Re: [COSE] draft-ietf-cose-hpke-00 and proposed changes for -01
Hannes Tschofenig <Hannes.Tschofenig@arm.com> Mon, 24 January 2022 16:50 UTC
Return-Path: <Hannes.Tschofenig@arm.com>
X-Original-To: cose@ietfa.amsl.com
Delivered-To: cose@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1])
by ietfa.amsl.com (Postfix) with ESMTP id 165533A090D
for <cose@ietfa.amsl.com>; Mon, 24 Jan 2022 08:50:52 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.901
X-Spam-Level:
X-Spam-Status: No, score=-1.901 tagged_above=-999 required=5
tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1,
RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, UNPARSEABLE_RELAY=0.001]
autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key)
header.d=armh.onmicrosoft.com header.b=L5dAi/B7;
dkim=pass (1024-bit key) header.d=armh.onmicrosoft.com
header.b=L5dAi/B7
Received: from mail.ietf.org ([4.31.198.44])
by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024)
with ESMTP id 63dagOhM8pL2 for <cose@ietfa.amsl.com>;
Mon, 24 Jan 2022 08:50:49 -0800 (PST)
Received: from EUR01-HE1-obe.outbound.protection.outlook.com
(mail-eopbgr130042.outbound.protection.outlook.com [40.107.13.42])
(using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits))
(No client certificate requested)
by ietfa.amsl.com (Postfix) with ESMTPS id F3E4B3A090C
for <cose@ietf.org>; Mon, 24 Jan 2022 08:50:48 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com;
s=selector2-armh-onmicrosoft-com;
h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck;
bh=/yLIgA/vZL4x66XhDCcuswAGqiXVKKHiSBFnans1MD0=;
b=L5dAi/B7uvSIuzLgRBcUIdwMxsjjdfJWVs2MN6APeyMZI5NyE0A5tihf87uYVS2d3LkSitFoFuw6OJbjaX+8//p/seC/LJt6midrRSBRKhomo7xSWgbOA2dQ1uvMNJX6t0mNg4qe6K26uASe2Gx3rrxBqc7JwsO/eqErjyIEAsg=
Received: from AM6PR0502CA0048.eurprd05.prod.outlook.com
(2603:10a6:20b:56::25) by VI1PR0801MB1710.eurprd08.prod.outlook.com
(2603:10a6:800:53::20) with Microsoft SMTP Server (version=TLS1_2,
cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4909.10; Mon, 24 Jan
2022 16:50:43 +0000
Received: from VE1EUR03FT030.eop-EUR03.prod.protection.outlook.com
(2603:10a6:20b:56:cafe::b2) by AM6PR0502CA0048.outlook.office365.com
(2603:10a6:20b:56::25) with Microsoft SMTP Server (version=TLS1_2,
cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4909.17 via Frontend
Transport; Mon, 24 Jan 2022 16:50:42 +0000
X-MS-Exchange-Authentication-Results: spf=pass (sender IP is 63.35.35.123)
smtp.mailfrom=arm.com; dkim=pass (signature was verified)
header.d=armh.onmicrosoft.com;dmarc=pass action=none header.from=arm.com;
Received-SPF: Pass (protection.outlook.com: domain of arm.com designates
63.35.35.123 as permitted sender) receiver=protection.outlook.com;
client-ip=63.35.35.123; helo=64aa7808-outbound-1.mta.getcheckrecipient.com;
Received: from 64aa7808-outbound-1.mta.getcheckrecipient.com (63.35.35.123) by
VE1EUR03FT030.mail.protection.outlook.com (10.152.18.66) with
Microsoft SMTP
Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id
15.20.4909.7 via Frontend Transport; Mon, 24 Jan 2022 16:50:42 +0000
Received: ("Tessian outbound 63bb5eb69ee8:v113");
Mon, 24 Jan 2022 16:50:42 +0000
X-CR-MTA-TID: 64aa7808
Received: from ca1d61e485d3.1
by 64aa7808-outbound-1.mta.getcheckrecipient.com id
68F1AB7B-6B03-4CB5-87AD-65494B43A43C.1;
Mon, 24 Jan 2022 16:50:35 +0000
Received: from EUR05-AM6-obe.outbound.protection.outlook.com
by 64aa7808-outbound-1.mta.getcheckrecipient.com with ESMTPS id ca1d61e485d3.1
