Thanks very much for valuable suggestions. Few applciations like RADIUS/TACACS+/snmp protocol (IV generation for AES) are using rand functions. As they are related to security, i am changing the rand function used by them. >>>> and as long as the 15 least-significant bits of the output of >>>> RAND_bytes are unbiased the above input might cause FIPS compliance issues as RAND_bytes doesnt guarantee the biasing after we truncate one bit. I shall check this once. Regards, -- Sent from: http://openssl.6102.n7.nabble.com/OpenSSL-User-f3.html -- openssl-users mailing list To unsubscribe: https://mta.openssl.org/mailman/listinfo/openssl-users