[CFRG] Re: IRTF Chair review of draft-irtf-cfrg-opaque-16

Daniel Bourdrez <d@bytema.re> Tue, 24 September 2024 23:55 UTC

Return-Path: <d@bytema.re>
X-Original-To: cfrg@ietfa.amsl.com
Delivered-To: cfrg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E3189C1D5C41 for <cfrg@ietfa.amsl.com>; Tue, 24 Sep 2024 16:55:39 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.908
X-Spam-Level:
X-Spam-Status: No, score=-6.908 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=bytema-re.20230601.gappssmtp.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id dycLh5TxImJ8 for <cfrg@ietfa.amsl.com>; Tue, 24 Sep 2024 16:55:38 -0700 (PDT)
Received: from mail-wr1-x42b.google.com (mail-wr1-x42b.google.com [IPv6:2a00:1450:4864:20::42b]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C02ABC1D531A for <cfrg@irtf.org>; Tue, 24 Sep 2024 16:55:38 -0700 (PDT)
Received: by mail-wr1-x42b.google.com with SMTP id ffacd0b85a97d-374ba74e9b6so5024643f8f.0 for <cfrg@irtf.org>; Tue, 24 Sep 2024 16:55:38 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=bytema-re.20230601.gappssmtp.com; s=20230601; t=1727222137; x=1727826937; darn=irtf.org; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=aFk0dsOO+ERVmod5hq73vi2UeIdqX91ggpikKhxHfG0=; b=jats4xvtAkxiLjisdwqnSmk9D8BkKY93kZ7OVJ8pLvja/HxMg9RLpUKHZvY9LdPTWS tsaCrI9PHS5W2ujogk64S5/HOegkXxpBsoRUySNNummqweLsXYgthEu5vYn1hXU/Lint th/HXByGSLc4+HiZZ8EDKzLj1nmRqUX1osn83sr3tNGWeWc/qDFVoY03AmNs3GXRJ3Vh AHzYrtMOdPmht6urOm7Qu/rNR9Ot9wPhVKu0pfoD14cIUzObIRNM7eyLxE9itGPixUOZ KK/Xoz7JJq3SaoB24zKbNW6Jfk99gJXVnzIPCq/utVd9yPtZI4P6HZqvBBE940LNOo2d bw/g==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1727222137; x=1727826937; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=aFk0dsOO+ERVmod5hq73vi2UeIdqX91ggpikKhxHfG0=; b=jmjAQwA/ZqiWsYm8YD3Vxqn0YBbwIarH1+2JMOeTHF5BYOel1IJBqQY9Zx/thFNoMI mQLxQIJ0wq+AOqJeqLvDVvP5Hf5VN/1bPDzeF3DAU36iYmY15iIp+q2A7HZgZfsMaf5M PhuAcKQsMXq/OWlam/Ltt0b7IZzBKITJt+uEecwN+f35YRk0t+JGtK57vXi4I5clL+kJ klLDK0hyP+CzRctzdtcCA0UFRUyLWKW9cFYjRzjaMZDSKkRxuD+rEGOFofUHJLR4ZFcR ckUXLJLRY3On7xFgXY0Zutw9VLWQNacn1rG6/kequozNytrzgFRMxHCqTqGh5YnCiklp m56g==
X-Forwarded-Encrypted: i=1; AJvYcCUVIn5auNRnMSKCq0VnoLA17TysUihfhO8dKUwSWlpHa3/lz3r5Zts8Yp1BDXCgFq+9zgQU@irtf.org
X-Gm-Message-State: AOJu0Yzr/P+68aSwaT1PZSW4tbbIMtQKza437HiIyAdK3GRhSjR94Ni1 pjiR4xWiXJpwri9bwyI3AnA07syjsU3MnXPqkSp1hc+T2+Bc/PVZjqh8/TvKe25og3Pm6h8DwzU sYa3S19LFV2caeh8E1Z3mTsY2QTBNQI7B796NGg==
X-Google-Smtp-Source: AGHT+IE844WKffiRReXxjvKoQI1wvT1Qdtdk8yU933KhoowIH3bRckOjGoRiQ9OmHGV286hZzff7A9GF8s7iJ0tKztw=
X-Received: by 2002:adf:fbcc:0:b0:374:c44e:ef27 with SMTP id ffacd0b85a97d-37cc245dd30mr728402f8f.8.1727222136511; Tue, 24 Sep 2024 16:55:36 -0700 (PDT)
MIME-Version: 1.0
References: <ED4B24C7-4D93-4F17-B5CC-2AE1F818A2E5@csperkins.org> <CACitvs_pyBPqZ7R0MXdpKJue6S-5XSxXmhFihpe7ewpb+BX3sQ@mail.gmail.com> <ZvLZgq04KvGTYyOL@localhost>
In-Reply-To: <ZvLZgq04KvGTYyOL@localhost>
From: Daniel Bourdrez <d@bytema.re>
Date: Wed, 25 Sep 2024 01:55:25 +0200
Message-ID: <CAOPSE-57XE83O4M7Mujc24ZPe1yWtHNZYJbQyTDMOQzbN5UUPg@mail.gmail.com>
To: stef <f3o09vld@ctrlc.hu>
Content-Type: multipart/alternative; boundary="000000000000e53da60622e63d10"
Message-ID-Hash: 6LLNE5QV4A4LSPMMNB5M3SIX4JQEED6G
X-Message-ID-Hash: 6LLNE5QV4A4LSPMMNB5M3SIX4JQEED6G
X-MailFrom: d@bytema.re
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-cfrg.irtf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: Kevin Lewi <lewi.kevin.k@gmail.com>, Colin Perkins <csp@csperkins.org>, draft-irtf-cfrg-opaque@ietf.org, cfrg-chairs@ietf.org, cfrg <cfrg@irtf.org>
X-Mailman-Version: 3.3.9rc4
Precedence: list
Subject: [CFRG] Re: IRTF Chair review of draft-irtf-cfrg-opaque-16
List-Id: Crypto Forum Research Group <cfrg.irtf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/cfrg/Dz_VGAuZvO5XeY3PjU2rJYZQ15Q>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cfrg>
List-Help: <mailto:cfrg-request@irtf.org?subject=help>
List-Owner: <mailto:cfrg-owner@irtf.org>
List-Post: <mailto:cfrg@irtf.org>
List-Subscribe: <mailto:cfrg-join@irtf.org>
List-Unsubscribe: <mailto:cfrg-leave@irtf.org>

Hi all,

Thank you Colin for the review, and thanks Kevin for preparing the fixes.

As for the vectors, I confirm my implementation at
github.com/bytemare/opaque also verifies them.

Thanks for checking!

On Tue 24 Sep 2024 at 17:25, stef <f3o09vld@ctrlc.hu> wrote:

> On Mon, Sep 23, 2024 at 09:54:36PM -0700, Kevin Lewi wrote:
> > > Finally, I note that the appendices contain a number of test vectors.
> Has
> > the latest version of the draft been verified against a reference
> > implementation to ensure these are correct?
> >
> > Yes, the test vectors in the latest version of the draft have been
> verified
> > in the following implementations:
> https://github.com/cloudflare/opaque-ts,
> > and https://github.com/facebook/opaque-ke . There are other
> implementations
> > which might also be up-to-date with the latest version, but I have not
> > confirmed: https://github.com/stef/libopaque,
>
> as the author of libopaque i confirm the testvectors of the variant
> implemented in libopaque match those in
>
> https://github.com/cfrg/draft-irtf-cfrg-opaque/blob/master/poc/vectors/vectors.json
>