[Cfrg] J-PAKE and Schnorr NIZK for informational RFCs

Feng Hao <feng.hao@newcastle.ac.uk> Mon, 14 November 2016 11:53 UTC

Return-Path: <feng.hao@newcastle.ac.uk>
X-Original-To: cfrg@ietfa.amsl.com
Delivered-To: cfrg@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6DACA1294C3 for <cfrg@ietfa.amsl.com>; Mon, 14 Nov 2016 03:53:41 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.222
X-Spam-Level:
X-Spam-Status: No, score=-4.222 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_MED=-2.3, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=newcastle.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id VGSdHOYOayPZ for <cfrg@ietfa.amsl.com>; Mon, 14 Nov 2016 03:53:38 -0800 (PST)
Received: from cheviot12.ncl.ac.uk (cheviot12.ncl.ac.uk [128.240.234.12]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 574C11293E0 for <cfrg@irtf.org>; Mon, 14 Nov 2016 03:53:33 -0800 (PST)
Received: from exhubvm02.ncl.ac.uk ([128.240.234.9] helo=EXHUBVM02.campus.ncl.ac.uk) by cheviot12.ncl.ac.uk with esmtp (Exim 4.63) (envelope-from <feng.hao@newcastle.ac.uk>) id 1c6FpL-00010o-BT for cfrg@irtf.org; Mon, 14 Nov 2016 11:53:32 +0000
Received: from EUR02-VE1-obe.outbound.protection.outlook.com (213.199.154.53) by exhub.ncl.ac.uk (128.240.234.9) with Microsoft SMTP Server (TLS) id 14.3.266.1; Mon, 14 Nov 2016 11:53:30 +0000
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=newcastle.onmicrosoft.com; s=selector1-newcastle-ac-uk; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=1v9JYCRTd4GrRutHUbAbKf9QhJjllzfyHjZrH70zH4c=; b=GLTzq9K6oEhdYepz1W4y2U2RdEy7OXHpONT7ipe5rkY5B7f+gkv+ArM4lvQ1AE3XYLpGMnjNWpVKtX85Qk9ZwOSV6+Uj63nYYvgHyRl+XV6fuo8wWajVP1bhH2T0S2gv377LmGanj5XxG2i3KLCGuwSboIX+8RlM9bmjvx/kkDE=
Received: from DB5PR0701MB1928.eurprd07.prod.outlook.com (10.167.228.24) by DB5PR0701MB1928.eurprd07.prod.outlook.com (10.167.228.24) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P384) id 15.1.734.2; Mon, 14 Nov 2016 11:53:28 +0000
Received: from DB5PR0701MB1928.eurprd07.prod.outlook.com ([10.167.228.24]) by DB5PR0701MB1928.eurprd07.prod.outlook.com ([10.167.228.24]) with mapi id 15.01.0734.004; Mon, 14 Nov 2016 11:53:28 +0000
From: Feng Hao <feng.hao@newcastle.ac.uk>
To: "cfrg@irtf.org" <cfrg@irtf.org>
Thread-Topic: J-PAKE and Schnorr NIZK for informational RFCs
Thread-Index: AdI+bZzQZch4zeUeTNyFcWq6Y0INHQ==
Date: Mon, 14 Nov 2016 11:53:28 +0000
Message-ID: <DB5PR0701MB19282BB2E03816405AF5DF91D4BC0@DB5PR0701MB1928.eurprd07.prod.outlook.com>
Accept-Language: en-GB, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=feng.hao@newcastle.ac.uk;
x-originating-ip: [128.240.225.103]
x-microsoft-exchange-diagnostics: 1; DB5PR0701MB1928; 7:nqUGi1ilTFEuIciEk6o7IccCGu2Pq+Iz/tWFVuUpm2t4nSrfX+YN1yj/1Kv4d9UFYHGQ71qK/D0zbkD6+NlXDXZ9gtJItFxAwYFN0Zsf2pA0a9Hh7Nzwl4nuljx9A0ymJA1ry4a9HMNzsph1CfOk0i9t5rteM6U2I49nXlE2tGFMpq/vMD9ql3A43SJAjIChVQ652VujM6HIbvX+HJVJ+RZrvu0/w+5KMFLyrdfvcQ/bNLm+Az0fZGlc6pD/OKMnWJ752/DV5ilqV/OI2fpi17EKaqPioV9YFg5raPaQs182bfqfiTQwZM7xFDoqh1LeNlLmLCnvj0S+p3R2GpzQ+OeIyGwppgf4MtRxGqGMY+c=
x-ms-office365-filtering-correlation-id: 58efb6f8-1734-4d3b-5c19-08d40c84d92c
x-microsoft-antispam: UriScan:; BCL:0; PCL:0; RULEID:(22001); SRVR:DB5PR0701MB1928;
x-microsoft-antispam-prvs: <DB5PR0701MB1928344FADC8AFC5B9C1AD76D4BC0@DB5PR0701MB1928.eurprd07.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(120809045254105);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(6060326)(601004)(2401047)(5005006)(8121501046)(3002001)(10201501046)(6061321); SRVR:DB5PR0701MB1928; BCL:0; PCL:0; RULEID:; SRVR:DB5PR0701MB1928;
x-forefront-prvs: 0126A32F74
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(6009001)(7916002)(336003)(377424004)(199003)(189002)(50986999)(97736004)(5640700001)(74316002)(5660300001)(2351001)(54356999)(9686002)(107886002)(102836003)(106356001)(3846002)(6116002)(101416001)(2906002)(586003)(86362001)(68736007)(305945005)(551544002)(8676002)(76576001)(42882006)(4001150100001)(105586002)(7736002)(110136003)(6916009)(7846002)(1730700003)(81166006)(81156014)(450100001)(74482002)(7696004)(87936001)(2501003)(92566002)(66066001)(122556002)(8936002)(2900100001)(77096005)(33656002)(3660700001)(3280700002)(189998001); DIR:OUT; SFP:1101; SCL:1; SRVR:DB5PR0701MB1928; H:DB5PR0701MB1928.eurprd07.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; A:1; MX:1; LANG:en;
received-spf: None (protection.outlook.com: newcastle.ac.uk does not designate permitted sender hosts)
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-originalarrivaltime: 14 Nov 2016 11:53:28.2159 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 9c5012c9-b616-44c2-a917-66814fbe3e87
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DB5PR0701MB1928
X-OriginatorOrg: newcastle.ac.uk
Archived-At: <https://mailarchive.ietf.org/arch/msg/cfrg/m2i3FXfYTzwhJg7YV_A2yYQIVco>
Subject: [Cfrg] J-PAKE and Schnorr NIZK for informational RFCs
X-BeenThere: cfrg@irtf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: Crypto Forum Research Group <cfrg.irtf.org>
List-Unsubscribe: <https://www.irtf.org/mailman/options/cfrg>, <mailto:cfrg-request@irtf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cfrg/>
List-Post: <mailto:cfrg@irtf.org>
List-Help: <mailto:cfrg-request@irtf.org?subject=help>
List-Subscribe: <https://www.irtf.org/mailman/listinfo/cfrg>, <mailto:cfrg-request@irtf.org?subject=subscribe>
X-List-Received-Date: Mon, 14 Nov 2016 11:53:41 -0000

