Re: [Cfrg] draft-goldbe-vrf: Verifiable Random Functions

"Paterson, Kenny" <Kenny.Paterson@rhul.ac.uk> Wed, 19 July 2017 07:55 UTC

Return-Path: <Kenny.Paterson@rhul.ac.uk>
X-Original-To: cfrg@ietfa.amsl.com
Delivered-To: cfrg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id AA4EE131C07 for <cfrg@ietfa.amsl.com>; Wed, 19 Jul 2017 00:55:14 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.7
X-Spam-Level:
X-Spam-Status: No, score=-4.7 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-2.8, SPF_HELO_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=rhul.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id HFi7jjedysTp for <cfrg@ietfa.amsl.com>; Wed, 19 Jul 2017 00:55:12 -0700 (PDT)
Received: from EUR03-DB5-obe.outbound.protection.outlook.com (mail-eopbgr40081.outbound.protection.outlook.com [40.107.4.81]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id F3F10131C08 for <cfrg@irtf.org>; Wed, 19 Jul 2017 00:55:09 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=rhul.onmicrosoft.com; s=selector1-rhul-ac-uk; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=nL8B6a2ZAvY7/D9HcncXGt0qXXcd2PY1oY5Dr9cceWE=; b=gt+z+B0C4bvoSB7g9+qeaA1k/d0KbvubHJrsiIO654CKeykNsSCiZYrCEX1rxjAqjwEuYFcd4c4Pm1Fx4E3uz1e0W13GxlQDrbFqTI6DVQbvEFDxdXro0xGa1oOumlpxBtWiY8vO5TQsz22SMzqDWi4TtL7o8YewEptAu1spDj4=
Received: from AM4PR0301MB1906.eurprd03.prod.outlook.com (10.168.2.156) by AM4PR0301MB1905.eurprd03.prod.outlook.com (10.168.2.155) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_128_CBC_SHA256_P256) id 15.1.1261.13; Wed, 19 Jul 2017 07:55:07 +0000
Received: from AM4PR0301MB1906.eurprd03.prod.outlook.com ([fe80::482:61a:3f1b:be7a]) by AM4PR0301MB1906.eurprd03.prod.outlook.com ([fe80::482:61a:3f1b:be7a%14]) with mapi id 15.01.1261.024; Wed, 19 Jul 2017 07:55:07 +0000
From: "Paterson, Kenny" <Kenny.Paterson@rhul.ac.uk>
To: Tony Arcieri <bascule@gmail.com>, Sharon Goldberg <goldbe@cs.bu.edu>
CC: "jan@ns1.com" <jan@ns1.com>, "cfrg@irtf.org" <cfrg@irtf.org>, Leonid Reyzin <reyzin@cs.bu.edu>, Dimitrios Papadopoulos <dipapado@umd.edu>
Thread-Topic: [Cfrg] draft-goldbe-vrf: Verifiable Random Functions
Thread-Index: AQHS+vNBkrUviGJWskGoaUVUdJgq0aJZ89OAgADv0YA=
Date: Wed, 19 Jul 2017 07:55:07 +0000
Message-ID: <D594CE8F.98ED1%kenny.paterson@rhul.ac.uk>
References: <CAJHGrrROHxR6WLQFO4+tL7N6DGKSAbwSzQZP-x3es+iy2O6TDg@mail.gmail.com> <CAHOTMVJ3v1xUm0fDXq6gy7hgUv1hLYO7ny=mwC4FskW6s68q3Q@mail.gmail.com>
In-Reply-To: <CAHOTMVJ3v1xUm0fDXq6gy7hgUv1hLYO7ny=mwC4FskW6s68q3Q@mail.gmail.com>
Accept-Language: en-GB, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/14.7.1.161129
authentication-results: gmail.com; dkim=none (message not signed) header.d=none;gmail.com; dmarc=none action=none header.from=rhul.ac.uk;
x-originating-ip: [31.133.132.244]
x-ms-publictraffictype: Email
x-microsoft-exchange-diagnostics: 1; AM4PR0301MB1905; 7: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
x-forefront-antispam-report: SFV:SKI; SCL:-1SFV:NSPM; SFS:(10009020)(6009001)(39400400002)(39850400002)(39450400003)(39410400002)(39840400002)(24454002)(230783001)(72206003)(36756003)(74482002)(4326008)(25786009)(6246003)(5250100002)(83506001)(38730400002)(6512007)(99286003)(54906002)(53936002)(2171002)(39060400002)(86362001)(3846002)(102836003)(6116002)(8676002)(14454004)(478600001)(7736002)(305945005)(2950100002)(66066001)(2906002)(42882006)(189998001)(54356999)(81166006)(50986999)(76176999)(8936002)(6486002)(5660300001)(229853002)(6506006)(53546010)(6436002)(4001350100001)(3660700001)(3280700002)(2900100001); DIR:OUT; SFP:1101; SCL:1; SRVR:AM4PR0301MB1905; H:AM4PR0301MB1906.eurprd03.prod.outlook.com; FPR:; SPF:None; MLV:ovrnspm; PTR:InfoNoRecords; LANG:en;
