[CFRG] Re: Silithium - A Compact, Efficient and Non-separable Hybrid Signature

John Mattsson <john.mattsson@ericsson.com> Thu, 16 July 2026 06:26 UTC

Return-Path: <john.mattsson@ericsson.com>
X-Original-To: cfrg@mail2.ietf.org
Delivered-To: cfrg@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id F35B41179E419 for <cfrg@mail2.ietf.org>; Wed, 15 Jul 2026 23:26:29 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1784183190; bh=rsTrWeN/Da/HRiX2Ge7lpFJzKFQuCzjqIL1aB0sPf9k=; h=From:To:Subject:Date:References:In-Reply-To; b=u+Lo9mEPR7AnhXcfcGu9oh8Caw3iAQiIrff86MUdjidNIP42LUohM273+qQwfXK0C aXXWpCmyiUZ/R26R23jJzXNfAUmNNlA/tfTEk8ozvfAxZ0/H1Gxee5W4BlSZZnoIcY 7+TNgnoZAp5Xjm8RRmVtfsDHCIn4SESEcKyYjw6A=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -1.998
X-Spam-Level:
X-Spam-Status: No, score=-1.998 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, HTTPS_HTTP_MISMATCH=0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_NONE=0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=ericsson.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id d9vQDwVb8WLS for <cfrg@mail2.ietf.org>; Wed, 15 Jul 2026 23:26:28 -0700 (PDT)
Received: from GVXPR05CU001.outbound.protection.outlook.com (mail-swedencentralazlp170130007.outbound.protection.outlook.com [IPv6:2a01:111:f403:c202::7]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-384) server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 89D9D1179E40E for <cfrg@irtf.org>; Wed, 15 Jul 2026 23:26:28 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=grcqNRsRf9aw7QhdsennkP77hTWwpcDGbUm6oUQuQ3buRN66M6KDJb7mOJ4vFQq3Uh97UFEPE7xf0l9Um++oR0H9ueOXw5eYSK/2OEZ4QhnsrOr58RgYRZEblVWMax/mggbVZSvYek2/tNj8o2a+fbApXYleagYD0SPaem/OHUAttOKHs5xxwZ4Fya7b4Vf9l3HenId+x8QOd10s++01BiTdFOWPl8Y8HwAVZDjW8VbuMOO8Jq1J3zOUeURYggduDUL6XYx9M0Kg/dR3bm8XAQTa2d3RK/e5j6Y19BLJ1eIHUqmIAUdW4mHa2j9XgVrdXiyhgfXWkVFoLAQRXhxJgA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=rsTrWeN/Da/HRiX2Ge7lpFJzKFQuCzjqIL1aB0sPf9k=; b=ORsFxIcndi+aGWxOOH6S3wVCyXMvIkt+M5rjJp7j5iqX9NY5lh1XTOlCwlhbJ8rIhx/Ip6bqEr0JBEEWhw7FuEcArxxhv/NECnKx2+oP3JvQ0C6AL3qRdbkgHYbVZn22kQP5Vr9uwWEN+kJmv7ou+xDaklS2ZbOOg3BbHBK9pZEiGSQUH8t0n62hCPFbl2kvGXR/t3YvHzaY9UCThAl5ke4uku0z1EBIwOy00ma00OjV2111kUcQYrdCAsMKZyzMbChBVJXMvMMdM+bxYCqp2/xxdUFCnClEOTanv2gbYW2AVFsyfGKjGxo69NO/9gzgn2RhOZRjD6UJJNRbL1Lq5g==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=rsTrWeN/Da/HRiX2Ge7lpFJzKFQuCzjqIL1aB0sPf9k=; b=USZkoKYMHKO7K6FkrGXH4MuvN+myEkzRdKZh6aF0HI/kUwqg4Rv6kooJNzRn72bmbGEYkaFTkXFfo9HITMcWXuNibNbXJPqE2p8AHv8xb65lk5cWgj66eNcdvp4mPBUM1C1tLJlO/5j97EXO9KE15lt0O2DPSOXSBY+tfKukFwkIZu/JrKcjM+Zghu1zn/aCytku8hO5L9TxomzSKtm418mUZvJh/39UCghQYEu1zNVgFQ/50wKGjk1f68YYQ2MxcR6JDx5ZEFycWREl3hGmO7nrAoKGUfkIFmGUD/RCKobw9a+3CMRVz7OHDAUksBrSYTb2xrBR5v3Woyz1k0NI1Q==
Received: from AS4PR07MB8825.eurprd07.prod.outlook.com (2603:10a6:20b:4f3::15) by DU2PR07MB8330.eurprd07.prod.outlook.com (2603:10a6:10:2e5::18) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.21.245.4; Thu, 16 Jul 2026 06:26:19 +0000
Received: from AS4PR07MB8825.eurprd07.prod.outlook.com ([fe80::11a4:5f37:fa92:f174]) by AS4PR07MB8825.eurprd07.prod.outlook.com ([fe80::11a4:5f37:fa92:f174%6]) with mapi id 15.21.0245.003; Thu, 16 Jul 2026 06:26:19 +0000
From: John Mattsson <john.mattsson@ericsson.com>
To: "D. J. Bernstein" <djb@cr.yp.to>, "cfrg@irtf.org" <cfrg@irtf.org>
