Diplomová práce

Analysis of randomness levels in the kernel entropy pool after boot

Bc. Peter Kotvan
Anotace

Pri štarte systému rôzne systémové programy využívajú náhodnosť naakumulovanú Linuxovým jadrom cez súbor /dev/urandom na generovanie kryptografických kľúčov alebo inicializovanie generátora pseudonáhodných čísel. Táto náhodnosť sa typicky zbiera z rôznych zdrojov do zásobníka entropie. Linuxové jadro však môže bežať na zariadeniach s rôznou hardvérovou špecifikáciou, alebo v čisto virtualizovanom prostredí …více

Abstract

At system boot up several system daemons utilize the Linux kernel's accumulated randomness via /dev/urandom to generate keys or initialize a pseudorandom number generator (PRNG). The randomness is typically being accumulated by mixing to a pool several "entropy" sources. The Linux kernel however may operate on various hardware with different specifications, or even in a pure virtual environment without …více

Klíčová slova
Linux entropy randomness security
Zadání práce
At system boot up several system daemons utilize the Linux kernel's accumulated randomness via /dev/urandom to generate keys or initialize a pseudorandom number generator (PRNG). The randomness is typically being accumulated by mixing several entropy sources to a pool. The Linux kernel however may operate on various hardware with different specifications, or even in a pure virtual environment without any physical hardware. For that it is desirable to know whether the randomness gathered in the first boot is sufficient for key generation or other cryptographic purposes. The goal of this thesis is to study the Linux kernel boot process on a system, which is a constrained system in terms of hardware. The objectives are:
  • Analyse real-world cases of hardware-constrained systems running Linux kernel to be able to determine suitable environment for data collection.
  • Study the possibilities of gathering the input of Linux kernel PRNG and modify the kernel source code to enable data collection.
  • Collect the data.
  • Identify the sources of the entropy and examine the randomness contribution of these sources.
  • Evaluate collected dataset using statistical methods for computing entropy contained in the data.
  • Interpret the results in context of impact on the quality of the random data provided by Linux Kernel.
  • Propose possible improvements and optimizations that would enhance the quality of randomness gathered in the boot process.
Práce zkontrolována:
31. 5. 2016 08:23, Ing. Mgr. et Mgr. Zdeněk Říha, Ph.D., učo 2514
  • Archiv závěrečné práce není dostatečně naplněn.
Plný text práce
124,3 KB / soubor PDF
Jazyk práce
angličtina angličtina
Termín obhajoby
28. 6. 2016
Práce nebyla obhájena

Vedoucí

Ing. Mgr. et Mgr. Zdeněk Říha, Ph.D., učo 2514
KVI FI MU

Oponent

doc. RNDr. Pavel Matula, Ph.D., učo 2927
KVI FI MU

Masarykova univerzita Fakulta informatiky
Studijní program
Informatika
  • Přidání souboru

    Soubor nebo složku lze nahrát pomocí tlačítka Přidat.
  • Další operace se soubory

    Podrobnosti lze zjistit označením příslušného řádku.
  • Pohled pro experty

    Pro častou práci je možné zvolit režim Více možností.
  • Vyhledávání souborů

    Vyhledávaný výraz můžete zadat přímo do adresního řádku.
  • Rychlý přístup k souborům

    Pomocí funkce Nedávné je možné se rychle vrátit k právě prohlíženým souborům. Oblíbené soubory je také možné označit Hvězdičkou.