mirror of
https://github.com/genodelabs/genode.git
synced 2025-01-26 22:29:19 +00:00
ab0bce77ec
Both the Wifi driver and the WireGuard port used local implementations for their source of randomness. Wifi used a Xoroshiro128+ PRNG for rapid generation of random values but initialized this PRNG always with the same static seed value. WireGuard, in contrast, requested each random byte directly from the jitterentropy lib, which is considered to be very time intensive. This commit removes the local variants of random.cc and introduces a new centralized lx_emul/random.cc . The new variant combines the former approaches, so, that jitterentropy is accessed only in order to generate a random seed for a Xoroshiro128+ PRNG. Front-end requests for random values are then fulfilled efficiently via the PRNG. :Warning: The output of the Xoroshiro128+ PRNG that is used in the new implementation of the lx_emul randomness functions has known statistical problems (see https://en.wikipedia.org/wiki/Xoroshiro128%2B#Statistical_Quality). Furthermore, the integration of Xoroshir128+ with the lx_emul code was not reviewed/audited for its security-related properties, so far, and has the known deficiency of seeding the PRNG only once during initialization. Thus, we strongly advise against the use of the lx_emul randomness functions for security-critical purposes. Ref #4397