(version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384);
Mon, 24 Jan 2022 16:50:35 +0000
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none;
b=AON3DTfY1QUrRylwxDpw30FhvZdl7vC3y90IGXj6h+W69ocNxFjiIJyYctcGloXVWBIZsgjzLpn2k37XqywSgE5s3I/gKEYmsjNZEBjZ+24JuP+thtGJNYshG98TlaAzLWsU7ulCNuayw02C5qK8O4fGOLiP4IrXa82aydKpRa8/vtbEse2l9l0VA1H/Rg4s6a4b1EXpgQ2iTfORKlq3iaOA1yURj0Mtsc96s+irK81Fo1vMgQMcwMz9CNPrhMr6aoII4HqpTniIJukUtg43nM1ByLVTmBgKZtAkjxQGZxAYY3vrteoH4A4utfodejqOa0e7jUy+ES5a485/vp9+cA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com;
s=arcselector9901;
h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1;
bh=/yLIgA/vZL4x66XhDCcuswAGqiXVKKHiSBFnans1MD0=;
b=Q05hqn2Fdb19O4C49YAABTZho3Jj97H1PKIbLMv3mBQD9WV7czDwYDFY8iWD3nBwBtyRhaLZfNgR0KkBIeqGUwwBM8DSDDmCwmFR8H/vafhWQTUo2uYcu1ie1YD6/yBovfSQxwhpVdMFS2uPJBSO2J0TEHS+SMs4OJPlUdS/z2f+zK8hFy9rWVoEC4ZSt2f35aVOZdF8YVjbF+Z0PTCmLgAGElQy0/x4nwy42FMXiDd0upen/JxpCv2Q3efVxoeC5G913E/qkd89+Glb+x3ku2XBUsyWtPM0rgYhvqbwE1SwH19LOMrVjjRBBx1GFSVBy1O8aObOUgmoXXoXK6o2Xw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=none; dmarc=none;
dkim=none; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=armh.onmicrosoft.com;
s=selector2-armh-onmicrosoft-com;
h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck;
bh=/yLIgA/vZL4x66XhDCcuswAGqiXVKKHiSBFnans1MD0=;
b=L5dAi/B7uvSIuzLgRBcUIdwMxsjjdfJWVs2MN6APeyMZI5NyE0A5tihf87uYVS2d3LkSitFoFuw6OJbjaX+8//p/seC/LJt6midrRSBRKhomo7xSWgbOA2dQ1uvMNJX6t0mNg4qe6K26uASe2Gx3rrxBqc7JwsO/eqErjyIEAsg=
Received: from DBBPR08MB5915.eurprd08.prod.outlook.com (2603:10a6:10:20d::17)
by DB8PR08MB4203.eurprd08.prod.outlook.com (2603:10a6:10:ac::18) with
Microsoft SMTP Server (version=TLS1_2,
cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4909.14; Mon, 24 Jan
2022 16:50:33 +0000
Received: from DBBPR08MB5915.eurprd08.prod.outlook.com
([fe80::ec71:ec1b:a356:3ccb]) by DBBPR08MB5915.eurprd08.prod.outlook.com
([fe80::ec71:ec1b:a356:3ccb%7]) with mapi id 15.20.4909.017; Mon, 24 Jan 2022
16:50:33 +0000
From: Hannes Tschofenig <Hannes.Tschofenig@arm.com>
To: "ilariliusvaara@welho.com" <ilariliusvaara@welho.com>
CC: "cose@ietf.org" <cose@ietf.org>
Thread-Topic: [COSE] draft-ietf-cose-hpke-00 and proposed changes for -01
Thread-Index: AdgLhM0SJ9GR/pH8Rn+twyj8D7yFcgADzhAAAAbPMOAABE/7gAAm0yMgAHKOnYAAKGWQwAACgq6AAI1i+pAADjNhAAAARI+A
Date: Mon, 24 Jan 2022 16:50:33 +0000
Message-ID: <DBBPR08MB591529BB5C2A4557A5BE5A98FA5E9@DBBPR08MB5915.eurprd08.prod.outlook.com>
References: <DBBPR08MB5915C899B9EF8122898057BDFA579@DBBPR08MB5915.eurprd08.prod.outlook.com>
<YeVQooQEGzfjFeE9@LK-Perkele-VII2.locald>
<DBBPR08MB5915C7AFF11B55A8AA8CBBEEFA579@DBBPR08MB5915.eurprd08.prod.outlook.com>
<YeWbRYe13Mk+IV+2@LK-Perkele-VII2.locald>
<DBBPR08MB591586D6CB6BAF7B5354F517FA589@DBBPR08MB5915.eurprd08.prod.outlook.com>
<YemgmVX/zsWFQfA/@LK-Perkele-VII2.locald>
<DBBPR08MB59153905223EB68CD94F44E0FA5B9@DBBPR08MB5915.eurprd08.prod.outlook.com>
<YerAi7tqgY075EoM@LK-Perkele-VII2.locald>
<DBBPR08MB59153CE8720AB4EEDFF876FEFA5E9@DBBPR08MB5915.eurprd08.prod.outlook.com>
<Ye7UrNKfTDqp6WCA@LK-Perkele-VII2.locald>
In-Reply-To: <Ye7UrNKfTDqp6WCA@LK-Perkele-VII2.locald>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ts-tracking-id: 9760F340728BD941A5B0F8A457BDD048.0
x-checkrecipientchecked: true
Authentication-Results-Original: dkim=none (message not signed)
header.d=none;dmarc=none action=none header.from=arm.com;
