Re: [COSE] Call for adoption of CBOR Object Signing and Encryption (COSE): AES-CTR and AES-CBC

Hannes Tschofenig <Hannes.Tschofenig@arm.com> Tue, 27 September 2022 17:01 UTC

Return-Path: <Hannes.Tschofenig@arm.com>
X-Original-To: cose@ietfa.amsl.com
Delivered-To: cose@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 22408C15A725 for <cose@ietfa.amsl.com>; Tue, 27 Sep 2022 10:01:16 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.908
X-Spam-Level:
X-Spam-Status: No, score=-6.908 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, UNPARSEABLE_RELAY=0.001, URIBL_BLOCKED=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com header.b=27FCswDU; dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com header.b=27FCswDU
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id GFUSDD-XA99W for <cose@ietfa.amsl.com>; Tue, 27 Sep 2022 10:01:14 -0700 (PDT)
Received: from EUR04-HE1-obe.outbound.protection.outlook.com (mail-eopbgr70050.outbound.protection.outlook.com [40.107.7.50]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 6AF40C159A25 for <cose@ietf.org>; Tue, 27 Sep 2022 10:00:54 -0700 (PDT)
ARC-Seal: i=2; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=pass; b=jqS0YnQCQheIyFmaIpRCb3XwR1hyqqfPjhw3KG9gUTS9WIDwMycXRhpn2wr4JTMLjruSWfWTpdF2qBe7NpGSAEFZ84jM2j0e5rvg63Ips0OgA/3ySOC82yyrkumUdnF+mY0LlXHP1GGDsUpl2GuMAktaDCFjh1cip+G9biIRMMSwdHiH2DaU6cxwtofrBCm7rYxKOLkSmDVbPk/c2yopiWeR4TPZFB1XvFJ8Zgl3HbHBeveSn3zSB2wE1M5McDSWHpymej7/DqaCDOD5IPyjmpLrw7cO7HMIeTrseqQn7snPtziHDqef8jhvLc/67aXv276TODvsZfhdsq0X/O4kkA==
ARC-Message-Signature: i=2; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=JZPJztXh/E3+iNoFiIe+31Qo8TvJol1Pw7FJaYp0EfM=; b=SEtuxsaRc2yfuMIkvCP35taMQ7c5o1keCNsv5unVdqS/pfab1sPBQO0w7/JuNeZsiv6BjOOD6zXI/L+xEHA64PDF+elWPbl5E1D0scto6b5S9xD0vFrv+/gRJNUwBp+o+BZphMzGDfE1Qo41tbAWGnjtyD59y7J9MtgyThr3zcOJKoSOP8iGebhFS/B7E2b4gjSqHHiBdZYgskH82Nq2MR0N1jnDx98xdpS4ZMKNCAuB2Du2c5gJocYS3kV1oLzOo+KJVSbGqNgwxYdoccWADkQAnDGFoHFU/ZENarH1PS+utNAEl34nyesb8ZI5P1m4kA2LLFUZPL5MCnTo+UrG6w==
ARC-Authentication-Results: i=2; mx.microsoft.com 1; spf=pass (sender ip is 63.35.35.123) smtp.rcpttodomain=ietf.org smtp.mailfrom=arm.com; dmarc=pass (p=none sp=none pct=100) action=none header.from=arm.com; dkim=pass (signature was verified) header.d=armh.onmicrosoft.com; arc=pass (0 oda=1 ltdi=1 spf=[1,1,smtp.mailfrom=arm.com] dkim=[1,1,header.d=arm.com] dmarc=[1,1,header.from=arm.com])
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector2-armh-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=JZPJztXh/E3+iNoFiIe+31Qo8TvJol1Pw7FJaYp0EfM=; b=27FCswDUao4eWR43QXuLKGMts/9h1SCNF13LF/QlZXgjhOhF+9zgbC1u40QU6oa6PJUvr5PTtBg22k6SlJ1Zgfjd2LaDIs0V1U187Y0LoBOOnruFd7qv8pRylnzVZMeHunXVE9wygF+5TXq9cilS2WrOoVKPwieO2LqvQ0zRmRo=
Received: from AM5PR0502CA0013.eurprd05.prod.outlook.com (2603:10a6:203:91::23) by PAXPR08MB6702.eurprd08.prod.outlook.com (2603:10a6:102:134::19) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5654.26; Tue, 27 Sep 2022 17:00:40 +0000
