back
user profile

Tomte

162,201karma·32,335submissions·August 23, 2012
about
Open Source Compliance, Functional Safety, Education Science.

[ my public key: https://keybase.io/2uo; my proof: https://keybase.io/2uo/sigs/3Nc5FGsaD-8qFEmS8FvyXv9aA3sAS6hx29MBPq8g6EA ]

recent activity (32,335 total)
comment
Again Crypto I with no Crypto II in sight... :-(
12y ago·view thread
comment
0.9, I guess. At some point (shortly after the 0.9 release?) one of the first examples stopped working with a then-current git build, so I stopped reading it and concentrated on the official tutorial …
12y ago·view thread
comment
I'd be more interested in the safety of those electromechanical components. Have you developed them under any applicable safety standards? Otherwise I'd prefer to stay a purely organic organ…
12y ago·view thread
comment
I know I haven't submitted in forever (and may have been removed of the set of active participants), but I got your New Year's bankruptcy mail, but never the "bonus set". Is that s…
12y ago·view thread
comment
Totally unlike the books you named, but the best "intelligent investment" advice is probably in Bogle's "Common Sense on Mutual Funds" and similar books.
12y ago·view thread
comment
No. /dev/random does not deliver "new entropy", it delivers the very same cryptographically good pseudorandom stream. Look at the sketches in the article.
12y ago·view thread
comment
No, I wrote specifically in the beginning that I'm talking about Linux.
12y ago·view thread
comment
Thanks!
12y ago·view thread
comment
It's hard to please everyone. http://www.reddit.com/r/linux/comments/1zt76a/myths_about_de... …
12y ago·view thread
comment
Yes, without any Javascript, real native chrome.
12y ago·view thread
comment
I never understood why Mozilla always talked about how great the future was going to be, when Persona would be part of web browsers. But then never implemented it in Firefox, even as a default-off opt…
12y ago·view thread
comment
It's an informal way to put it, but yes, it boils down to that. It's almost the definition of a block cipher. See http://en.wikipedia.org/wiki/Pseudorandom_permutation …
12y ago·view thread
comment
Yes, that's why I gave the example of MT. People really believe that /dev/urandom belongs to that class of RNG.
12y ago·view thread
comment
Thanks for laying out your thoughts, but obviously I disagree. Let me rebut two points that kind of irk me: You claim that the Android problem that bit several Bitcoin wallets was due to java.security…
12y ago·view thread
comment
That's one thing. The other one is that after rewinding you've got the identical internal state of the CSPRNG. So you're possibly reusing the same random numbers (or closely related one…
12y ago·view thread
comment
This is basically a response to the widespread conception that /dev/random has some mechanism whereby it generates "true" random numbers, while /dev/urandom only uses som…
12y ago·view thread
comment
In which way are those platform guarantees? Honest question, I don't understand where you're getting at.
12y ago·view thread
comment
You are right, 'belorn, that's an important point. This really only comes up in VM settings and some small embedded systems, I think. I have made a mental note to see if I can find a way to …
12y ago·view thread
comment
Schneier plays enigmatic... but what exactly does he not like about the "xkcd scheme". I mean, it's basically Diceware, isn't it?
12y ago·view thread
comment
Nobody I know has TextSecure installed. Of course I can still send unencrypted text messages. Are you trolling me?
12y ago·view thread
comment
I had downloaded RedPhone and TextSecure. My contact list was a glorious zero people (everyone I know uses WhatsApp). A few months ago I thought about using Threema and the like, but realized nobody…
12y ago·view thread
comment
In safety-related system you usually don't try to correct bit flips (at least in my niche), but you've got lots and lots of mechanisms ensuring that bit flips are discovered. Even more, hard…
12y ago·view thread
comment
That's exactly the wrong advice. You should always use /dev/urandom on Linux for cryptographic use, unless you know exactly why you need /dev/random. Hint: you don't. (On…
12y ago·view thread
comment
Treaty on the Final Settlement with Respect to Germany ( http://usa.usembassy.de/etexts/2plusfour8994e.htm ): "Welcoming the fact that the German people, freely exercising the…
12y ago·view thread
comment
My thinking was: how do they single you out? But I guess it was speaking English without an awful accent. :-)
12y ago·view thread
comment
Yes, it seems normal to me, unless it happens regularly. I am now 32 years old. I have been in a police stop when driving my car only twice (and one of those was a mistake, I thought they wanted me to…
12y ago·view thread
comment
How do they recognize you as an alien? At the border, sure, but inside the country?
12y ago·view thread
comment
And again the old meme that /dev/urandom is bad...
12y ago·view thread
comment
No, I'm pretty certain I won't see such a change, and since I'm not American, nor do I live in America, my interest in that is very limited.
12y ago·view thread