summaryrefslogtreecommitdiff
blob: a30e8c4fdadc8c8746a6fb9e538072f29ec28a1f (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
# Copyright 1999-2018 Gentoo Authors
# Distributed under the terms of the GNU General Public License v2

# /etc/conf.d/rngd
# Please see "/usr/sbin/rngd --help" and "man rngd" for more information

# Space-delimited list of entropy sources to enable
# Note that some of the entropy sources may require certain USE flags
# to be enabled or require hardware support to function properly
# Entropy sources not specified here (or in the exclude list below)
# will be enabled/disabled based on rngd default behavior
#
# Choose from the list:
#         hwrng:  Hardware RNG Device
#         tpm:    TPM RNG Device (Deprecated)
#         rdrand: Intel RDRAND Instruction RNG
#         darn:   Power9 DARN Instruction RNG
#         nist:   NIST Network Entropy Beacon
#                 (UNSAFE for cryptographic operations)
#         jitter: JITTER Entropy generator
#
#INCLUDE_ENTROPY_SOURCES="hwrng tpm rdrand darn nist jitter"


# Space-delimited list of entropy sources to disable
# This is useful for disabling certain entropy sources even
# when they are supported on the system
#
#EXCLUDE_ENTROPY_SOURCES="nist tpm"


# Entropy source specific options:
#
#
# hwrng device used for random number input:
#
#HWRNG_DEVICE="/dev/hwrng"
#
#
# rdrand options:
#         use_aes:(BOOLEAN)
#
#RDRAND_OPTIONS="use_aes:1"
#
#
# darn options:
#         use_aes:(BOOLEAN)
#
#DARN_OPTIONS="use_aes:1"
#
#
# jitter options:
#         thread_count:(INTEGER)
#         buffer_size:(INTEGER)
#         refill_thresh:(INTEGER)
#         retry_count:(INTEGER)
#         retry_delay:(INTEGER)
#         use_aes:(BOOLEAN)
#
#JITTER_OPTIONS="thread_count:4 buffer_size:16535 refill_thresh:16535"
#JITTER_OPTIONS="${JITTER_OPTIONS} retry_count:1 retry_delay:-1 use_aes:1"


# Kernel device used for random number output
#
#RANDOM_DEVICE="/dev/random"


# Random step (Number of bytes written to random-device at a time):
#
#STEP=64


# Fill watermark
# 0 <= n <= `sysctl kernel.random.poolsize`
#
#WATERMARK=2048


# Any extra arguments for rngd
#
#EXTRA_ARGS=""