Re: [Cfrg] Analysis of ipcrypt?

"Jason A. Donenfeld" <Jason@zx2c4.com> Thu, 22 February 2018 09:11 UTC

Return-Path: <Jason@zx2c4.com>
X-Original-To: cfrg@ietfa.amsl.com
Delivered-To: cfrg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 32B9112E865 for <cfrg@ietfa.amsl.com>; Thu, 22 Feb 2018 01:11:45 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.011
X-Spam-Level:
X-Spam-Status: No, score=-2.011 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, SPF_PASS=-0.001, T_RP_MATCHES_RCVD=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=zx2c4.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ykQINAkO13bb for <cfrg@ietfa.amsl.com>; Thu, 22 Feb 2018 01:11:43 -0800 (PST)
Received: from frisell.zx2c4.com (frisell.zx2c4.com [192.95.5.64]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6BAB4124319 for <cfrg@irtf.org>; Thu, 22 Feb 2018 01:11:42 -0800 (PST)
Received: by frisell.zx2c4.com (ZX2C4 Mail Server) with ESMTP id 6ce3d7a7 for <cfrg@irtf.org>; Thu, 22 Feb 2018 08:54:58 +0000 (UTC)
DKIM-Signature: v=1; a=rsa-sha1; c=relaxed; d=zx2c4.com; h=mime-version :in-reply-to:references:from:date:message-id:subject:to:cc :content-type; s=mail; bh=W6uMsVvTtgxH9dGYYd++IWe+yQg=; b=uxjCvy 1KQ+pbicomfHY8IvaTJjWH6tS/vhmCOgWlSAnwjLBKrKJ/3tmRfXWJDMN8VAkE2v UvYM6KYu858zjPIFEMgNBCVf5idteBPQ6wpr3RzdYfdkykYIeoPiVLwK0CYzJ2ee F+g5XGrzHEJ9d5Ce4eDbtpTg29GIvzSsOL3muE18v77no/gj+OATK/byqsJ2QMum oaBAsxWnhwoGbJ3QacOCaMPv//erlF8MVXbcauwTdt8QojefvXy/Fj4l5+pO2dGk HJ1eED7uiL/tmfzlRHCDSfC48NqJGS8Wq95/yMhvS/z7B3BfL5k3fNFr8UfiVKz1 XcyKyhxnPOoTWogg==
Received: by frisell.zx2c4.com (ZX2C4 Mail Server) with ESMTPSA id e3ec863e (TLSv1.2:ECDHE-RSA-AES128-GCM-SHA256:128:NO) for <cfrg@irtf.org>; Thu, 22 Feb 2018 08:54:57 +0000 (UTC)
Received: by mail-ot0-f181.google.com with SMTP id s4so4002219oth.7 for <cfrg@irtf.org>; Thu, 22 Feb 2018 01:11:39 -0800 (PST)
X-Gm-Message-State: APf1xPA62mcOfKsvbMzi/6YoDtciRwkr8iqFAwp+JO9OZPA062UL/JyU HRgyYa5lMWeyIK8c+ITKr84QhW6l6vzAw3crBQI=
X-Google-Smtp-Source: AG47ELvfbLy7i35Ia+QyKTQa43nizlJ1qJXI3XEspDn6YaLSIcd4RZ59CMpZwIzpDOvFkbZ1tJhEnOglBQycYfK0QY8=
X-Received: by 10.157.29.211 with SMTP id w19mr4329521otw.24.1519290698928; Thu, 22 Feb 2018 01:11:38 -0800 (PST)
MIME-Version: 1.0
Received: by 10.74.178.77 with HTTP; Thu, 22 Feb 2018 01:11:37 -0800 (PST)
In-Reply-To: <18C83761-E442-45D9-BDBF-71DC7F751007@icann.org>
References: <18C83761-E442-45D9-BDBF-71DC7F751007@icann.org>
From: "Jason A. Donenfeld" <Jason@zx2c4.com>
Date: Thu, 22 Feb 2018 10:11:37 +0100
X-Gmail-Original-Message-ID: <CAHmME9r3awwZxjEU-HWnOCyARhBx54VOcUOFJB4opmneKdZsyA@mail.gmail.com>
Message-ID: <CAHmME9r3awwZxjEU-HWnOCyARhBx54VOcUOFJB4opmneKdZsyA@mail.gmail.com>
To: Paul Hoffman <paul.hoffman@icann.org>
Cc: "cfrg@irtf.org" <cfrg@irtf.org>, Samuel Neves <sneves@dei.uc.pt>
Content-Type: multipart/mixed; boundary="001a113e3a026bb9bb0565c96e5e"
Archived-At: <https://mailarchive.ietf.org/arch/msg/cfrg/JSe2K7jDQ_fwkI5wgqlAOONW0N4>
Subject: Re: [Cfrg] Analysis of ipcrypt?
X-BeenThere: cfrg@irtf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Crypto Forum Research Group <cfrg.irtf.org>
List-Unsubscribe: <https://www.irtf.org/mailman/options/cfrg>, <mailto:cfrg-request@irtf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cfrg/>
List-Post: <mailto:cfrg@irtf.org>
List-Help: <mailto:cfrg-request@irtf.org?subject=help>
List-Subscribe: <https://www.irtf.org/mailman/listinfo/cfrg>, <mailto:cfrg-request@irtf.org?subject=subscribe>
X-List-Received-Date: Thu, 22 Feb 2018 09:11:45 -0000

Hi Paul,

Found this last night shortly after you posted this message. The
attached program Samuel (CC'd) and I just drummed up may be cause for
concern. You may not want to use ipcrypt.

Regards,
Jason