Received: from VE1EUR03FT064.eop-EUR03.prod.protection.outlook.com (2603:10a6:203:91:cafe::78) by AM5PR0502CA0013.outlook.office365.com (2603:10a6:203:91::23) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5654.25 via Frontend Transport; Tue, 27 Sep 2022 17:00:39 +0000
X-MS-Exchange-Authentication-Results: spf=pass (sender IP is 63.35.35.123) smtp.mailfrom=arm.com; dkim=pass (signature was verified) header.d=armh.onmicrosoft.com;dmarc=pass action=none header.from=arm.com;
Received-SPF: Pass (protection.outlook.com: domain of arm.com designates 63.35.35.123 as permitted sender) receiver=protection.outlook.com; client-ip=63.35.35.123; helo=64aa7808-outbound-1.mta.getcheckrecipient.com; pr=C
Received: from 64aa7808-outbound-1.mta.getcheckrecipient.com (63.35.35.123) by VE1EUR03FT064.mail.protection.outlook.com (10.152.19.210) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5654.14 via Frontend Transport; Tue, 27 Sep 2022 17:00:38 +0000
Received: ("Tessian outbound 99ee3885c6d5:v128"); Tue, 27 Sep 2022 17:00:38 +0000
X-CheckRecipientChecked: true
X-CR-MTA-CID: 74a87d4ab6fed7b3
X-CR-MTA-TID: 64aa7808
Received: from d02e9d0208b2.1 by 64aa7808-outbound-1.mta.getcheckrecipient.com id 7CF65C65-2686-4D9E-A547-1876C6EC22BC.1; Tue, 27 Sep 2022 17:00:32 +0000
Received: from EUR05-AM6-obe.outbound.protection.outlook.com by 64aa7808-outbound-1.mta.getcheckrecipient.com with ESMTPS id d02e9d0208b2.1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384); Tue, 27 Sep 2022 17:00:32 +0000
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=eh6YWAaWdEolTgfzq99E+PSidtiuSx3VWfOx7nOLLChbwKL6hkLCdZaD1c+J5SmUIKVaW6627Bn4zU54KSq8Ip+xqRr8FAZON3Z7JDJEWtT2Qxt6+lFo00Q5RkNXpIHRT9zGJfiEJTdUW8/SCauWttiflAFwy5Zijd7vFgKKSw/Cu/CFOD3JjoIfRsKYvI3CRfksW4NnHxlLVIGEMxhYCYvFNqc2chvnhGjHVxsSXk2zR4XNuqFpOdX742p6zFwZpaB+PlqWi8XVw2RW5H4BdVtHcRW8xJnuCxMAfq3RvjSJAptl+lMnkDGBZbRjqtjteVf67ShmBGHdkqJID3C9dg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=JZPJztXh/E3+iNoFiIe+31Qo8TvJol1Pw7FJaYp0EfM=; b=Rk4eiumomVG8Q4Myevph23V5eaBIpCsnKQZGJpaCaEKSuubBIhTfm/GdnYLnbzF54eEuh/F2AcKNWs1tXUBa8RyovKRw1WXPP/gd0DCIl5NO7FZk4aT7HjwDr6T9X6TuzZ2pzDXiaXa4uMw3NX56s7mwfRJd+u/CCf/yifCIwbo3y1CShztZb8/2wfjtl9v8akxuleIVuTbeMizJeHg9lc3PEY1157bXSt+P16VA43XmENjXznDqTs8ViEOKpg9n2DDlnysTOCklWUgOkdfLb+BdCdyAMqpa/JhZYWrhz1A7k68dJ73EV8Jvi1I8sfcgx8TgYulqZzQV10sZM7BhyA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=arm.com; dmarc=pass action=none header.from=arm.com; dkim=pass header.d=arm.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com; s=selector2-armh-onmicrosoft-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=JZPJztXh/E3+iNoFiIe+31Qo8TvJol1Pw7FJaYp0EfM=; b=27FCswDUao4eWR43QXuLKGMts/9h1SCNF13LF/QlZXgjhOhF+9zgbC1u40QU6oa6PJUvr5PTtBg22k6SlJ1Zgfjd2LaDIs0V1U187Y0LoBOOnruFd7qv8pRylnzVZMeHunXVE9wygF+5TXq9cilS2WrOoVKPwieO2LqvQ0zRmRo=
Received: from DBBPR08MB5915.eurprd08.prod.outlook.com (2603:10a6:10:20d::17) by DB9PR08MB7793.eurprd08.prod.outlook.com (2603:10a6:10:398::8) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5654.25; Tue, 27 Sep 2022 17:00:30 +0000
