Re: [Ace] on signature verification times for sec192r1

Somaraju Abhinav <abhinav.somaraju@tridonic.com> Mon, 25 July 2016 10:04 UTC

Return-Path: <abhinav.somaraju@tridonic.com>
X-Original-To: ace@ietfa.amsl.com
Delivered-To: ace@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E052C12D6B8 for <ace@ietfa.amsl.com>; Mon, 25 Jul 2016 03:04:26 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.921
X-Spam-Level:
X-Spam-Status: No, score=-1.921 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=zgrp.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id UB-xkAUAUZYH for <ace@ietfa.amsl.com>; Mon, 25 Jul 2016 03:04:24 -0700 (PDT)
Received: from EUR03-VE1-obe.outbound.protection.outlook.com (mail-eopbgr50130.outbound.protection.outlook.com [40.107.5.130]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C453912B01B for <ace@ietf.org>; Mon, 25 Jul 2016 03:04:23 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=zgrp.onmicrosoft.com; s=selector1-tridonic-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=bngfactzG5Kx2vM0GZlzFDxdftwFGBBqylo7LW7RXOA=; b=aJm1COFDomlb4sNlj8TK/hzI1nHjpDA6rOKp563rCsUpWZ9nVeSQyIz0UifR3lH1z0taURYs+jem2e0HtdpJ6zvfn8Igx9lof+nXUVWEN0YwYVCysuzkZToE59wP0KK/K8WBVY76jUCULOAMgaib/oFB7BuJTZfBMyte/uWCUqo=
Received: from HE1PR0601MB2203.eurprd06.prod.outlook.com (10.168.35.138) by HE1PR0601MB2202.eurprd06.prod.outlook.com (10.168.35.137) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P384) id 15.1.544.10; Mon, 25 Jul 2016 10:04:19 +0000
Received: from HE1PR0601MB2203.eurprd06.prod.outlook.com ([10.168.35.138]) by HE1PR0601MB2203.eurprd06.prod.outlook.com ([10.168.35.138]) with mapi id 15.01.0544.019; Mon, 25 Jul 2016 10:04:19 +0000
From: Somaraju Abhinav <abhinav.somaraju@tridonic.com>
To: Pascal Urien <pascal.urien@gmail.com>, Michael StJohns <mstjohns@comcast.net>
Thread-Topic: [Ace] on signature verification times for sec192r1
Thread-Index: AQHR5PRUqoXHaJoMXEWoaFUV/RQt3KAmkP6AgADGuoCAAZS7UA==
Date: Mon, 25 Jul 2016 10:04:19 +0000
Message-ID: <HE1PR0601MB220388A00B3F75D2A755002AFC0D0@HE1PR0601MB2203.eurprd06.prod.outlook.com>
References: <CAEQGKXRxLKGROW9MdJEzkXsS9f4NVFqqh12c+t4qaK5bDYhuaw@mail.gmail.com> <d107de0f-2134-5b80-c9e2-ddb5e5e79788@comcast.net> <CAEQGKXQgp4AzCJFuBqezhZ0SmHG3QdgmH353LWisx-5WGmifpA@mail.gmail.com>
In-Reply-To: <CAEQGKXQgp4AzCJFuBqezhZ0SmHG3QdgmH353LWisx-5WGmifpA@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=abhinav.somaraju@tridonic.com;
x-originating-ip: [146.108.200.10]
x-ms-office365-filtering-correlation-id: b292f34c-7c02-48ef-7fe1-08d3b4730b90
x-microsoft-exchange-diagnostics: 1; HE1PR0601MB2202; 6:FVKNzja5/SWJ6iSHcMV0MUDOiY4ACpTeKl9bBJZGoNs7PgbtwXfxl7cfVJ/cMGqiMPCg50Tqp7H0MrKmlAVkh4x+9pYkUvs+u6IYTBIJ66//y7E4UaHwI5w2B+1rBr8NbKGNlhXKsqGiwusdptJbzdjgFcsQ1ym7DbBwHpkVEIahw1xjy5bTRCCdlGIeV9NCJLPgMwvlq02xb/98SATUlb1yC2l0N4jF8mzPNP2bTp/pi0ph9pN/L/bJuNdefCNnDU+9ztfKZ8fyaqM3uvgLio3xPY/BmELKvTJgblICNtfVboKxDtubyIpSeMTATFEV4RTuD1bXTuiqCJBBGWwBxg==; 5:o0CeNShuyvl6mNan8RQgCLeabTDLvi916mKgV9ETGCoUrJiOQy4dPrKTB/NRL5hv4ore87mrJrz77bDhiy5IvSJfGdAMY65k9qpHiyu7zac4yYt6JYDSPc7ey+2ymMQ2VJWcXYOVbYgV+xIR7YUaqg==; 24:fo9O8hOWTPdNABOtN2lAhWW8jn+0HKtB9Epwrr1JL67R8rXf0OMPYWyL1t8aPdYLGPSEwvDTH5JdQ+PhR+K3iGYqkAxpKvOXH7vF5sUDbts=; 7:ISJV6L7FGYH7l0My1CqKC2/g8MdLG1wvNgsXZrjk2og4nwohKz3GWbWmlNNmtk01pjxmCU6WAUksT9ZFjx08dX2F9vyJxu2rXYRKEAn1/0qQhIzz1bJeNnCEd84LTw3gxcNIwVAeaa1e5YH2V2px3GnPzW163kDp1n/KHKTcphBpkNBC6OA1u98gHfWEEJ8HJhZvUsToXthSYKgZRUoezXScIzsKvl88NrDH1o5gvgmEePSlo7M/EVKFJv51no2C
x-microsoft-antispam: UriScan:;BCL:0;PCL:0;RULEID:;SRVR:HE1PR0601MB2202;
x-microsoft-antispam-prvs: <HE1PR0601MB2202676FD3BFD88008125ED9FC0D0@HE1PR0601MB2202.eurprd06.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(68173958961439)(278428928389397)(21748063052155);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(601004)(2401047)(5005006)(8121501046)(3002001)(10201501046)(6055026); SRVR:HE1PR0601MB2202; BCL:0; PCL:0; RULEID:; SRVR:HE1PR0601MB2202;
x-forefront-prvs: 0014E2CF50
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(7916002)(189002)(51914003)(377424004)(53754006)(377454003)(24454002)(199003)(3660700001)(3280700002)(122556002)(81166006)(81156014)(106356001)(106116001)(9326002)(97736004)(86362001)(77096005)(11100500001)(8936002)(19617315012)(6116002)(19625215002)(586003)(19580395003)(19580405001)(7846002)(3846002)(102836003)(790700001)(7736002)(189998001)(66066001)(5001770100001)(5890100001)(8666005)(76576001)(15975445007)(2950100001)(2900100001)(87936001)(92566002)(54356999)(76176999)(8676002)(4326007)(5002640100001)(7696003)(101416001)(5003600100003)(68736007)(9686002)(16236675004)(15650500001)(2420400007)(10710500007)(7906003)(33656002)(74316002)(50986999)(19300405004)(105586002)(10400500002)(2906002)(138113003)(7059030); DIR:OUT; SFP:1102; SCL:1; SRVR:HE1PR0601MB2202; H:HE1PR0601MB2203.eurprd06.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; MX:1; A:1; LANG:en;
received-spf: None (protection.outlook.com: tridonic.com does not designate permitted sender hosts)
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: multipart/alternative; boundary="_000_HE1PR0601MB220388A00B3F75D2A755002AFC0D0HE1PR0601MB2203_"
MIME-Version: 1.0
X-OriginatorOrg: tridonic.com
X-MS-Exchange-CrossTenant-originalarrivaltime: 25 Jul 2016 10:04:19.5468 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 8b206608-a593-4ace-a4b6-ef1fc83c9169
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR0601MB2202
Archived-At: <https://mailarchive.ietf.org/arch/msg/ace/CiFnQ5uRE514WENF46B6jDw1qEk>
Cc: "ace@ietf.org" <ace@ietf.org>
Subject: Re: [Ace] on signature verification times for sec192r1
X-BeenThere: ace@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: "Authentication and Authorization for Constrained Environments \(ace\)" <ace.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ace>, <mailto:ace-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ace/>
List-Post: <mailto:ace@ietf.org>
List-Help: <mailto:ace-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ace>, <mailto:ace-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 25 Jul 2016 10:04:27 -0000

