Ha, Intel were *so proud* of their high throughput RDRAND, and now it turns out they leak the values all over the other cores and the microcode patch to fix it... has a 97% performance hit. As in you get ~1/30th of the performance you used to. Whoops! https://www.phoronix.com/scan.php?page=news_item&px=RdRand-3-Percent …
-
-
I’m just saying, use RDSEED to seed your preferred userspace CSPRNG and call it a day
-
(also RDSEED is mentioned as also being an instruction of interest in the paper so it probably *is* similarly affected. i just hope you're reseeding your prng significantly less often than reading it)
- Show replies
New conversation -
-
-
I'm not saying it doesn't. What I'm saying is that you don't need to use it frequently and so if it slows everything down to a halt when you sample it once a day, it's not the end of the world.
-
You're still screwed. If you're running untrusted code on another core: 1) without the mitigation, they can steal your secrets 2) with the mitigation, they can DoS your memory bus performance. The only solution is to not mitigate and not use RDRAND/SEED at all.
End of conversation
New conversation -
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.