x-ms-office365-filtering-correlation-id: 3d06a190-b11a-4c9e-cddd-08d4ce7b78e7
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(300000500095)(300135000095)(300000501095)(300135300095)(22001)(300000502095)(300135100095)(2017030254075)(300000503095)(300135400095)(2017052603031)(201703131423075)(201703031133081)(300000504095)(300135200095)(300000505095)(300135600095)(300000506095)(300135500095); SRVR:AM4PR0301MB1905;
x-ms-traffictypediagnostic: AM4PR0301MB1905:
x-exchange-antispam-report-test: UriScan:(236129657087228);
x-microsoft-antispam-prvs: <AM4PR0301MB1905E34CAE9710532786E68DBCA60@AM4PR0301MB1905.eurprd03.prod.outlook.com>
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(100000700101)(100105000095)(100000701101)(100105300095)(100000702101)(100105100095)(6040450)(601004)(2401047)(8121501046)(5005006)(2017060910075)(10201501046)(100000703101)(100105400095)(3002001)(93006095)(93001095)(6041248)(20161123555025)(201703131423075)(201702281529075)(201702281528075)(201703061421075)(201703061406153)(20161123560025)(20161123562025)(20161123564025)(20161123558100)(6072148)(100000704101)(100105200095)(100000705101)(100105500095); SRVR:AM4PR0301MB1905; BCL:0; PCL:0; RULEID:(100000800101)(100110000095)(100000801101)(100110300095)(100000802101)(100110100095)(100000803101)(100110400095)(100000804101)(100110200095)(100000805101)(100110500095); SRVR:AM4PR0301MB1905;
x-forefront-prvs: 0373D94D15
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="utf-8"
Content-ID: <0783D249EF8D224A8152ED75FDD4CAD3@eurprd03.prod.outlook.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: rhul.ac.uk
X-MS-Exchange-CrossTenant-originalarrivaltime: 19 Jul 2017 07:55:07.0214 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 2efd699a-1922-4e69-b601-108008d28a2e
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM4PR0301MB1905
Archived-At: <https://mailarchive.ietf.org/arch/msg/cfrg/kq6ikDA4gSmQPWkQGmgfsZstLeg>
Subject: Re: [Cfrg] draft-goldbe-vrf: Verifiable Random Functions
X-BeenThere: cfrg@irtf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: Crypto Forum Research Group <cfrg.irtf.org>
List-Unsubscribe: <https://www.irtf.org/mailman/options/cfrg>, <mailto:cfrg-request@irtf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cfrg/>
List-Post: <mailto:cfrg@irtf.org>
List-Help: <mailto:cfrg-request@irtf.org?subject=help>
List-Subscribe: <https://www.irtf.org/mailman/listinfo/cfrg>, <mailto:cfrg-request@irtf.org?subject=subscribe>
X-List-Received-Date: Wed, 19 Jul 2017 07:55:15 -0000

Hi Tony,

I think this is an excellent suggestion. It's something I hit in my own
research recently too.

So: any volunteers to start a draft on this?

Cheers

Kenny

On 18/07/2017 19:37, "Cfrg on behalf of Tony Arcieri"
<cfrg-bounces@irtf.org on behalf of bascule@gmail.com> wrote:

>Just a quick note on section 5.4.1, and perhaps a question to the chairs:
>
>
>Would it be worth it for the CFRG to specify standard schemes for hashing
>to elliptic curve points? This draft talks about both the "hash and pray"
>method (5.4.1.1) then also the Icart method as well as Elligator
>(5.4.1.2).
>
>
>This seems like a common enough problem it'd be nice to have
>off-the-shelf solutions for it, rather than every higher level protocol
>having to specify their own.
>
>--
>Tony Arcieri
>