Re: [CFRG] HPKE and AEAD Authentication Tag Length

Dan Harkins <dharkins@lounge.org> Tue, 24 August 2021 06:47 UTC

Return-Path: <dharkins@lounge.org>
X-Original-To: cfrg@ietfa.amsl.com
Delivered-To: cfrg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D91CA3A0DED for <cfrg@ietfa.amsl.com>; Mon, 23 Aug 2021 23:47:11 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.901
X-Spam-Level:
X-Spam-Status: No, score=-1.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, NICE_REPLY_A=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Ohy-BLo5yFgZ for <cfrg@ietfa.amsl.com>; Mon, 23 Aug 2021 23:47:06 -0700 (PDT)
Received: from www.goatley.com (www.goatley.com [198.137.202.94]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id E6F7F3A0DE7 for <cfrg@irtf.org>; Mon, 23 Aug 2021 23:47:05 -0700 (PDT)
Received: from trixy.bergandi.net (cpe-76-176-14-122.san.res.rr.com [76.176.14.122]) by wwwlocal.goatley.com (PMDF V6.8 #2433) with ESMTP id <0QYC0ME3206H8L@wwwlocal.goatley.com> for cfrg@irtf.org; Tue, 24 Aug 2021 01:47:05 -0500 (CDT)
Received: from blockhead.local ([69.12.173.8]) by trixy.bergandi.net (PMDF V6.7-x01 #2433) with ESMTPSA id <0QYC00H6Q00NRP@trixy.bergandi.net> for cfrg@irtf.org; Mon, 23 Aug 2021 23:43:36 -0700 (PDT)
Received: from 69-12-173-8.static.dsltransport.net ([69.12.173.8] EXTERNAL) (EHLO blockhead.local) with TLS/SSL by trixy.bergandi.net ([10.0.42.18]) (PreciseMail V3.3); Mon, 23 Aug 2021 23:43:36 -0700
Date: Mon, 23 Aug 2021 23:47:03 -0700
From: Dan Harkins <dharkins@lounge.org>
In-reply-to: <MEYPR01MB624671A6AFE0C9F0F5C5261DEEC59@MEYPR01MB6246.ausprd01.prod.outlook.com>
To: Peter Gutmann <pgut001@cs.auckland.ac.nz>, "cfrg@irtf.org" <cfrg@irtf.org>
Message-id: <e1be7fef-aa0c-f796-8535-51791f6fabd4@lounge.org>
MIME-version: 1.0
Content-type: text/plain; charset="windows-1252"; format="flowed"
Content-language: en-US
Content-transfer-encoding: 8bit
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.15; rv:78.0) Gecko/20100101 Thunderbird/78.11.0
X-PMAS-SPF: SPF check skipped for authenticated session (recv=trixy.bergandi.net, send-ip=69.12.173.8)
X-PMAS-External-Auth: 69-12-173-8.static.dsltransport.net [69.12.173.8] (EHLO blockhead.local)
References: <CAOgPGoBK9Lq0D+ufJRYowXPcKJuT8gf81ZpJ0=RZzG8-f0=fpQ@mail.gmail.com> <14bb1ce1-9ee5-4a3a-a637-f1d8f448c08e@www.fastmail.com> <6ac98f17-9885-7189-914a-6d25a2c6dd89@lounge.org> <MEYPR01MB624671A6AFE0C9F0F5C5261DEEC59@MEYPR01MB6246.ausprd01.prod.outlook.com>
X-PMAS-Software: PreciseMail V3.3 [210823] (trixy.bergandi.net)
X-PMAS-Allowed: system rule (rule allow header:X-PMAS-External noexists)
Archived-At: <https://mailarchive.ietf.org/arch/msg/cfrg/6VelTXMiJGwPyzM_V8XUVwfITDg>
Subject: Re: [CFRG] HPKE and AEAD Authentication Tag Length
X-BeenThere: cfrg@irtf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Crypto Forum Research Group <cfrg.irtf.org>
List-Unsubscribe: <https://www.irtf.org/mailman/options/cfrg>, <mailto:cfrg-request@irtf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cfrg/>
List-Post: <mailto:cfrg@irtf.org>
List-Help: <mailto:cfrg-request@irtf.org?subject=help>
List-Subscribe: <https://www.irtf.org/mailman/listinfo/cfrg>, <mailto:cfrg-request@irtf.org?subject=subscribe>
X-List-Received-Date: Tue, 24 Aug 2021 06:47:12 -0000


On 8/23/21 9:13 PM, Peter Gutmann wrote:
> Dan Harkins <dharkins@lounge.org> quotes:
>
>> "knowledgeable security professionals should be able to manage the risks in
>> connection with [a targeted forgery attack"
> It's "What is an example of the No True Scotsman Fallacy?", Alex.  Do I get my
> $400?

    ZZZZzzzzzzztttt! Wrong answer. It's not an appeal to purity, it's 
just an
observation that people who know what they're doing should know how to 
manage
risk.

   Of course, in this day and age of entire countries shuttering over a 
single
case of a viral infection (1 person out of 5,000,000) perhaps such an 
observation
is quaint and nostalgic. Alas, no $400 for you but be sure to stay in 
your bubble
and don't you dare speak to your neighbors.

   Dan.

-- 
"The object of life is not to be on the side of the majority, but to
escape finding oneself in the ranks of the insane." -- Marcus Aurelius