Skip to main content

RNG Entropy Health Gate

CRYPTO_ENTROPY on a random source: healthy → degraded → fail, holding key generation when entropy drops below the security floor. Prevents weak-key disasters.

CategoryCryptography
Template IDrng-entropy-health
Definitionrng_entropy_health v1.0
States4 (initial: healthy; terminal: reseeded)
Transitions4
Operators composedCRYPTO_ENTROPY, CRYPTO_HASH_COLLISION, KO42
Audit clockon · tick rate 1

What it's for

  • HSM / key-gen pipelines
  • IoT secure provisioning
  • TLS certificate issuance

States

StateRole
healthyinitial
degradedintermediate
failintermediate
reseededterminal

Transitions

FromToOperatorFires whenProofTrigger / actions
healthydegradedCRYPTO_ENTROPYinput.entropy_bits_per_byte < input.warn_floorrequired
degradedfailCRYPTO_HASH_COLLISIONinput.entropy_bits_per_byte < input.security_floorrequired
degradedhealthyCRYPTO_ENTROPYinput.entropy_bits_per_byte >= input.warn_floorrequired
failreseededKO42input.reseeded == truerequired

Operators it composes

Each transition fires a registry operator through the master equation (compute → prove → verify). This template composes:

  • CRYPTO_ENTROPY
  • CRYPTO_HASH_COLLISION
  • KO42

Browse the operators at /operators/; the building blocks a transition calls are the framework's protocols. KO42 is the always-on substrate operator; physics operators carry proof_required: true, so each fire runs the full compute → prove → verify path and lands a verifiable proof digest on your entangled state.

Deploy it

Inspect the full definition, then deploy it onto your state machine. Every fire is Zeqond-stamped onto your entangled state.

# 1. Inspect — the full definition (states, transitions, operators) as served
curl -sS https://zeqsdk.com/api/contracts/templates/rng-entropy-health

# 2. Deploy onto your machine (auth: session; body carries your machine slug)
curl -sS -X POST https://zeqsdk.com/api/contracts/templates/rng-entropy-health/deploy \
-H "Content-Type: application/json" \
-b "<your session cookie>" \
-d '{"slug":"<your-machine>"}'
# → 201 { "ok": true, "contract": { "id": "…", "currentState": "healthy", … },
# "template_id": "rng-entropy-health" }

The deploy path runs the same two-stage validation as the canonical create route (ContractDefinitionSchema.parse + validateContractDefinition against the live registry), writes the creation row onto your entangled state, and schedules the first fire. From there, drive transitions with POST /api/chain/<your-machine>/contracts/<id>/transition or let any triggers fire them autonomously.

Next

  • Contract IDE — author, preview, and deploy contracts (this template is in the Templates tab).
  • State Contracts — the full contract model: conditions, triggers, pre/post actions, lifecycle.
  • Templates Library — every ready-to-deploy contract, grouped by category.
  • Protocols — the named building blocks a transition composes.