Re: [COSE] Comments on draft-schaad-cose-more-algs-00

Jim Schaad <ietf@augustcellars.com> Tue, 26 November 2019 20:12 UTC

Return-Path: <ietf@augustcellars.com>
X-Original-To: cose@ietfa.amsl.com
Delivered-To: cose@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 03CA61208F8 for <cose@ietfa.amsl.com>; Tue, 26 Nov 2019 12:12:03 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.899
X-Spam-Level:
X-Spam-Status: No, score=-1.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id PO6z5zwt_FcO for <cose@ietfa.amsl.com>; Tue, 26 Nov 2019 12:12:01 -0800 (PST)
Received: from mail2.augustcellars.com (augustcellars.com [50.45.239.150]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 65F97120052 for <cose@ietf.org>; Tue, 26 Nov 2019 12:12:01 -0800 (PST)
Received: from Jude (73.180.8.170) by mail2.augustcellars.com (192.168.0.56) with Microsoft SMTP Server (TLS) id 15.0.1395.4; Tue, 26 Nov 2019 12:11:56 -0800
From: Jim Schaad <ietf@augustcellars.com>
To: 'John Mattsson' <john.mattsson=40ericsson.com@dmarc.ietf.org>, cose@ietf.org
References: <63173D2C-6C97-4404-B958-926F4318D81A@ericsson.com>
In-Reply-To: <63173D2C-6C97-4404-B958-926F4318D81A@ericsson.com>
Date: Tue, 26 Nov 2019 12:11:55 -0800
Message-ID: <066901d5a495$c15a2350$440e69f0$@augustcellars.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
X-Mailer: Microsoft Outlook 16.0
Thread-Index: AQGcMZDGFWaO9fgFbmZkLEehaN0cd6gQxwzw
Content-Language: en-us
X-Originating-IP: [73.180.8.170]
Archived-At: <https://mailarchive.ietf.org/arch/msg/cose/80BAHs453ZTTwF5YxCQTWUvYUEc>
Subject: Re: [COSE] Comments on draft-schaad-cose-more-algs-00
X-BeenThere: cose@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: CBOR Object Signing and Encryption <cose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/cose>, <mailto:cose-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cose/>
List-Post: <mailto:cose@ietf.org>
List-Help: <mailto:cose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/cose>, <mailto:cose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 26 Nov 2019 20:12:03 -0000

I don't care one way or the other on this.  I believe that the 192 key lengths for AES are being used in some of the US government profiles, but that would not be relevant here because I don't think those profiles would be used here.

Jim


-----Original Message-----
From: COSE <cose-bounces@ietf.org> On Behalf Of John Mattsson
Sent: Tuesday, November 26, 2019 7:24 AM
To: cose@ietf.org
Subject: [COSE] Comments on draft-schaad-cose-more-algs-00

Hi,

Is A192KW-Pad needed? I don’t think I have ever seen an application actually using AES-192. Application wanting more than 128-bit security typically use AES-256, even together with algorithms like P-384 and SHA-384.

I know that RFC 8152 defines A192KW and in general I don’t see a problem with defining A192KW-Pad, but it should maybe not be given one of the limited small values for its label (TBD2) unless someone express that they want to use AES-192.

Cheers,
John

_______________________________________________
COSE mailing list
COSE@ietf.org
https://www.ietf.org/mailman/listinfo/cose