Re: [CFRG] Google's (current) Threat model for Post-Quantum Cryptography

Stephen Farrell <stephen.farrell@cs.tcd.ie> Tue, 12 March 2024 23:46 UTC

Return-Path: <stephen.farrell@cs.tcd.ie>
X-Original-To: cfrg@ietfa.amsl.com
Delivered-To: cfrg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 17BEEC14F600 for <cfrg@ietfa.amsl.com>; Tue, 12 Mar 2024 16:46:41 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.007
X-Spam-Level:
X-Spam-Status: No, score=-2.007 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=cs.tcd.ie
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id j0LoyCk7jnJx for <cfrg@ietfa.amsl.com>; Tue, 12 Mar 2024 16:46:36 -0700 (PDT)
Received: from EUR04-DB3-obe.outbound.protection.outlook.com (mail-db3eur04on072d.outbound.protection.outlook.com [IPv6:2a01:111:f400:fe0c::72d]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id B7F76C14F605 for <cfrg@irtf.org>; Tue, 12 Mar 2024 16:46:36 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=YU4TL4vWGj3ggHdGmg7E0sSfYW3jcDeWYwmj8VXx+g0roxfjaLug/EEHCc6JKFRfXbx7FjK8BHnb1dMz7jYstbDSOnZB7VJPrO94TdiWAW63Sqlv5nZx9PEXtyzERFxmPTK9stXgBVL4TzD05Q87r+yiWiOmouRwgY2nfvVv18WNvjGueVEcGEfy0vpLiDq2Y76XOw8cmaPUnKz9njghJwCM5imRLtfKtUf5ld82EaGspxaKUwhDj/jmNhMfQ2b/80fJUPT2ujgO0ykxdNUerX8IykZr44Oa+u8BknAbjpGrF65gUlioOheUS12ODwOScBiglMe6tvh4bDKgp+nvLQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=8QeKDnet0bRczlkmKHHmZQsHW40bFtUUKVtwR71NEdg=; b=kDygS3f/8NP/DlKh1QdwtqrQtOWijAsc6lv+rOQ6kwKZoKVYKvjYvtqzkf2sta1lSM1bsqdtBSv2XpulAalZpTqkmf0AnxHvbbcneihE/6eMhX2oX1hYFPbZHjU/R/5EtQpW1tt92kK/KvruzgRD9lIpx3AY86G8oQHGn9CtaUcPmdQmTr8j5ssKE/51a4x79UZID8gWUCRSWW3JXSzOxI07e8v/eikKMLctzKCzL+rvPR1ifzuLkBVlGx1RTMdu2KGMGIlaYLToMdMnQkY5G6PnGUbkPnz1uBqGtTvyIbkECyXr0kRtmLr3O1YLPz0yLk1sKbf4T2b+HZz4jcuIqA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cs.tcd.ie; dmarc=pass action=none header.from=cs.tcd.ie; dkim=pass header.d=cs.tcd.ie; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cs.tcd.ie; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=8QeKDnet0bRczlkmKHHmZQsHW40bFtUUKVtwR71NEdg=; b=as0SR6Fr43gjSpC9gGLWKh9u63z9f6K4BsV7IKxpBFj3+OmwiFKZReuZGUoN0wjhwVSAjyc4zFXHnQKGnt4MN7a+yw0B9AopeD/BFr3Q2BhmxCOH1uaRc8+6G90js2lh3DP8JZ6omIReFS+Om/G2e1QTs3r8XE0BI7YW1ANw0FgJLYHNDNlmiPUvnFi4sGPxsjcIRCuDvbDqJsmIl+7TMKCvMOZUmEKzbVrVnWvGnU/uRlWSrRsHmKee5veuZGFkGfxPQvz6iAR9xdK+KnaJOc26Q8aPYmMZfaM1tlgmJ/hVj06PBwGRVo9YSSdC26CotKpqsBwEeu1o2vFumUxrZQ==
Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=cs.tcd.ie;
Received: from DB7PR02MB5113.eurprd02.prod.outlook.com (2603:10a6:10:77::15) by AM7PR02MB6482.eurprd02.prod.outlook.com (2603:10a6:20b:1b5::17) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7362.36; Tue, 12 Mar 2024 23:46:33 +0000
