RE: Microsoft .NET PRNG

From: Peter Gutmann (pgut001_at_cs.auckland.ac.nz)
Date: 07/31/04

  • Next message: Peter Gutmann: "RE: Microsoft .NET PRNG (fwd)"
    To: pmsf@datatransfer.com.ar, yboily@seccuris.com
    Date: Sat, 31 Jul 2004 18:16:23 +1200
    
    

    "Pablo Milano" <pmsf@datatransfer.com.ar> writes:

    >I'm looking for the same information. I want to know which method does MS
    >Crypto API use in order to obtain "strong" random seeds. The most in-deep
    >information about this I could find was
    >http://msdn.microsoft.com/library/default.asp?url=3D/library/en-us/seccrypto/security/cpgenrandom.asp.
    >Anyway, I'm still not sure if what is explained there is what the function
    >SHOULD do, or what the function ACTUALLY DOES.

    The best description that I know of is in the second edition (not the first)
    of "Writing Secure Code" by Michael Howard and David LeBlanc.

    Peter.


  • Next message: Peter Gutmann: "RE: Microsoft .NET PRNG (fwd)"