Thread-Topic: [CFRG] Re: Silithium - A Compact, Efficient and Non-separable Hybrid Signature
Thread-Index: Ad0UXsr4sPrZzPrLQnmC268oLzBhFQAgsGiAAAJazzY=
Date: Thu, 16 Jul 2026 06:26:19 +0000
Message-ID: <AS4PR07MB8825C2A9CDB6152278B064E789C72@AS4PR07MB8825.eurprd07.prod.outlook.com>
References: <47c7ed21f0e041f5a20c9736606b0777@ssi.gouv.fr> <20260716051125.906425.qmail@cr.yp.to>
In-Reply-To: <20260716051125.906425.qmail@cr.yp.to>
Accept-Language: en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-reactions: allow
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=ericsson.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: AS4PR07MB8825:EE_|DU2PR07MB8330:EE_
x-ms-office365-filtering-correlation-id: 08144f22-2e55-4107-760a-08dee303262f
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;ARA:13230040|4022899009|1800799024|23010399003|376014|366016|4143699003|11063799006|6133799003|56012099006|3023799007|4133799003|22082099003|18002099003|8096899003|38070700021|10067099003|13003099007;
x-microsoft-antispam-message-info: wubkN+Apif/fl70I/ySRAENEaca1w6kGmYyTiFbEq1qeTVWBJlMrmKuCYjigDlXbUUDUxKJon8vARjOji8/eQKv7loScqM1TqvkMOjayBiRWDwBd7s8uX29HRO1uiRdqaWfzaLqIwKOlcnZc+vm/EZ4GO4qy5RQYAbZI7pTQhDnCuoo6UTfes9w6raaabyYooyrzFcqRps+xN2l9z/TPNOu4Jz/5HSe6eBNEa62n5cAeF7EeWWbG9hsOOgO3THorNWf42rAgxv7P6b0dKT4vD2CU0TA5Hp+aSabCq67AznOaulsw9hz0LpU28MP2yeRbgwkY48eRuv86ry4+TOCfgUHFeAi8Gd6hr0S7fxs750hHLhTe13WDFPG2Nf8Lgv6J/n/1T2sxntn21d6nuDnnyZySSpHbsLFLhCbryWOyR53xDLpG5GDa65xIYfELCiI+F4CCX6obcIRe/d+Dr9XJ76mrd3VrgS9+De5oWSI1ba6XMYD/czcGy2/P/f+48t6VZZ/NHprFuAWN9AUkqjYml2nlgxaF1ZyOIXp0RWEl+4JekzPpNLFxMJnQkN6sKN9YLk6xWVyJiwij1SYkl8tie37Mpdo6LYpResJMa55A8FBwe0jSZNMxlJpfpPD9/n5A0AVMSjm0qrwDZZZEQxkpM+e2ItmViVhHnbgMzOIhX2Y=
x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:AS4PR07MB8825.eurprd07.prod.outlook.com;PTR:;CAT:NONE;SFS:(13230040)(4022899009)(1800799024)(23010399003)(376014)(366016)(4143699003)(11063799006)(6133799003)(56012099006)(3023799007)(4133799003)(22082099003)(18002099003)(8096899003)(38070700021)(10067099003)(13003099007);DIR:OUT;SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_AS4PR07MB8825C2A9CDB6152278B064E789C72AS4PR07MB8825eurp_"
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: AS4PR07MB8825.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 08144f22-2e55-4107-760a-08dee303262f
X-MS-Exchange-CrossTenant-originalarrivaltime: 16 Jul 2026 06:26:19.7847 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: LmRRgvq1xih1k4z4Pj3FhG9ANOo8XH32SpBc7Cz4iq5e3NBPiHZT/yjDK7pu28sPy1qmdsKv+ud9p2P+AWwpwNZpiWvW/IjkfJFfSOKry/c=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DU2PR07MB8330
Message-ID-Hash: CMQZMDSE7REBCAIGAGIQJT56Z73TMWDY
X-Message-ID-Hash: CMQZMDSE7REBCAIGAGIQJT56Z73TMWDY
X-MailFrom: john.mattsson@ericsson.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-cfrg.irtf.org-0; header-match-cfrg.irtf.org-1; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [CFRG] Re: Silithium - A Compact, Efficient and Non-separable Hybrid Signature
List-Id: Crypto Forum Research Group <cfrg.irtf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/cfrg/R1_BuPEf2facGGpoJFzzz18yOpU>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cfrg>
List-Help: <mailto:cfrg-request@irtf.org?subject=help>
List-Owner: <mailto:cfrg-owner@irtf.org>
List-Post: <mailto:cfrg@irtf.org>
List-Subscribe: <mailto:cfrg-join@irtf.org>
List-Unsubscribe: <mailto:cfrg-leave@irtf.org>