Received: from DBBPR08MB5915.eurprd08.prod.outlook.com ([fe80::d48c:61b9:7a6a:88bc]) by DBBPR08MB5915.eurprd08.prod.outlook.com ([fe80::d48c:61b9:7a6a:88bc%9]) with mapi id 15.20.5654.026; Tue, 27 Sep 2022 17:00:30 +0000
From: Hannes Tschofenig <Hannes.Tschofenig@arm.com>
To: Mike Jones <Michael.Jones=40microsoft.com@dmarc.ietf.org>, "cose@ietf.org" <cose@ietf.org>
CC: "housley@vigilsec.com" <housley@vigilsec.com>
Thread-Topic: Call for adoption of CBOR Object Signing and Encryption (COSE): AES-CTR and AES-CBC
Thread-Index: AdjOp0OttBSVXAKpSZqsrfeMHXavMQD6nQlg
Date: Tue, 27 Sep 2022 17:00:30 +0000
Message-ID: <DBBPR08MB5915A58D38294FA91CDB07DAFA559@DBBPR08MB5915.eurprd08.prod.outlook.com>
References: <CO1PR00MB13086039D60B9997AE5F5928F54E9@CO1PR00MB1308.namprd00.prod.outlook.com>
In-Reply-To: <CO1PR00MB13086039D60B9997AE5F5928F54E9@CO1PR00MB1308.namprd00.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Enabled=true; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SetDate=2022-09-22T17:17:42Z; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Method=Standard; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Name=Internal; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SiteId=72f988bf-86f1-41af-91ab-2d7cd011db47; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ActionId=a1b852bb-a52b-4b19-902e-47e968dbe468; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ContentBits=0
x-ts-tracking-id: 3F45A3982327984180FA01A019D21987.0
Authentication-Results-Original: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=arm.com;
x-ms-traffictypediagnostic: DBBPR08MB5915:EE_|DB9PR08MB7793:EE_|VE1EUR03FT064:EE_|PAXPR08MB6702:EE_
X-MS-Office365-Filtering-Correlation-Id: 01b10047-036d-40bb-64cb-08daa0a9cdd1
x-checkrecipientrouted: true
nodisclaimer: true
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam-Untrusted: BCL:0;
X-Microsoft-Antispam-Message-Info-Original: 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
X-Forefront-Antispam-Report-Untrusted: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DBBPR08MB5915.eurprd08.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230022)(4636009)(366004)(396003)(376002)(346002)(39860400002)(136003)(451199015)(71200400001)(110136005)(966005)(316002)(83380400001)(478600001)(41300700001)(76116006)(66946007)(66556008)(8676002)(4326008)(66476007)(66446008)(7696005)(6506007)(52536014)(64756008)(5660300002)(53546011)(26005)(9686003)(2906002)(38070700005)(33656002)(8936002)(186003)(166002)(122000001)(38100700002)(55016003)(86362001); DIR:OUT; SFP:1101;
Content-Type: multipart/alternative; boundary="_000_DBBPR08MB5915A58D38294FA91CDB07DAFA559DBBPR08MB5915eurp_"
MIME-Version: 1.0
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DB9PR08MB7793
Original-Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=arm.com;
X-EOPAttributedMessage: 0
X-MS-Exchange-Transport-CrossTenantHeadersStripped: VE1EUR03FT064.eop-EUR03.prod.protection.outlook.com
X-MS-PublicTrafficType: Email
X-MS-Office365-Filtering-Correlation-Id-Prvs: 9f000d24-be35-406d-e199-08daa0a9c8b8
