Re: [CFRG] Psychic Signatures

Peter Gutmann <pgut001@cs.auckland.ac.nz> Thu, 21 April 2022 11:18 UTC

Return-Path: <pgut001@cs.auckland.ac.nz>
X-Original-To: cfrg@ietfa.amsl.com
Delivered-To: cfrg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1AF663A1605 for <cfrg@ietfa.amsl.com>; Thu, 21 Apr 2022 04:18:51 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.906
X-Spam-Level:
X-Spam-Status: No, score=-1.906 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 0DqpmhhGdvKK for <cfrg@ietfa.amsl.com>; Thu, 21 Apr 2022 04:18:46 -0700 (PDT)
Received: from au-smtp-delivery-117.mimecast.com (au-smtp-delivery-117.mimecast.com [103.96.21.117]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1CBFD3A15F4 for <cfrg@irtf.org>; Thu, 21 Apr 2022 04:18:45 -0700 (PDT)
Received: from AUS01-ME3-obe.outbound.protection.outlook.com (mail-me3aus01lp2234.outbound.protection.outlook.com [104.47.71.234]) by relay.mimecast.com with ESMTP with STARTTLS (version=TLSv1.2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id au-mta-65-5DYLXMRBPHeBP-01-_uJrg-1; Thu, 21 Apr 2022 21:18:41 +1000
X-MC-Unique: 5DYLXMRBPHeBP-01-_uJrg-1
Received: from SY4PR01MB6251.ausprd01.prod.outlook.com (2603:10c6:10:10b::10) by SYBPR01MB5035.ausprd01.prod.outlook.com (2603:10c6:10:12::22) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5186.13; Thu, 21 Apr 2022 11:18:40 +0000
Received: from SY4PR01MB6251.ausprd01.prod.outlook.com ([fe80::b1ff:c012:f28a:c1a0]) by SY4PR01MB6251.ausprd01.prod.outlook.com ([fe80::b1ff:c012:f28a:c1a0%9]) with mapi id 15.20.5186.015; Thu, 21 Apr 2022 11:18:40 +0000
From: Peter Gutmann <pgut001@cs.auckland.ac.nz>
To: Eric Lagergren <eric@ericlagergren.com>
CC: IRTF CFRG <cfrg@irtf.org>
Thread-Topic: [CFRG] Psychic Signatures
Thread-Index: AQHYVNnTrRXxz2Yo1UGZx8lZbXvhuaz55yCOgAAJFQCAAEecDQ==
Date: Thu, 21 Apr 2022 11:18:40 +0000
Message-ID: <SY4PR01MB6251CA4D5F7C83FA564FD204EEF49@SY4PR01MB6251.ausprd01.prod.outlook.com>
References: <SY4PR01MB62519FEA53D39AABAF0BD0F4EEF49@SY4PR01MB6251.ausprd01.prod.outlook.com> <2CBA5AE5-DF84-4E9C-85DA-4DC38464710A@ericlagergren.com>
In-Reply-To: <2CBA5AE5-DF84-4E9C-85DA-4DC38464710A@ericlagergren.com>
Accept-Language: en-NZ, en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels:
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: e48b3246-5b04-4cc1-c7b7-08da2388afec
x-ms-traffictypediagnostic: SYBPR01MB5035:EE_
x-ms-exchange-atpmessageproperties: SA|SL
x-microsoft-antispam-prvs: <SYBPR01MB5035C0091DD0ACB85377E9BEEEF49@SYBPR01MB5035.ausprd01.prod.outlook.com>
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:SY4PR01MB6251.ausprd01.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230001)(4636009)(366004)(83380400001)(316002)(8676002)(66476007)(64756008)(71200400001)(66946007)(76116006)(66556008)(66446008)(6916009)(786003)(4326008)(5660300002)(55016003)(26005)(38100700002)(508600001)(38070700005)(52536014)(186003)(86362001)(2906002)(4744005)(6506007)(33656002)(9686003)(8936002)(122000001)(7696005); DIR:OUT; SFP:1101
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
MIME-Version: 1.0
X-OriginatorOrg: cs.auckland.ac.nz
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: SY4PR01MB6251.ausprd01.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: e48b3246-5b04-4cc1-c7b7-08da2388afec
X-MS-Exchange-CrossTenant-originalarrivaltime: 21 Apr 2022 11:18:40.0244 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: d1b36e95-0d50-42e9-958f-b63fa906beaa
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: pEyP8IQbuSkJZS4EdJ91OUKpdmbHFkdk9/6nNXx3oLA0c3Iy6xRZk24TlUyNZUeX6Lv+Gbcj4vNMBgAPKgzAiCdZf2w5tiT0mLCDi8Lc6ps=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SYBPR01MB5035
X-Mimecast-Spam-Score: 0
X-Mimecast-Originator: cs.auckland.ac.nz
Content-Language: en-NZ
Content-Type: text/plain; charset="WINDOWS-1252"
Content-Transfer-Encoding: quoted-printable
Archived-At: <https://mailarchive.ietf.org/arch/msg/cfrg/2d277TSaRX3kD2cmqIPa76K-kLs>
Subject: Re: [CFRG] Psychic Signatures
X-BeenThere: cfrg@irtf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Crypto Forum Research Group <cfrg.irtf.org>
List-Unsubscribe: <https://www.irtf.org/mailman/options/cfrg>, <mailto:cfrg-request@irtf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cfrg/>
List-Post: <mailto:cfrg@irtf.org>
List-Help: <mailto:cfrg-request@irtf.org?subject=help>
List-Subscribe: <https://www.irtf.org/mailman/listinfo/cfrg>, <mailto:cfrg-request@irtf.org?subject=subscribe>
X-List-Received-Date: Thu, 21 Apr 2022 11:18:51 -0000

Eric Lagergren <eric@ericlagergren.com> writes:

>Project Wycheproof has a very good set of test vectors like this. 

The problem with that is that the description omits one vital point:

  Project Wycheproof tests crypto libraries against known attacks.

without saying:

  as long as that crypto library is a JCE one.

This makes it... less than useful for checking crypto libraries in general.
In particular none of the stuff I was referring to in my previous post is
written in Java.

To be more generally applicable, it really needs static test vectors, e.g. a
bunch of self-signed X.509 certs that shouldn't verify, rather than a JCE test
suite.

Peter.