Hi Pascal,

Thanks for the information. Could you please explain what is nb_bloc_512bits?

Regards,
Abhinav

From: Ace [mailto:ace-bounces@ietf.org] On Behalf Of Pascal Urien
Sent: Sonntag, 24. Juli 2016 11:51
To: Michael StJohns <mstjohns@comcast.net>
Cc: ace@ietf.org
Subject: Re: [Ace] on signature verification times for sec192r1

I fully agree...

J3A081M  can be found at 10$ over the WEB

Futhermore this class of cheap device can process TLS or DTLS as illustrated in

https://tools.ietf.org/html/draft-urien-uta-tls-dtls-security-module-00

They could be used for numerous applications in the IoT

Rgs

Pascal


2016-07-23 23:59 GMT+02:00 Michael StJohns <mstjohns@comcast.net<mailto:mstjohns@comcast.net>>:
On 7/23/2016 11:10 AM, Pascal Urien wrote:
Hi All

J3A081M is a javacard device from NXP

The micocontroller should be the P5CD081V1A, which comprises a crypto processor

There's a number of these from a number of vendors.  I'd actually look at the A7xxx series of chips as they're designed to be embeddable.  I've become a big fan of javacard style solutions over the years.

In any event, the number of relatively inexpensive public key crypto accelerator chips (e.g. googl for "secure authentication chips") is greater than zero and continues to climb.  And for not a lot of money.  Estimating what from prices on Digikey, I'd think something less than $.50 for Quantity large as of today and half that or less in 1-2 years as its gets bundled into the "Swiss Army Knife" style of process (e.g. support for wireless 900mhz plus ... plus ... plus ... plus security...) (google for iot module secure element 900mhz for example).

Later, Mike





The performances with the curve secp192r1 are the following (for ECDSA + SHA1)

Sign    = 40ms +  nb_bloc_512bits x 3.5 ms
Verify  = 60ms  + nb_bloc_512bits x 3,5 ms


By the way this chip has enough crypto ressouces for processing TLS or DTLS

Rgs

Pascal


_______________________________________________

Ace mailing list

Ace@ietf.org<mailto:Ace@ietf.org>

https://www.ietf.org/mailman/listinfo/ace



_______________________________________________
Ace mailing list
Ace@ietf.org<mailto:Ace@ietf.org>
https://www.ietf.org/mailman/listinfo/ace

________________________________________________________ The contents of this e-mail and any attachments are confidential to the intended recipient. They may not be disclosed to or used by or copied in any way by anyone other than the intended recipient. If this e-mail is received in error, please immediately notify the sender and delete the e-mail and attached documents. Please note that neither the sender nor the sender's company accept any responsibility for viruses and it is your responsibility to scan or otherwise check this e-mail and any attachments.