Received: from DB7PR02MB5113.eurprd02.prod.outlook.com ([fe80::29da:8147:6e33:c2b7]) by DB7PR02MB5113.eurprd02.prod.outlook.com ([fe80::29da:8147:6e33:c2b7%4]) with mapi id 15.20.7362.035; Tue, 12 Mar 2024 23:46:33 +0000
Message-ID: <9d4813cd-2886-4a15-9a67-dbdba24ae691@cs.tcd.ie>
Date: Tue, 12 Mar 2024 23:46:30 +0000
User-Agent: Mozilla Thunderbird
Content-Language: en-US
To: Orie Steele <orie@transmute.industries>, Sophie Schmieg <sschmieg@google.com>
Cc: "Salz, Rich" <rsalz=40akamai.com@dmarc.ietf.org>, "cfrg@irtf.org" <cfrg@irtf.org>
References: <2D2B67B4-9E1D-46DA-A2EE-08D89BFE254D@akamai.com> <CAN8C-_J0_bQRTymi0O+OtNOcid6P5m9EYj-MaZP_MJe=_VXKiw@mail.gmail.com> <3ee20938-95a5-40d3-9930-8ae8db3ed3d8@cs.tcd.ie> <CAEEbLAaXG+=shtAqf4DMJBZXm6qDCqYwh9_9ri1TY05gFW10gQ@mail.gmail.com> <CAN8C-_JnpB9KXBJrSJhqt7tpzdreVswg19e1HeQBRrzRQSm68w@mail.gmail.com>
From: Stephen Farrell <stephen.farrell@cs.tcd.ie>
Autocrypt: addr=stephen.farrell@cs.tcd.ie; keydata= xjMEY9GzphYJKwYBBAHaRw8BAQdAo6JvjmSbxHdQWPZdvciQYsHhM1NxQBU398Mmimoy4p7N M1N0ZXBoZW4gRmFycmVsbCAoMjU1MTkpIDxzdGVwaGVuLmZhcnJlbGxAY3MudGNkLmllPsKQ BBMWCAA4FiEEMG54R8tZDyZFrDOn5Njp+ZeoM90FAmPRs6YCGwMFCwkIBwIGFQoJCAsCBBYC AwECHgECF4AACgkQ5Njp+ZeoM93bogEA25ElRyX0wwg+kGEN1AoL60MoZfvQZ/VtmXY6IC5j +csBAIBpkL5ySuzJK2zLNZn9qQGht8IaUcA7cvDcLvS2uHUEzjgEY9GzphIKKwYBBAGXVQEF AQEHQILCPWOwW36e8D3pY8GmvvtItIT+A5uV80ist+WokVsQAwEIB8J4BBgWCAAgFiEEMG54 R8tZDyZFrDOn5Njp+ZeoM90FAmPRs6YCGwwACgkQ5Njp+ZeoM92bcAEA8R+8cpqRUIS+SoAN iO05xE6O/wEx8/e88BqzAYki3SoBAOQdwiPX+MQrAxkWD8xxOsdMOAtxYKpkD1n8aPJUw6QJ
In-Reply-To: <CAN8C-_JnpB9KXBJrSJhqt7tpzdreVswg19e1HeQBRrzRQSm68w@mail.gmail.com>
Content-Type: multipart/signed; micalg="pgp-sha256"; protocol="application/pgp-signature"; boundary="------------22mDsVLkKJ0S3csmP2ZXiBSK"
X-ClientProxiedBy: DU2PR04CA0203.eurprd04.prod.outlook.com (2603:10a6:10:28d::28) To DB7PR02MB5113.eurprd02.prod.outlook.com (2603:10a6:10:77::15)
MIME-Version: 1.0
X-MS-Exchange-MessageSentRepresentingType: 1
X-MS-PublicTrafficType: Email
X-MS-TrafficTypeDiagnostic: DB7PR02MB5113:EE_|AM7PR02MB6482:EE_
X-MS-Office365-Filtering-Correlation-Id: 821728b4-3987-4766-2915-08dc42eea55c
X-MS-Exchange-SharedMailbox-RoutingAgent-Processed: True
X-TCD-Routed-via-EOP: Routed via EOP
X-TCD-ROUTED: Passed-Transport-Routing-Rules
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DB7PR02MB5113.eurprd02.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(1800799015)(376005); DIR:OUT; SFP:1102;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: