[art] Re: [Last-Call] Artart last call review of draft-eastlake-fnv-28
Rob Sayre <sayrer@gmail.com> Sun, 13 October 2024 22:53 UTC
Return-Path: <sayrer@gmail.com>
X-Original-To: art@ietfa.amsl.com
Delivered-To: art@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 77153C14F6F3; Sun, 13 Oct 2024 15:53:57 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.103
X-Spam-Level:
X-Spam-Status: No, score=-2.103 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id r__hKI4E8bNH; Sun, 13 Oct 2024 15:53:53 -0700 (PDT)
Received: from mail-ed1-x534.google.com (mail-ed1-x534.google.com [IPv6:2a00:1450:4864:20::534]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 893A0C14F615; Sun, 13 Oct 2024 15:53:53 -0700 (PDT)
Received: by mail-ed1-x534.google.com with SMTP id 4fb4d7f45d1cf-5c9709c9b0cso1123917a12.1; Sun, 13 Oct 2024 15:53:53 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1728860032; x=1729464832; darn=ietf.org; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=fKEnmtsNSrUGTZGTjkOgYPrdfVXKiI4reWCfxCgahH8=; b=ABLZJ5VMsMNjNJ/j05wQIcCnzq1yWaWlnOOlVI1OpMHHovKvFLZo+sdroxy+vB95// xbyj3Kbk2QFHxYEI07hlFI6CdXeio5d9H6L4nyvkc00p6prr6ZUWku1y6w6BvpUM3GR+ B+j/vGHoRAUbhPtA+1O9PlE/6+EgpdLmmDb1okBhy+8FRDptI0RPinMTBmfnJlc6cbFG z4nVljmF4llEN8rlxASI+d8n8uosxDQO1Ggo1hJu2v9G5fcxtjtKOEjfjynFeLibBMJf 63dVYRdZKxKxAyav9pXf9uGHiH/B/8cV1V/lBHDi2B6UVH+1WTAONjVPJE2yHZshknST fR1w==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1728860032; x=1729464832; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=fKEnmtsNSrUGTZGTjkOgYPrdfVXKiI4reWCfxCgahH8=; b=BXG69qyBXS12Epsq6/a4ZXQ9wZxqwfK20BwMmN87MwjlOcsM3HyfW3MRu3yvmHkoHT MqVD4qXVqRmEi8FHTX+EYWZ+cJj1IybJCAIsKf5jh3SRxKSd7BKcP3KoQEqV5HQuftBb +6KDIiIttjbASahnYER6udnlTsxaElAZBybRq98daAkEFFa8GUfA/5KxHtejnEPVUW2P s9pAS0xFhWTkkMbrFag3JX/uNBQiIVKRkxbDMAkUAv+efNMvQ+sz9htO843672wckeRU F81EdtYFNYy1pxSBSEDK+7I/Ucm/cKTEM59grIT/lSmg30EAMydxJgXr6n+cDpaMR2Q/ Y8IA==
X-Forwarded-Encrypted: i=1; AJvYcCUbcYfJ8RENwsQPEbXTR9Dwsp5Tqa0A8M7GsPCPraea/0etSrShww641S23o/L9MdKs4szBav/CfROa@ietf.org, AJvYcCWgS52EeBkaMfb0pTMbsbPiFYg6FWGYWoeVumCwGJIu/oCrX9K14TXykBd+4Jq8usJ4z2Y=@ietf.org, AJvYcCWxrKiYEg8gvAwKVMRi1tuW/0joFYdlNiNPPB/6yRfVH5JyFwkpUVIDc0+49uFsf91x7E35zukeMoHL3uadxTPqfkawkDbQxQ==@ietf.org
X-Gm-Message-State: AOJu0YwWduasA/SQFeoY/z9djQtRqRccX7du/zq/pSm2oTuJNWBnXESx CZmQ/cEhG6+4hWvDixJYmeyQ0nRGAxYaK1Y+3MAAgRF8V9kCyMOyIBBQjoKqHP51Jdz8uQBQXvM bJfDzzOGaaJT2AB4+1R77rFwk2ks=
X-Google-Smtp-Source: AGHT+IEXtKi4sumi76uP5aHQd+mhUl2lD2gSnwEOEwG4LrHnHMphxjrC91vT9GqSfN+MNX0aMaDZUppxH3vFmJHPTyw=
X-Received: by 2002:a05:6402:51cc:b0:5c8:9e36:ccb4 with SMTP id 4fb4d7f45d1cf-5c948cb26fcmr6271814a12.9.1728860031754; Sun, 13 Oct 2024 15:53:51 -0700 (PDT)
MIME-Version: 1.0
References: <172816120099.282330.5360535206284650774@dt-datatracker-cb674fff7-jr9km> <CABcZeBOvNVQS6ajKvWogbyHNKr_gS0eW6830knsjvMTdDbfrgA@mail.gmail.com> <1be35104-c7d4-45d3-8dd3-ddcdf7ec6a0c@betaapp.fastmail.com>
