Re: [COSE] Consensus Call: RSA 1.5

Mike Jones <Michael.Jones@microsoft.com> Fri, 13 November 2015 03:57 UTC

Return-Path: <Michael.Jones@microsoft.com>
X-Original-To: cose@ietfa.amsl.com
Delivered-To: cose@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id BF2C01B3FBB for <cose@ietfa.amsl.com>; Thu, 12 Nov 2015 19:57:03 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.002
X-Spam-Level:
X-Spam-Status: No, score=-2.002 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id OWm9xR6pMKyW for <cose@ietfa.amsl.com>; Thu, 12 Nov 2015 19:57:01 -0800 (PST)
Received: from na01-bl2-obe.outbound.protection.outlook.com (mail-bl2on0110.outbound.protection.outlook.com [65.55.169.110]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3BE7B1B3FB9 for <cose@ietf.org>; Thu, 12 Nov 2015 19:57:00 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=selector1; h=From:To:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=jLfQn4AQD6++eIy9tjxCZ6OEMThEz+SWdjKtOKHOwRc=; b=B5ATPJJ1k3CTv7joVSY3+gW8orR23j/3RqjPPU2t2TVM8TXmSNOmIQCExAEeHtyuf+IhcgBS1kXCPRQM6x8N4WICOGXIiF9eHKCOLVTEOY7NNjfpdljgdOsQGxkmhq0BkJlE1XznsRbbhhBA8SYfR2UChc9gDayZb1lu5dscBjU=
Received: from BY2PR03MB442.namprd03.prod.outlook.com (10.141.141.145) by BY2PR03MB441.namprd03.prod.outlook.com (10.141.141.142) with Microsoft SMTP Server (TLS) id 15.1.325.17; Fri, 13 Nov 2015 03:56:58 +0000
Received: from BY2PR03MB442.namprd03.prod.outlook.com ([10.141.141.145]) by BY2PR03MB442.namprd03.prod.outlook.com ([10.141.141.145]) with mapi id 15.01.0325.003; Fri, 13 Nov 2015 03:56:58 +0000
From: Mike Jones <Michael.Jones@microsoft.com>
To: "Matt Miller (mamille2)" <mamille2@cisco.com>, Justin Richer <jricher@mit.edu>
Thread-Topic: [COSE] Consensus Call: RSA 1.5
Thread-Index: AQHRGTKoH8eJYz68ZkyP+3OyuulucZ6Vy5aAgAOQlpA=
Date: Fri, 13 Nov 2015 03:56:58 +0000
Message-ID: <BY2PR03MB442BAE918B7840D44F5879CF5110@BY2PR03MB442.namprd03.prod.outlook.com>
References: <D4508FC8-FD8C-4389-BE70-6775E7A1B635@mit.edu> <4EFB204C-B583-4878-BFB1-402309B82C45@cisco.com>
In-Reply-To: <4EFB204C-B583-4878-BFB1-402309B82C45@cisco.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=Michael.Jones@microsoft.com;
x-originating-ip: [2001:4898:80e8:5::188]
x-microsoft-exchange-diagnostics: 1; BY2PR03MB441; 5:h+/VrMcp1esQY3q9Abesyzq3tWecUC3OGYdnamZWOj5cbwkterBKHy2xcedmC5H35CUfDZkK8tNDazVrgHwWSQfoHc6Oe4Q0CX5ndJg3YU2+XUzYERLrDAwfya7w9WpZEDZPNR/IDC8WoHipdoVOFA==; 24:17FqPd+/JrWzdht9jZeRb2SmfCBnhNMKunJ8SC2MSKpy+Ac3M9HDmftFEXYc7ej60aLa581624T8rBu9tayyk2nlE6JWNyn85YOvjyh0GaA=; 20:5/SbJH44c1oSy9Y80SfH7NsVpQVokOeJcp8ukruyGRPf/vwh5xUAZdUvC3P+J3Kzg4baNM5Flq3x231vGdZa8Q==
x-microsoft-antispam: UriScan:;BCL:0;PCL:0;RULEID:;SRVR:BY2PR03MB441;
x-microsoft-antispam-prvs: <BY2PR03MB4415C2593B5862B12834789F5110@BY2PR03MB441.namprd03.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(95692535739014);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(61425024)(601004)(2401047)(5005006)(520078)(8121501046)(3002001)(10201501046)(61426024)(61427024); SRVR:BY2PR03MB441; BCL:0; PCL:0; RULEID:; SRVR:BY2PR03MB441;
x-forefront-prvs: 0759F7A50A
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(6009001)(24454002)(13464003)(189002)(377454003)(199003)(8990500004)(76176999)(76576001)(86612001)(86362001)(5005710100001)(5008740100001)(10090500001)(10290500002)(19580405001)(10400500002)(11100500001)(92566002)(2950100001)(74316001)(5004730100002)(50986999)(54356999)(122556002)(106356001)(77096005)(102836002)(5007970100001)(5002640100001)(5001960100002)(2900100001)(15975445007)(101416001)(99286002)(19580395003)(5001920100001)(105586002)(87936001)(40100003)(106116001)(5001770100001)(33656002)(2171001)(5003600100002)(97736004)(189998001)(81156007)(3826002); DIR:OUT; SFP:1102; SCL:1; SRVR:BY2PR03MB441; H:BY2PR03MB442.namprd03.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; MX:1; A:1; LANG:en;
received-spf: None (protection.outlook.com: microsoft.com does not designate permitted sender hosts)
spamdiagnosticoutput: 1:23
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: microsoft.com
X-MS-Exchange-CrossTenant-originalarrivaltime: 13 Nov 2015 03:56:58.5406 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 72f988bf-86f1-41af-91ab-2d7cd011db47
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BY2PR03MB441
Archived-At: <http://mailarchive.ietf.org/arch/msg/cose/FAhIVMoD3DCXrANwbasb-pDpwdQ>
Cc: "cose@ietf.org" <cose@ietf.org>
Subject: Re: [COSE] Consensus Call: RSA 1.5
X-BeenThere: cose@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: CBOR Object Signing and Encryption <cose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/cose>, <mailto:cose-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cose/>
List-Post: <mailto:cose@ietf.org>
List-Help: <mailto:cose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/cose>, <mailto:cose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 13 Nov 2015 03:57:03 -0000

