Mar 12 2015, 12:58 PM
Quote Post


SLF Geek
****

Group: Members
Posts: 303
Member No.: 11
Joined: 10-April 11










--------------------
ELRepo: repository specializing in hardware support for EL
PMUsers Website
^
krachbumm
 Posted: Mar 13 2015, 10:11 AM
Quote Post


SLF Member
***

Group: Members
Posts: 66
Member No.: 1961
Joined: 15-October 12









thx toracat, just what I was looking for...
and I have another reason to test 7.1.
PM
^
1 User(s) are reading this topic (1 Guests and 0 Anonymous Users)
0 Members:

Topic Options Reply to this topicStart new topicStart Poll