gktY+8Qnq5eEXFFijw5SxusSeW47/3zPJfiyjUsh98AzR4lB+e/uL26IIyanp+VAiajdatcRLZEo42G0DVWU3RKTGldh9MFosNJROOznP2t7maRv+fuI3+9LUTtrHV7m/CQ4+8/jpoWrJwuY5M9HHS2jXlGd1xTe6Y05Lsvj3B3tZwlPOPKGSR9ollUdq7DnZx6hcKnjvyMpKYbrLJwCI10IEFtavqhagw2vIdor17+MdKvJFINlXyKZDBRXLX3+gjuwQkO8HaAaf9Fx9D3OJg16Ubjdw64WvxmoOiThysfQHk/sdTN2eLz1obbmRjyLeCJR50TLL3xF0tpL7/+GLuzfFvJ6mblQ9HISU+wWG5dPW7gxFl5hXjy/qiOTP7Nvwz7+8/V2O/oKPBc17tPQIet3is03jqQaD9DOeoAPYuP4Cyd5+6dvjZ+I4M8uzTqFUT7ZIDe0Ox6UCvI+mxdp9ab6EpVvupIbRLHtsVNi9ksi8k/ZeIF2kaRdRTLL1IhEpnEJ5m5iQyUR1aOmi3xrlZFBqUx0tjhT9JM3dGV8QTAw2zMchu3R0AlCOQKEzN1BmUhJmAx+trvIFys6JMX+HekgIvRF6KNyOixtBgU3bWet44XM66lhN/P4eVMyW06IXYmXrUJMgfdgimnLbWUZIJiu3SfLJbFP8GIiC+PsGuoNOGvRuxU5gUsIxs80i1Lrm0k2a64E6s9HpLQKVl/6ZKeKgVogeHlABehDn2+FeQaIkMfrXdD6nqYXdP1qE75diildhOgfhAeKM+tBw3/7snUaaD97M85FIScUjLFLXHSGYs3B5hzLccP5HRHmFI2+akGN6e6YQCDgrZ8iKUbyh84mwMqRzeNr41nbbqUVQspbhvIaYrL6KZF6pLNz4rPEqkoZENdJRHlyZ78H+jXcSi5Khz7Ph6B/r3kz1Ki2UBN1CjhAWMSoBUSyv4meyzN14kHuHIuwtg0KsAvx8fUKT/9VVuQaP7a1ZoHMxa0t0jHlLWc1ahUfbGHqyCMDMQRr7nKqbKjCU8AhIpks8lERDvqzvSNrQgiaml3XZYdIjsiv3dhPrUIpQhy9ERn+aOZLQgRfvz1sxFvlIjjM6mMzrHZWGiKbm59i9G3EIWenLDtVy+FlP7RiOi7OYB7KZsnikrO41kKmibBdVVOQiHZOr26Jx8UDeNqjSOdKk/nxG3GkC13Ixtm4Lw9wr0sUoWXiQxD3b0o3+cynmP6dMjEmsJdE39e718E0FipoDY3+1TlaO32HM/dsGDs5VQiX8OoHuAionGpNrE7mSeU4coINYO1gcNcqq0zbTRqr6N1rNXQgrl38/0JkI94yk+hg3t+gGC1VOaAxs+mM/CjRz847xaad05s2M9XF9vwpC1FhsQtyiJKJboYdPhEvIBSPo+9fenSivt9ZS0AguzoD8jW27H5cYOHHdLlFTB1kBci8Kxe6+tNwEVxdkiGHgwdEhCCNQbhm5AOzK+o2DOt1jrZDQS3UK+cucegFoeWSCimYug7MbldAC7gcgrsrMPYgBQj5PxkqcXLj/vBwm57AoN7AtH/FDQF9G31XDl4oFJhihIY/sJkByoy1cpp0FOFVoHdNOLIfrt/v7mDWk/XuEMVf5BG8F54IHhlUB3MOo5VD+4M4VjpZyiGRr62I8XMPwXU5
X-OriginatorOrg: cs.tcd.ie
X-MS-Exchange-CrossTenant-Network-Message-Id: 821728b4-3987-4766-2915-08dc42eea55c
X-MS-Exchange-CrossTenant-AuthSource: DB7PR02MB5113.eurprd02.prod.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 12 Mar 2024 23:46:32.9955 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: d595be8d-b306-45f4-8064-9e5b82fbe52b
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: AYcYPyDvgm6zvAQtlx3uPrPJZcpRWqd/3K9UenEnZgnsRv5ZqK+Zddmn2qyI/xCl
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM7PR02MB6482
Archived-At: <https://mailarchive.ietf.org/arch/msg/cfrg/Tl9GT-8Juy44SMO-XrET1XzWl4Y>
Subject: Re: [CFRG] Google's (current) Threat model for Post-Quantum Cryptography
X-BeenThere: cfrg@irtf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Crypto Forum Research Group <cfrg.irtf.org>
List-Unsubscribe: <https://mailman.irtf.org/mailman/options/cfrg>, <mailto:cfrg-request@irtf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cfrg/>
List-Post: <mailto:cfrg@irtf.org>
List-Help: <mailto:cfrg-request@irtf.org?subject=help>
List-Subscribe: <https://mailman.irtf.org/mailman/listinfo/cfrg>, <mailto:cfrg-request@irtf.org?subject=subscribe>
X-List-Received-Date: Tue, 12 Mar 2024 23:46:41 -0000


On 12/03/2024 23:43, Orie Steele wrote:
> 1. CFRG chills out wrt hybrid signatures, and everyone hears the message
> and gets the time back.

The above is a good plan.

Saying it out loud: even better.

S.