From cb157160f046e4e3051128c321f2f607c6f9995e Mon Sep 17 00:00:00 2001 From: Alex Gaynor Date: Thu, 6 Feb 2014 10:27:48 -0800 Subject: Be more alarmist --- docs/random-numbers.rst | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/docs/random-numbers.rst b/docs/random-numbers.rst index aa89c8e4..c8f95fd8 100644 --- a/docs/random-numbers.rst +++ b/docs/random-numbers.rst @@ -5,8 +5,8 @@ When generating random data for use in cryptographic operations, such as an initialization vector for encryption in :class:`~cryptography.hazmat.primitives.ciphers.modes.CBC` mode, you do not want to use the standard :mod:`random` module APIs. This is because they do not -provide a cryptographically secure random number generator, resulting in -various security issues in different algorithms. +provide a cryptographically secure random number generator, which can result in +major security issues depending on the algorithms in use. Therefore, it is our recommendation to always use your operating system's provided random number generator, which is available as ``os.urandom()``. For -- cgit v1.2.3