[CFRG] Re: Random-access authenticated encryption (raAE) draft
Ilari Liusvaara <ilariliusvaara@welho.com> Tue, 14 July 2026 12:54 UTC
Return-Path: <ilariliusvaara@welho.com>
X-Original-To: cfrg@mail2.ietf.org
Delivered-To: cfrg@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 463A41167DE77 for <cfrg@mail2.ietf.org>; Tue, 14 Jul 2026 05:54:34 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1784033674; bh=F6/+zEEC+XkFcNWZk6+8krR73a3tOh3Apqj147Rerrk=; h=Date:From:To:Subject:References:In-Reply-To; b=ggC6N3QDqzk91M6OYHl9DnYdfTL7YkvB4o5QCQJqDPD8GfDtZBT5SJsqpO7KK5sx8 crRif3Lmla9NyviGa/0VrkKO4AivB/+MLWQMFycODgZF/xT66J0HjASu8ABl84abk9 gKaZJFGnjWK5gqaBas5qHhCCZ5Mam4sYpD/JhVV0=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_VALIDITY_CERTIFIED_BLOCKED=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=welho.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id hUZ9ulTGKMk0 for <cfrg@mail2.ietf.org>; Tue, 14 Jul 2026 05:54:33 -0700 (PDT)
Received: from smtp.dnamail.fi (sender103.dnamail.fi [83.102.40.157]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 96AFC1167DE6E for <cfrg@irtf.org>; Tue, 14 Jul 2026 05:54:31 -0700 (PDT)
Received: from localhost (localhost [127.0.0.1]) by smtp.dnamail.fi (Postfix) with ESMTP id E1583409F7C0 for <cfrg@irtf.org>; Tue, 14 Jul 2026 15:54:29 +0300 (EEST)
X-Virus-Scanned: X-Virus-Scanned: amavis at smtp.dnamail.fi
Received: from smtp.dnamail.fi ([83.102.40.157]) by localhost (dmail-psmtp02.s.dnaip.fi [127.0.0.1]) (amavis, port 10024) with ESMTP id QdqKqFVQ2ARk for <cfrg@irtf.org>; Tue, 14 Jul 2026 15:54:28 +0300 (EEST)
Received: from LK-Perkele-VII2 (87-92-117-27.bb.dnainternet.fi [87.92.117.27]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) (Authenticated sender: hliusvaa@dnamail.internal) by smtp.dnamail.fi (Postfix) with ESMTPSA id 1994A409294A for <cfrg@irtf.org>; Tue, 14 Jul 2026 15:54:27 +0300 (EEST)
DKIM-Filter: OpenDKIM Filter v2.11.0 smtp.dnamail.fi 1994A409294A
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=welho.com; s=2025-03; t=1784033668; bh=oWRsEssls5QEAc9RTk2DZSX7wPCgkYKDDzbegr20W40=; h=Date:From:To:Subject:References:In-Reply-To:From; b=irxtLEPdXiL7V8BPd6vfmA6x6sqMel4IXm1eWufqrUibRgDtbG74zfnsXJeDig/6P 7tbh8CUbzLcqW14z9l1PkaJt9N3o5XntEUYa2Wn252LtzhX2lPxrRmMJH/tg2qZ6yn PqMh0B5XHNtPqtT2PwTaKPq4Rb8qwlRfpbHno+gt4jShykckt6WUHW0iW1kdeV0qBR +QqqQbKpIFwevIxqy8irEyCwW+bgIFkdaJ5YucrrtV1MVP5AYhG5sGwFgJxmhDEsLF eS/nYsnMSCS7TjPPcrhygg0zhft88i7elkJWHgbAfYjiMF6QI9JZD/v5jkbbEyIBVB No9MJKKsProMw==
Date: Tue, 14 Jul 2026 15:54:23 +0300
From: Ilari Liusvaara <ilariliusvaara@welho.com>
To: "cfrg@irtf.org" <cfrg@irtf.org>
Message-ID: <alYxfyMmc80lMyls@LK-Perkele-VII2.locald>
References: <CAOjisRximY8dNJVFkYyHogh6UyH6HOUK==yt8+b-Muy9VntX9Q@mail.gmail.com> <ef6adb6e-cc5e-4021-96c7-4691404c9b1b@app.fastmail.com> <AS4PR07MB8825389E838C161453B02DA989F92@AS4PR07MB8825.eurprd07.prod.outlook.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Disposition: inline
In-Reply-To: <AS4PR07MB8825389E838C161453B02DA989F92@AS4PR07MB8825.eurprd07.prod.outlook.com>
Sender: ilariliusvaara@welho.com
Message-ID-Hash: 2HCYL7WPVP5PMUWYR2YEAI2BB5XEQ76D
X-Message-ID-Hash: 2HCYL7WPVP5PMUWYR2YEAI2BB5XEQ76D
