![]() | Yarrow |
| Home | About | Publications | Practical Cryptography |
Yarrow-160: Notes on the Design and Analysis of the Yarrow Cryptographic Pseudorandom Number Generator
In Selected Areas in Cryptography, Proc. SAC '99, Lecture Notes in Computer Science #1758, pp. 13–33, Springer Verlag, 1999.
We describe the design of Yarrow, a family of cryptographic pseudo-random number generators (PRNG). We describe the concept of a PRNG as a separate cryptographic primitive, and the design principles used to develop Yarrow. We then discuss the ways that PRNGs can fail in practice, which motivates our discussion of the components of Yarrow and how they make Yarrow secure. Next, we define a specific instance of a PRNG in the Yarrow family that makes use of available technology today. We conclude with a brief listing of open questions and intended improvements in future releases.
Our new book Practical Cryptography contains a new design for a PRNG called Fortuna, which is superior to Yarrow. Implementing the entropy estimators for Yarrow is a huge, and essentially unsolvable, problem. Fortuna does not need any entropy estimators and is therefore easier to implement securely.
Zipped PostScript (99 kB)
PostScript (257 kB)
| Home | About | Publications | Practical Cryptography |
Copyright © 1999-2003 by MacFergus BV, last update 2003-04-02.