In-Reply-To: <1be35104-c7d4-45d3-8dd3-ddcdf7ec6a0c@betaapp.fastmail.com>
From: Rob Sayre <sayrer@gmail.com>
Date: Sun, 13 Oct 2024 15:53:40 -0700
Message-ID: <CAChr6SwaxS3uwYBw73J=VtvM8=suG+89LCmmiUkFNEDcJ8otNw@mail.gmail.com>
To: Martin Thomson <mt@lowentropy.net>
Content-Type: multipart/alternative; boundary="0000000000000f2bed062463988f"
Message-ID-Hash: BQH5BCGHAUB6MQJVUB62AAORINYDCJV3
X-Message-ID-Hash: BQH5BCGHAUB6MQJVUB62AAORINYDCJV3
X-MailFrom: sayrer@gmail.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-art.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: Eric Rescorla <ekr@rtfm.com>, "barryleiba@gmail.com Leiba" <barryleiba@computer.org>, art@ietf.org, draft-eastlake-fnv.all@ietf.org, last-call@ietf.org
X-Mailman-Version: 3.3.9rc5
Precedence: list
Subject: [art] Re: [Last-Call] Artart last call review of draft-eastlake-fnv-28
List-Id: Applications and Real-Time Area Discussion <art.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/art/Smo95ww1W4i2mHlS6Fi5s2yzi8g>
List-Archive: <https://mailarchive.ietf.org/arch/browse/art>
List-Help: <mailto:art-request@ietf.org?subject=help>
List-Owner: <mailto:art-owner@ietf.org>
List-Post: <mailto:art@ietf.org>
List-Subscribe: <mailto:art-join@ietf.org>
List-Unsubscribe: <mailto:art-leave@ietf.org>
On Sun, Oct 13, 2024 at 3:39 PM Martin Thomson <mt@lowentropy.net> wrote: > On Sun, Oct 13, 2024, at 10:23, Eric Rescorla wrote: > > IMO the IESG should decline to publish this document. > > In my opinion also. > Yeah. That seems right to me, but shouldn't the "Security Considerations" cover the attacks in https://en.wikipedia.org/wiki/Fowler–Noll–Vo_hash_function "The Python programming language previously used a modified version of the FNV scheme for its default hash function. From Python 3.4, FNV has been replaced with SipHash to resist 'hash flooding' denial-of-service attacks." We do internet protocols here in the IETF, so I think those attacks are salient to the IETF mission. FNV seems like a good choice for internal data structures (not IETF territory). But no objection to documenting it on the Independent stream. thanks, Rob
- [art] Artart last call review of draft-eastlake-f… Barry Leiba via Datatracker
- [art] Re: [Last-Call] Artart last call review of … Erik Auerswald
- [art] Re: [Last-Call] Artart last call review of … Eric Rescorla
- [art] Re: [Last-Call] Artart last call review of … Martin Thomson
- [art] Re: [Last-Call] Artart last call review of … Martin Thomson
- [art] Re: [Last-Call] Artart last call review of … Rob Sayre
- [art] Re: [Last-Call] Artart last call review of … Rob Sayre
- [art] Re: [Last-Call] Artart last call review of … Donald Eastlake
- [art] Re: [Last-Call] Artart last call review of … Barry Leiba