I agree with Matt:

encryption:  A)
signatures:  B) or C)

-----Original Message-----
From: COSE [mailto:cose-bounces@ietf.org] On Behalf Of Matt Miller (mamille2)
Sent: Tuesday, November 10, 2015 1:30 PM
To: Justin Richer
Cc: cose@ietf.org
Subject: Re: [COSE] Consensus Call: RSA 1.5

encryption:  A)
signatures:  B) or C)


--
- m&m

Matt Miller <mamille2@cisco.com>
Cisco Systems, Inc.

> On Nov 7, 2015, at 01:01, Justin Richer <jricher@mit.edu> wrote:
> 
> At the Yokohama meeting, the chairs agreed to do a consensus call regarding the definition of RSA 1.5 algorithms within the messages draft or an auxiliary draft. This functionality is analogous to the RS* series of signature methods in JWS and the RSA1_5 encryption method in JWE. The five positions we are asking the working group to consider and voice their support for are:
> 
> A) Drop all support for RSA 1.5 signatures and encryption.
> B) Define RSA 1.5 support in an auxiliary draft.
> C) Define RSA 1.5 support in the main draft (note that this option was previously discussed on the list and did not find favor at the time, so if you want it back you’ll need to make a strong case).
> D) You need more information to decide.
> E) You don’t give a flying rat about RSA 1.5.*
> 
> Note that this is distinct from RSA PSS support which is being discussed in a separate thread.
> 
> The consensus call will remain open for two weeks from today, closing on November 21, 2015; at which time, hopefully we will have a clear answer and direction for our editor.
> 
> Thank you,
> — Justin & Kepeng, your COSE chairs
> 
> * I promised those in the room at Yokohama to offer a flying rat option, for which I am deeply sorry.
> _______________________________________________
> COSE mailing list
> COSE@ietf.org
> https://www.ietf.org/mailman/listinfo/cose