One difference is that Mothma-Ed25519-ML-DSA-65 requires retaining SHA-2, whereas Silithium (which I assume can be used with edwards25519) can be implemented using only SHA-3. If people plan to use hybrids long-term, that is an advantage for Silithium.

I think both would be acceptable, for example in SSH. The main issue with both is that they are not standardized yet, while there is an urgent need to migrate long-lived authentication keys.

>For purposes of obtaining ECC+PQ SUF-CMA assuming PQ SUF-CMA---and in
>particular stopping the argument that one should retreat from ECC+PQ to
>solo PQ to achieve SUF-CMA---it suffices to follow the suggestion of
>
>    https://pqcrypto.eu.org/deliverables/d2.5.pdf#subsection.3.3
>
>to sign with ECC and then sign the message-signature pair with PQ.

I am not aware of any system moving from ECC+PQ to standalone PQ. Current migration paths are from standalone ECC/RSA to either standalone PQ or ECC+PQ hybrids.

I do not find that recommendation in your 2015 document. Section 3.3 appears to recommend both P + Q and P o Q constructions. While it also mentions Q o P, it states that these variants have the same basic security properties, with differences mainly in performance characteristics.

 "WP2’s recommendation is, rather than simply replacing a pre-quantum signature system P with a post-quantum signature Q, to replace P with P + Q."

 "Another recommended alternative that fits better with a signed-message interface (see Section 3.2) is to use P o Q: a P o Q signed message is the result of first using Q to sign the original message, and then using P to sign the Q-signed message."

 "There are many obvious variants involving signatures on hashes, signatures on randomized hashes, Q o P , etc., with slightly different performance properties but the same basic security property"

The first discussion I am aware of that Q o P preserves the SUF-CMA property of Q is:
https://mailarchive.ietf.org/arch/msg/pqc/She2XoyCWl9paHP8GvLUdciRGYE/

Cheers,
John Preuß Mattsson

From: D. J. Bernstein <djb@cr.yp.to>
Date: Thursday, 16 July 2026 at 07:12
To: cfrg@irtf.org <cfrg@irtf.org>
Subject: [CFRG] Re: Silithium - A Compact, Efficient and Non-separable Hybrid Signature

Mothma has the big advantage of using PQ signatures _and_ ECC signatures
as black boxes. Silithium uses the PQ signature as a black box but needs
new ECC-signing code. Is there a compensating advantage of Silithium? (I
don't find it plausible that 2452 bytes vs. 2484 bytes matters.)

