2 @unnumbered Precautions
6 We use password (passphrase) authentication, so overall security fully
7 depends on its strength. You @strong{should} use long, high-entropy
8 passphrases. Also remember to keep passphrase in temporary file and read
9 it securely as described in @ref{Verifier, verifier}.
12 You must @strong{never} use the same key for multiple clients.
15 You must use @strong{cryptographically good} pseudo random number
16 generator. By default we use default @code{crypto/rand} library that
17 reads @code{/dev/urandom} source. Some GNU/Linux and FreeBSD systems
18 are rather good with this entropy source. Closed proprietary ones are
19 always not and you must use optional @ref{EGD} feature with them.