Browse code

tls: small extensions in parameter docs related to PRNG engines

Henning Westerholt authored on 09/10/2019 13:39:14
Showing 1 changed files
... ...
@@ -1258,14 +1258,14 @@ end
1258 1258
 	</para>
1259 1259
 	<itemizedlist>
1260 1260
 		<listitem><para>krand - use internal kam_rand() function</para></listitem>
1261
-		<listitem><para>fastrand - use internal fastrand function</para></listitem>
1262
-		<listitem><para>cryptorand - use internal cryptorand (fortuna) function</para></listitem>
1261
+		<listitem><para>fastrand - use internal fastrand (ISAAC) function</para></listitem>
1262
+		<listitem><para>cryptorand - use internal cryptorand (Fortuna) function</para></listitem>
1263 1263
 		<listitem><para>kxlibssl - default libssl rand engine wrapped by a &kamailio; mutex</para></listitem>
1264 1264
 	</itemizedlist>
1265 1265
 	<para>
1266 1266
 		Note: the krand and fastrand engines are not recommended for use on
1267 1267
 		systems requiring strong security, as they may not generate numbers
1268
-		with enough randomness.
1268
+		with enough randomness and are not cryptographically secure.
1269 1269
 	</para>
1270 1270
 	<para>
1271 1271
 		The default value is empty (not set) for libssl v1.0.x or older, and