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:63.35.35.123; CTRY:IE; LANG:en; SCL:1; SRV:; IPV:CAL; SFV:NSPM; H:64aa7808-outbound-1.mta.getcheckrecipient.com; PTR:ec2-63-35-35-123.eu-west-1.compute.amazonaws.com; CAT:NONE; SFS:(13230022)(4636009)(39860400002)(346002)(136003)(396003)(376002)(451199015)(40470700004)(36840700001)(46966006)(33656002)(110136005)(86362001)(36860700001)(82740400003)(356005)(81166007)(186003)(83380400001)(316002)(47076005)(336012)(166002)(53546011)(7696005)(26005)(478600001)(966005)(70586007)(70206006)(8676002)(4326008)(52536014)(9686003)(6506007)(107886003)(40460700003)(8936002)(2906002)(5660300002)(41300700001)(82310400005)(40480700001)(55016003); DIR:OUT; SFP:1101;
X-OriginatorOrg: arm.com
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 27 Sep 2022 17:00:38.7909 (UTC)
X-MS-Exchange-CrossTenant-Network-Message-Id: 01b10047-036d-40bb-64cb-08daa0a9cdd1
X-MS-Exchange-CrossTenant-Id: f34e5979-57d9-4aaa-ad4d-b122a662184d
X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp: TenantId=f34e5979-57d9-4aaa-ad4d-b122a662184d; Ip=[63.35.35.123]; Helo=[64aa7808-outbound-1.mta.getcheckrecipient.com]
X-MS-Exchange-CrossTenant-AuthSource: VE1EUR03FT064.eop-EUR03.prod.protection.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Anonymous
X-MS-Exchange-CrossTenant-FromEntityHeader: HybridOnPrem
X-MS-Exchange-Transport-CrossTenantHeadersStamped: PAXPR08MB6702
Archived-At: <https://mailarchive.ietf.org/arch/msg/cose/alce6gNUj1ICf80ivmbMQvctObE>
Subject: Re: [COSE] Call for adoption of CBOR Object Signing and Encryption (COSE): AES-CTR and AES-CBC
X-BeenThere: cose@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: CBOR Object Signing and Encryption <cose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/cose>, <mailto:cose-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cose/>
List-Post: <mailto:cose@ietf.org>
List-Help: <mailto:cose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/cose>, <mailto:cose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 27 Sep 2022 17:01:16 -0000

This draft is important because of the dependency with SUIT (and the use of firmware encryption). Hence, I fully support adoption of it. (I am also a co-author)

Without this draft (and the algorithm registrations it contains) we will not be able to support encryption of firmware images on IoT devices used in the market today.


From: COSE <cose-bounces@ietf.org> On Behalf Of Mike Jones
Sent: Thursday, September 22, 2022 7:20 PM
To: cose@ietf.org
Cc: housley@vigilsec.com
Subject: [COSE] Call for adoption of CBOR Object Signing and Encryption (COSE): AES-CTR and AES-CBC

This note starts a two-week call for adoption of https://datatracker.ietf.org/doc/html/draft-housley-cose-aes-ctr-and-cbc-00 - ending on Thursday, October 6th.

Please reply either expressing support for adoption or stating your objections.

                                                       Thank you,
                                         -- Mike (COSE co-chair)

IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.