As a result, we have to recommend things likeusing the high-order bits returned by rand() instead of thelow-order bits, avoiding using rand() for anything that wantsdecently random numbers, not using rand() if you want more thanapprox. UINT_MAX total different sequences, and so on.So I wrote some PRNG code that uses RC4, with a seed of up to 256bytes. Here it is. I believe it is clc-compliant. Comments onthis and anything else are welcome.----------------------------------------------------------------------/** prng.c - Portable, ISO C90 and C99 compliant high-quality* pseudo-random number generator based on the alleged RC4* cipher. This PRNG should be suitable for most general-purpose* uses. Not recommended for cryptographic or financial* purposes. Not thread-safe.*//** Copyright (c) 2004 Ben Pfaff <bl*@cs.stanford.edu>.* All rights reserved.** Redistribution and use in source and binary forms, with or* without modification, are permitted provided that the* following conditions are met:** 1. Redistributions of source code must retain the above* copyright notice, this list of conditions and the following* disclaimer.** 2. Redistributions in binary form must reproduce the above* copyright notice, this list of conditions and the following* disclaimer in the documentation and/or other materials* provided with the distribution.** 3. The author''s and contributors'' names may not be used to* endorse or promote products derived from this software without* specific prior written permission.** THIS SOFTWARE IS PROVIDED BY THE AUTHOR AND CONTRIBUTORS ``AS* IS'''' AND ANY EXPRESS OR IMPLIED WARRANTIES, INCLUDING, BUT NOT* LIMITED TO, THE IMPLIED WARRANTIES OF MERCHANTABILITY AND* FITNESS FOR A PARTICULAR PURPOSE ARE DISCLAIMED. IN NO EVENT* SHALL THE AUTHOR OR CONTRIBUTORS BE LIABLE FOR ANY DIRECT,* INDIRECT, INCIDENTAL, SPECIAL, EXEMPLARY, OR CONSEQUENTIAL* DAMAGES (INCLUDING, BUT NOT LIMITED TO, PROCUREMENT OF* SUBSTITUTE GOODS OR SERVICES; LOSS OF USE, DATA, OR PROFITS;* OR BUSINESS INTERRUPTION) HOWEVER CAUSED AND ON ANY THEORY OF* LIABILITY, WHETHER IN CONTRACT, STRICT LIABILITY, OR TORT* (INCLUDING NEGLIGENCE OR OTHERWISE) ARISING IN ANY WAY OUT OF* THE USE OF THIS SOFTWARE, EVEN IF ADVISED OF THE POSSIBILITY* OF SUCH DAMAGE.**/#include "prng.h"#include <assert.h>#include <float.h>#include <limits.h>#include <math.h>#include <time.h>/* RC4-based pseudo-random state. */static unsigned char s[256];static int s_i, s_j;/* Nonzero if PRNG has been seeded. */static int seeded;/* Take advantage of inlining if possible. */#if __STDC_VERSION__ >= 199901L#define INLINE inline#else#define INLINE#endif/* Swap bytes. */static INLINE voidswap_byte (unsigned char *a, unsigned char *b){unsigned char t = *a;*a = *b;*b = t;}/* If KEY is non-null and SIZE is nonzero, seeds thepseudo-random number generator based on the SIZE bytes in BUF.At most the first 256 bytes of BUF are used. If KEY is a nullpointer and SIZE is zero, seeds the pseudo-random numbergenerator based on the current time.If this function is not called by the user before any prng_getfunction, it is called automatically to obtain a time-basedseed. */voidprng_seed (const void *key_, size_t size){const unsigned char *key = key_;size_t key_idx;int i, j;assert ((key != NULL && size > 0) || (key == NULL && size == 0));if (key == NULL){static time_t t;t = (t == 0) ? time (NULL) : t + 1;key = (void *) &t;size = sizeof t;}for (i = 0; i < 256; i++)s[i] = i;for (key_idx = 0, i = j = 0; i < 256; i++){j = (j + s[i] + key[key_idx]) & 255;swap_byte (s + i, s + j);if (++key_idx >= size)key_idx = 0;}s_i = s_j = 0;seeded = 1;}/* Returns a pseudo-random integer in the range [0,255]. */unsigned charprng_get_octet (void){if (!seeded)prng_seed (NULL, 0);s_i = (s_i + 1) & 255;s_j = (s_j + s[s_i]) & 255;swap_byte (s + s_i, s + s_j);return s[(s[s_i] + s[s_j]) & 255];}/* Returns a pseudo-random integer in the range [0,UCHAR_MAX]. */unsigned charprng_get_byte (void){if (UCHAR_MAX == 255){/* Normal case for 8-bit bytes. */return prng_get_octet ();}else{/* Handle oversize bytes. */unsigned byte = prng_get_octet ();unsigned done = 255;while ((unsigned char) done != UCHAR_MAX){byte = (byte << 8) | prng_get_octet ();done = (done << 8) | 255;}return byte;}}/* Fills BUF with SIZE pseudo-random bytes. */voidprng_get_bytes (void *buf_, size_t size){unsigned char *buf;for (buf = buf_; size-- > 0; buf++)*buf = prng_get_byte ();}/* Returns a pseudo-random unsigned long in the range [0,ULONG_MAX]. */unsigned longprng_get_ulong (void){unsigned long ulng = prng_get_octet ();unsigned long done = 255;while (done != ULONG_MAX){ulng = (ulng << 8) | prng_get_octet ();done = (done << 8) | 255;}return ulng;}/* Returns a pseudo-random long in the range [0, LONG_MAX]. */longprng_get_long (void){for (;;){unsigned ulng = prng_get_ulong ();if (ulng <= LONG_MAX)return ulng;}}/* Returns a pseudo-random unsigned int in the range [0,UINT_MAX]. */unsignedprng_get_uint (void){unsigned uint = prng_get_octet ();unsigned done = 255;while (done != UINT_MAX){uint = (uint << 8) | prng_get_octet ();done = (done << 8) | 255;}return uint;}/* Returns a pseudo-random int in the range [0, INT_MAX]. */intprng_get_int (void){for (;;){unsigned uint = prng_get_uint ();if (uint <= INT_MAX)return uint;}}/* Returns a pseudo-random floating-point number from the uniformdistribution with range [0,1). */doubleprng_get_double (void){for (;;){unsigned long ulng = prng_get_ulong ();if (ulng != ULONG_MAX)return (double) ulng / ULONG_MAX;}}/* Returns a pseudo-random floating-point number from thedistribution with mean 0 and standard deviation 1. (Multiplythe result by the desired standard deviation, then add thedesired mean.) */doubleprng_get_double_normal (void){/* Knuth, _The Art of Computer Programming_, Vol. 2, 3.4.1C,Algorithm P. */static double next_normal = DBL_MAX;double this_normal;if (next_normal != DBL_MAX){this_normal = next_normal;next_normal = DBL_MAX;}else{double v1, v2, s;do{double u1 = prng_get_double ();double u2 = prng_get_double ();v1 = 2.0 * u1 - 1.0;v2 = 2.0 * u2 - 1.0;s = v1 * v1 + v2 * v2;}while (s >= 1);this_normal = v1 * sqrt (-2. * log (s) / s);next_normal = v2 * sqrt (-2. * log (s) / s);}return this_normal;}----------------------------------------------------------------------#ifndef PRNG_H_INCLUDED#define PRNG_H_INCLUDED#include <stddef.h>void prng_seed (const void *, size_t);unsigned char prng_get_octet (void);unsigned char prng_get_byte (void);void prng_get_bytes (void *, size_t);unsigned long prng_get_ulong (void);long prng_get_long (void);unsigned prng_get_uint (void);int prng_get_int (void);double prng_get_double (void);double prng_get_double_normal (void);#endif /* prng.h */------------------------------------------------------------------------"There''s only one thing that will make them stop hating you.And that''s being so good at what you do that they can''t ignore you.I told them you were the best. Niiice。 问:你打算发表吗?这个更方便的地方,比如 sourceforge或freshmeat? 问:您实际测试了哪些平台? 