X-MailFrom: ilariliusvaara@welho.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-cfrg.irtf.org-0; header-match-cfrg.irtf.org-1; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [CFRG] Re: Random-access authenticated encryption (raAE) draft
List-Id: Crypto Forum Research Group <cfrg.irtf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/cfrg/iXdNVQbGKWqRu5YAjTPUQ6Gr0Lg>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cfrg>
List-Help: <mailto:cfrg-request@irtf.org?subject=help>
List-Owner: <mailto:cfrg-owner@irtf.org>
List-Post: <mailto:cfrg@irtf.org>
List-Subscribe: <mailto:cfrg-join@irtf.org>
List-Unsubscribe: <mailto:cfrg-leave@irtf.org>
On Tue, Jul 14, 2026 at 08:25:05AM +0000, John Mattsson wrote: > Hi Nick, > > Thanks for driving this! > > I think this has a lot of value and something the IETF should work on. > I think even standardizing file encryption even without random-access > would have value. My experience is that very weak file options like > openssl-enc, gpg, and deriving a keys from low entropy passwords are > still commonly used in practice. What I do not like about existing file encryption options: - Lack of chunking (problems with very large messages). - Poor interoperability (options that are not interoperable). - Poor algorithm agility (nobody will ever break X, right?). - Poor specifications (usually, what specification?). - Radioactive algorithms (usually born that way). - Lots of accidental complexity. - Textual encoding (instead of encode-at-end-if-needed). - Lack of encrypted headers (none at all, or only unencrypted). ... And I am sure there is more. -Ilari
- [CFRG] Random-access authenticated encryption (ra… Nick Sullivan
- [CFRG] Re: Random-access authenticated encryption… Martin Thomson
- [CFRG] Re: Random-access authenticated encryption… John Mattsson
- [CFRG] Re: Random-access authenticated encryption… Ilari Liusvaara
- [CFRG] Re: Random-access authenticated encryption… Jack Grigg
- [CFRG] Re: Random-access authenticated encryption… Nick Sullivan
- [CFRG] Re: Random-access authenticated encryption… John Mattsson
- [CFRG] Re: Random-access authenticated encryption… Nico Williams
- [CFRG] Re: Random-access authenticated encryption… Nick Sullivan
- [CFRG] Re: Random-access authenticated encryption… Nick Sullivan
- [CFRG] Re: Random-access authenticated encryption… John Mattsson
- [CFRG] Re: Random-access authenticated encryption… Nick Sullivan
- [CFRG] Re: Random-access authenticated encryption… Martin Thomson
- [CFRG] Re: Random-access authenticated encryption… Nick Sullivan
- [CFRG] Re: Random-access authenticated encryption… Dmitry Belyavsky
- [CFRG] Re: Random-access authenticated encryption… Nick Sullivan
- [CFRG] Re: Random-access authenticated encryption… Tushar Patel
- [CFRG] Re: Random-access authenticated encryption… Nick Sullivan
- [CFRG] Re: Random-access authenticated encryption… Wang Guilin
- [CFRG] Re: Random-access authenticated encryption… Nick Sullivan
- [CFRG] Re: Random-access authenticated encryption… Wang Guilin
- [CFRG] Re: Random-access authenticated encryption… Nico Williams
- [CFRG] Re: Random-access authenticated encryption… Mark Xue