ring::rand

Struct SystemRandom

Source
pub struct SystemRandom(/* private fields */);
Expand description

A secure random number generator where the random values come directly from the operating system.

A single SystemRandom may be shared across multiple threads safely.

new() is guaranteed to always succeed and to have low latency; it won’t try to open or read from a file or do similar things. The first call to fill() may block a substantial amount of time since any and all initialization is deferred to it. Therefore, it may be a good idea to call fill() once at a non-latency-sensitive time to minimize latency for future calls.

On Linux (including Android), fill() will use the getrandom syscall. If the kernel is too old to support getrandom then by default fill() falls back to reading from /dev/urandom. This decision is made the first time fill succeeds. The fallback to /dev/urandom can be disabled by disabling the dev_urandom_fallback default feature; this should be done whenever the target system is known to support getrandom. When /dev/urandom is used, a file handle for /dev/urandom won’t be opened until fill is called; SystemRandom::new() will not open /dev/urandom or do other potentially-high-latency things. The file handle will never be closed, until the operating system closes it at process shutdown. All instances of SystemRandom will share a single file handle. To properly implement seccomp filtering when the dev_urandom_fallback default feature is disabled, allow getrandom through. When the fallback is enabled, allow file opening, getrandom, and read up until the first call to fill() succeeds; after that, allow getrandom and read.

On macOS and iOS, fill() is implemented using SecRandomCopyBytes.

On wasm32-unknown-unknown (non-WASI), fill() is implemented using window.crypto.getRandomValues(). It must be used in a context where the global object is a Window; i.e. it must not be used in a Worker or a non-browser context.

On Windows, fill is implemented using the platform’s API for secure random number generation.

Implementations§

Source§

impl SystemRandom

Source

pub fn new() -> Self

Constructs a new SystemRandom.

Trait Implementations§

Source§

impl Clone for SystemRandom

Source§

fn clone(&self) -> SystemRandom

Returns a copy of the value. Read more
1.0.0 · Source§

fn clone_from(&mut self, source: &Self)

Performs copy-assignment from source. Read more
Source§

impl Debug for SystemRandom

Source§

fn fmt(&self, f: &mut Formatter<'_>) -> Result

Formats the value using the given formatter. Read more

Auto Trait Implementations§

Blanket Implementations§

Source§

impl<T> Any for T
where T: 'static + ?Sized,

Source§

fn type_id(&self) -> TypeId

Gets the TypeId of self. Read more
Source§

impl<T> Borrow<T> for T
where T: ?Sized,

Source§

fn borrow(&self) -> &T

Immutably borrows from an owned value. Read more
Source§

impl<T> BorrowMut<T> for T
where T: ?Sized,

Source§

fn borrow_mut(&mut self) -> &mut T

Mutably borrows from an owned value. Read more
Source§

impl<T> CloneToUninit for T
where T: Clone,

Source§

unsafe fn clone_to_uninit(&self, dst: *mut T)

🔬This is a nightly-only experimental API. (clone_to_uninit)
Performs copy-assignment from self to dst. Read more
Source§

impl<T> From<T> for T

Source§

fn from(t: T) -> T

Returns the argument unchanged.

Source§

impl<T, U> Into<U> for T
where U: From<T>,

Source§

fn into(self) -> U

Calls U::from(self).

That is, this conversion is whatever the implementation of From<T> for U chooses to do.

Source§

impl<T> SecureRandom for T
where T: SecureRandom,

Source§

fn fill(&self, dest: &mut [u8]) -> Result<(), Unspecified>

Fills dest with random bytes.
Source§

impl<T> ToOwned for T
where T: Clone,

Source§

type Owned = T

The resulting type after obtaining ownership.
Source§

fn to_owned(&self) -> T

Creates owned data from borrowed data, usually by cloning. Read more
Source§

fn clone_into(&self, target: &mut T)

Uses borrowed data to replace owned data, usually by cloning. Read more
Source§

impl<T, U> TryFrom<U> for T
where U: Into<T>,

Source§

type Error = Infallible

The type returned in the event of a conversion error.
Source§

fn try_from(value: U) -> Result<T, <T as TryFrom<U>>::Error>

Performs the conversion.
Source§

impl<T, U> TryInto<U> for T
where U: TryFrom<T>,

Source§

type Error = <U as TryFrom<T>>::Error

The type returned in the event of a conversion error.
Source§

fn try_into(self) -> Result<U, <U as TryFrom<T>>::Error>

Performs the conversion.