问:是否有潜伏在某处的测试应用程序可以发布? / JNiiice.Q: Are you going to publish this somewhere more accessible, likesourceforge or freshmeat?Q: What platforms have you actually tested this on?Q: Is there a test application lurking somewhere that you can publish?/J Ben Pfaff < bl*@cs.stanford.edu>在消息中写道 news:87 ************ @ pfaff.stanford.edu ..."Ben Pfaff" <bl*@cs.stanford.edu> wrote in messagenews:87************@pfaff.stanford.edu...一个经常出现的问题这里是伪随机数生成器的质量很差,随着许多实现而提供。因此,我们必须使用rand()返回的高位而不是低位来推荐之类的东西,避免对任何想要的东西使用rand()相当随机的数字,如果你想要超过大约不使用rand()。 UINT_MAX完全不同的序列,依此类推。 所以我写了一些使用RC4的PRNG代码,种子最多256个字节。这里是。我相信它符合clc标准。评论这个和其他任何东西都是受欢迎的。 One issue that comes up fairly often around here is the poor quality of the pseudo-random number generators supplied with many C implementations. As a result, we have to recommend things like using the high-order bits returned by rand() instead of the low-order bits, avoiding using rand() for anything that wants decently random numbers, not using rand() if you want more than approx. UINT_MAX total different sequences, and so on. So I wrote some PRNG code that uses RC4, with a seed of up to 256 bytes. Here it is. I believe it is clc-compliant. Comments on this and anything else are welcome. 两个评论: - 因为你使用RC4,如果你真的想要加密 安全,你需要在初始化时丢弃密钥流的某些部分 时间。关于你需要丢弃多少的估计会有所不同 - 我已经看到了估计256到2048字节的b $ b。 - 我相信为rand()定义的行为是,如果没有播种它被称为 ,它就好像用户做了srand(1)。你没有;相反, 你根据时间种下它。 - ponchoTwo comments:- Since you are using RC4, if you really want to be cryptographicallysecure, you''ll need to discard some part of the keystream at initializationtime. Estimates as to how much you need to discard varies somewhat -- I''veseen estimates of 256 - 2048 bytes.- I believe that the defined behavior for rand() is that if it is calledwithout seeding, it acts as if the user did srand(1). You don''t; instead,you seed it based on time.--poncho Johan Lindh< jo *** @ linkdata.getridofthis.se>写道:Johan Lindh <jo***@linkdata.getridofthis.se> writes: Ben Pfaff写道: Ben Pfaff wrote:这里经常出现的一个问题是伪随机数生成器的质量差提供了许多实现。因此,我们必须使用rand()返回的高位而不是低位来推荐之类的东西,避免对任何想要的东西使用rand()相当随机的数字,如果你想要超过大约不使用rand()。 UINT_MAX完全不同的序列,等等。所以我写了一些使用RC4的PRNG代码,种子最多256个字节。这里是。我相信它符合clc标准。评论这个和其他任何东西都是受欢迎的。 Niiice。 问:你是否会在更容易发布的地方发布这个,比如 sourceforge或freshmeat? One issue that comes up fairly often around here is the poor quality of the pseudo-random number generators supplied with many C implementations. As a result, we have to recommend things like using the high-order bits returned by rand() instead of the low-order bits, avoiding using rand() for anything that wants decently random numbers, not using rand() if you want more than approx. UINT_MAX total different sequences, and so on. So I wrote some PRNG code that uses RC4, with a seed of up to 256 bytes. Here it is. I believe it is clc-compliant. Comments on this and anything else are welcome. Niiice. Q: Are you going to publish this somewhere more accessible, like sourceforge or freshmeat? 我将把它放在我的网页benpfaff.org/writings/clc 我很满意。 问:您实际测试了哪些平台? 仅限GNU / Linux i386。 问:是否有潜伏在某处的测试应用程序可以发布?I will put it up on my webpage at benpfaff.org/writings/clc whenI am satisfied with it. Q: What platforms have you actually tested this on?GNU/Linux i386 only. Q: Is there a test application lurking somewhere that you can publish? 还没有 - 我只是粗略地测试了它。我还没有决定在发布之前应该接收多少测试,或者 应该打包什么样的测试程序。 欢迎提出建议。 - 只是另一位C黑客。Not yet--I have only tested it in a cursory fashion. I have notyet decided how much testing it should receive before release, orwhat sort of test routine it should be packaged with.Suggestions are welcome.--Just another C hacker. 这篇关于RFC:符合clc标准的伪随机数生成器的文章就介绍到这了,希望我们推荐的答案对大家有所帮助,也希望大家多多支持! 上岸,阿里云!