2014 Linux Symposium, July 14-16

Stephan Müller

My name is Stephan Müller and I am working in the IT security field for more than 13 years now. Starting the work career at SUSE, I switched to the IT consulting company of atsec information security occurred more than 11 years ago. By working in Common Criteria evaluations I quickly became the lead evaluator for almost all Linux evaluations and participated in other operating system evaluations such as AIX, z/VM, z/OS and MacOS. Since about 3 years, I am working as a FIPS 140-2 tester covering all major cryptographic modules in Linux. During that work it became clear that today's available cryptographic seed sources which provide the foundation of modern cryptography face numerous challenges. With the observation of execution jitter during the assessment of cryptographic side channel attacks, the idea of a new random number generator was born. This idea is developed into a complete implementation available and fully documented at http://www.chronox.de.

