%% You should probably cite draft-irtf-cfrg-randomness-improvements instead of this I-D. @techreport{cremers-cfrg-randomness-improvements-00, number = {draft-cremers-cfrg-randomness-improvements-00}, type = {Internet-Draft}, institution = {Internet Engineering Task Force}, publisher = {Internet Engineering Task Force}, note = {Work in Progress}, url = {https://datatracker.ietf.org/doc/draft-cremers-cfrg-randomness-improvements/00/}, author = {Cas Cremers and Luke Garratt and Stanislav V. Smyshlyaev and Nick Sullivan and Christopher A. Wood}, title = {{Randomness Improvements for Security Protocols}}, pagetotal = 7, year = 2018, month = mar, day = 1, abstract = {Randomness is a crucial ingredient for TLS and related security protocols. Weak or predictable "cryptographically-strong" pseudorandom number generators (CSPRNGs) can be abused or exploited for malicious purposes. The Dual EC random number backdoor and Debian bugs are relevant examples of this problem. This document describes a way for security protocol participants to mix their long- term private key into the entropy pool(s) from which random values are derived. This augments and improves randomness from broken or otherwise subverted CSPRNGs.}, }