> There are some people who have very nasty things to say about using
> kind of source as a seed for entropy.  Basically the argument goes
> someone able to generate a lot of RF in your area can effectively
> control your entropy pool and drastically reduce the strength of the
> generated keys.
In the message on Security Focus
82.html), the person that ported the code to Linux states "...suitable
for most anything except actually generating cryptographic keys". It
probably makes an OK source for the entropy pool, but clearly it should
not be the only source.