Hi,

Recently I submitted J-PAKE and Schnorr NIZK to IETF for "informational RFC". Both drafts are currently under review in the independent submission stream. 

As per the reviewers' comments, I've revised the drafts to clarify a few points.

Schnorr draft
 * Clarify the parameters for the finite field and elliptic curves. The DSA/ECDSA parameters are used only as an example; other groups can also be used.
 * Clarify the requirement for the hash function. It needs to be collision-resistant in a practical realisation with recommended hash functions given.

J-PAKE draft
 * Clarify that key confirmation can be implicit or explicit, and that explicit key confirmation is recommended in a practical implementation of J-PAKE.

The latest drafts are below:

Name:		draft-hao-schnorr
Revision:	05
Title:		Schnorr NIZK Proof: Non-interactive Zero Knowledge Proof for Discrete Logarithm
Document date:	2016-11-14
Group:		Individual Submission
Pages:		11
URL:            https://www.ietf.org/internet-drafts/draft-hao-schnorr-05.txt
Status:         https://datatracker.ietf.org/doc/draft-hao-schnorr/
Htmlized:       https://tools.ietf.org/html/draft-hao-schnorr-05
Diff:           https://www.ietf.org/rfcdiff?url2=draft-hao-schnorr-05

Name:		draft-hao-jpake
Revision:	05
Title:		J-PAKE: Password Authenticated Key Exchange by Juggling
Document date:	2016-11-14
Group:		Individual Submission
Pages:		14
URL:            https://www.ietf.org/internet-drafts/draft-hao-jpake-05.txt
Status:         https://datatracker.ietf.org/doc/draft-hao-jpake/
Htmlized:       https://tools.ietf.org/html/draft-hao-jpake-05
Diff:           https://www.ietf.org/rfcdiff?url2=draft-hao-jpake-05

Your comments are most welcome!

Cheers,
Feng