For purposes of obtaining ECC+PQ SUF-CMA assuming PQ SUF-CMA---and in
particular stopping the argument that one should retreat from ECC+PQ to
solo PQ to achieve SUF-CMA---it suffices to follow the suggestion of

    https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Fpqcrypto.eu.org%2Fdeliverables%2Fd2.5.pdf%23subsection.3.3&data=05%7C02%7Cjohn.mattsson%40ericsson.com%7C9ff94596d72d40047e9308dee2f8c4aa%7C92e84cebfbfd47abbe52080c6b87953f%7C0%7C0%7C639197755245854007%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&sdata=Ny1UrabORVGu3ZyeijA9uItA3ZqnjUyMN2U3Z%2FndptI%3D&reserved=0<https://pqcrypto.eu.org/deliverables/d2.5.pdf#subsection.3.3>

to sign with ECC and then sign the message-signature pair with PQ. This
also has a benefit far beyond protocols that need SUF-CMA: it simplifies
the use of signed-message APIs, which are safer than detached-signature
APIs. Mothma does this, plus randomization for more obscure properties.

The main argument I've noticed for unwrapping an ECC identification
protocol to insert a PQ signature is to aim for achieving ECC+PQ SUF-CMA
not just in the above scenario of the PQ part achieving SUF-CMA but also
in a further scenario, namely when the ECC part achieves SUF-CMA while
the PQ part fails to do so. But this is a smaller benefit that has to be
compared to the costs that the unwrapping imposes on implementors and
auditors. Anyway, my understanding is that Silithium doesn't aim for
this extra feature to begin with.

---D. J. Bernstein


===== NOTICES =====

IETF BCP 78, "Rights Contributors Provide to the IETF Trust", Section 5
(normative), "Rights in Contributions", provides a modification right
"unless explicitly disallowed in the notices contained in a Contribution
(in the form specified by the Legend Instructions)".

The official language from IETF's "Legend Instructions" for the
situation that "the Contributor does not wish to allow modifications nor
to allow publication as an RFC" is as follows: "This document may not be
modified, and derivative works of it may not be created, and it may not
be published except as an Internet-Draft."
<https://eur02.safelinks.protection.outlook.com/?url=https%3A%2F%2Ftrustee.ietf.org%2Fwp-content%2Fuploads%2FCorrected-TLP-5.0-legal-provsions.pdf&data=05%7C02%7Cjohn.mattsson%40ericsson.com%7C9ff94596d72d40047e9308dee2f8c4aa%7C92e84cebfbfd47abbe52080c6b87953f%7C0%7C0%7C639197755245880488%7CUnknown%7CTWFpbGZsb3d8eyJFbXB0eU1hcGkiOnRydWUsIlYiOiIwLjAuMDAwMCIsIlAiOiJXaW4zMiIsIkFOIjoiTWFpbCIsIldUIjoyfQ%3D%3D%7C0%7C%7C%7C&sdata=SWxTIiejV6eCaRLPY%2FeNlebFBylNGHT1p43xjgzff5k%3D&reserved=0<https://trustee.ietf.org/wp-content/uploads/Corrected-TLP-5.0-legal-provsions.pdf>>

The same language is used in, e.g., RFC 5831. The same language hereby
applies to this document. This is not disclaiming or limiting the
applicability of IETF policies; it is strictly following IETF policies.

IESG claims that the "explicitly disallowed" provision in BCP 78 is
limited to the examples in Section 3 in BCP 78. That is incorrect. BCP
78 states that Section 5, "Rights in Contributions", is normative, while
Section 3, "Exposition of Why These Procedures Are the Way They Are", is
informative. The opt-out provision in the normative text is clear, and
cannot be limited by an informative section. BCP 78 does not give IESG
any authority to issue changes or purported clarifications of the rules.

Rationale for exercising the BCP 78 opt-out provision: I'm fine with
redistribution of copies of this document. The issue is instead with
modification, such as (1) IESG's May 2025 posting of an IESG-mangled
version of an appeal that I had filed and (2) IETF management selling
IETF mailing-list text to AI companies. This goes far beyond what
copyright law allows as fair use (such as giving quotes for purposes of
commentary). When I complained about the mangled document, the IETF
Executive Director responded not by apologizing but instead by asserting
that IETF management had the power to do whatever it wanted.

_______________________________________________
CFRG mailing list -- cfrg@irtf.org
To unsubscribe send an email to cfrg-leave@irtf.org