[ubuntu-hardened] rngd: enable hardware-supported random generators.
daniel curtis
sidetripping at gmail.com
Thu Jan 7 11:10:42 UTC 2016
Hello Seth.
>> I'm not a big fan of HAVEGE (...)
Okay, I understand. You have written also about using RDRAND
instructions on Intel CPUs via 'rngd' tool. (I'm using such processor).
So, maybe it is a method to help seed an entropy on my system.
You also mentioned the TPM devices if they exist. (One more thing:
'dmesg' shows nothing about 'tpm') It seems, that there are some
'tpm' related .ko files/modules in /lib/modules/ location. Precisely:
/lib/modules/`uname -r`/kernel/drivers/char/tpm
I don't know if, it such situation, I should install, for example, a
'tpm-tools' package (management tols for the TPM hardware)?
And what about BIOS? Should I enable TPM right there? Honestly,
I don't know even, whether there is such an option. I mean BIOS;
I must check it.
Maybe, according to .ko files located under /lib/modules/ directory
I should load tpm modules via 'modprobe' command and that's
all? (But there is no 'tpm_bios' file.) If it will be necessary, I can
give you a list of what files are in this directory.
Thank You very much for your answer, Seth. Of course it helped.
Best regards.
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://lists.ubuntu.com/archives/ubuntu-hardened/attachments/20160107/aed4ce1c/attachment.html>
More information about the ubuntu-hardened
mailing list