X-MS-Office365-Filtering-Correlation-Id: 4aa34432-59a3-4590-e6a6-08d9df59a883
x-ms-traffictypediagnostic: DB8PR08MB4203:EE_|VE1EUR03FT030:EE_|VI1PR0801MB1710:EE_
X-Microsoft-Antispam-PRVS: <VI1PR0801MB1710485CE768D6B22A4A797BFA5E9@VI1PR0801MB1710.eurprd08.prod.outlook.com>
x-checkrecipientrouted: true
nodisclaimer: true
x-ms-oob-tlc-oobclassifiers: OLM:8273;OLM:10000;
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam-Untrusted: BCL:0;
X-Microsoft-Antispam-Message-Info-Original: qModW+fRoprMAN8t0x+QdHrjjPHK73PySo2bwarEGVYoZqONnhUl8a8hFCbdETgE/EFyRujtrP6D0mtseFVdIhBIRaZ0OmhcZDaXf3TN6o407XK9hF2vB3vN4DwyHacuTTdPh7iAhJ39mf7kPDAnN1DLSNGxvwQKWEYeKBIcBzivRFDYZPu9VWJgb9rcGbjasW2+L1q9nBD1DWxIQzuZ1QQaswYvfRRIVuoggUuSDwGozhUkqYrDtoADkgG3QFplPziUo/Yxz0s46bWyYZkU+cbxVo1hvV7aKoan91yGeQzB9GTku1J3n8YomYu8uFHllvgxEod8bJGirUnhjF9wWZw3FTY+R3vtuK84srAnpgIGgN+9fobpnE2oUVSemSjBEHCN83pLL4VyffGy6E9OSJ9uHxyLO6r8w0qGmfO/ZmKLjf5CuSdDPNcW2e8tPcbckUj3il4fCjm9Q3/k4vxS/5b1UdGPg8hJWX8ZuTju/V0JzWe1NrKMsU8KNCnh1PB2LahLiNqCOiTQd09MKJlytKK6+qeUgGRh72O9Id7jPsc7KEgX5UOPo8OWXlvkTCjnyPmgBI7u+ctKFq63GQbrCyi/DOX2pj0OfhHojIkyB2mXUoeXoRHfLhyOsjW3R/M7ChgHD0Wbu/JMEkvj88N5a+OQQPmGSHNRbU6iuOgaKKYZFpFJtV+sh7C4cnxROrAJCbzmVThOM7MCzHIPI6v5IQ==
X-Forefront-Antispam-Report-Untrusted: CIP:255.255.255.255; CTRY:; LANG:en;
SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DBBPR08MB5915.eurprd08.prod.outlook.com;
PTR:; CAT:NONE;
SFS:(4636009)(366004)(26005)(86362001)(4326008)(6506007)(8676002)(2906002)(71200400001)(8936002)(122000001)(6916009)(83380400001)(316002)(38100700002)(38070700005)(508600001)(55016003)(186003)(33656002)(66946007)(7696005)(66556008)(5660300002)(64756008)(9686003)(66446008)(76116006)(66476007)(52536014);
DIR:OUT; SFP:1101;
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DB8PR08MB4203
Original-Authentication-Results: dkim=none (message not signed)
header.d=none;dmarc=none action=none header.from=arm.com;
X-EOPAttributedMessage: 0
X-MS-Exchange-Transport-CrossTenantHeadersStripped: VE1EUR03FT030.eop-EUR03.prod.protection.outlook.com
X-MS-PublicTrafficType: Email
X-MS-Office365-Filtering-Correlation-Id-Prvs: 553d9ffd-8b3c-4313-3439-08d9df59a344
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:63.35.35.123; CTRY:IE; LANG:en; SCL:1; SRV:;
IPV:CAL; SFV:NSPM;
H:64aa7808-outbound-1.mta.getcheckrecipient.com;
PTR:ec2-63-35-35-123.eu-west-1.compute.amazonaws.com; CAT:NONE;
SFS:(4636009)(36840700001)(46966006)(40470700004)(83380400001)(47076005)(8676002)(336012)(33656002)(6506007)(36860700001)(508600001)(186003)(70586007)(86362001)(26005)(356005)(4326008)(2906002)(52536014)(8936002)(82310400004)(40460700003)(55016003)(9686003)(7696005)(81166007)(70206006)(5660300002)(6862004)(316002);
DIR:OUT; SFP:1101;
X-OriginatorOrg: arm.com
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 24 Jan 2022 16:50:42.0842 (UTC)
X-MS-Exchange-CrossTenant-Network-Message-Id: 4aa34432-59a3-4590-e6a6-08d9df59a883
X-MS-Exchange-CrossTenant-Id: f34e5979-57d9-4aaa-ad4d-b122a662184d
X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp: TenantId=f34e5979-57d9-4aaa-ad4d-b122a662184d; Ip=[63.35.35.123];
Helo=[64aa7808-outbound-1.mta.getcheckrecipient.com]
X-MS-Exchange-CrossTenant-AuthSource: VE1EUR03FT030.eop-EUR03.prod.protection.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Anonymous
X-MS-Exchange-CrossTenant-FromEntityHeader: HybridOnPrem
X-MS-Exchange-Transport-CrossTenantHeadersStamped: VI1PR0801MB1710
Archived-At: <https://mailarchive.ietf.org/arch/msg/cose/rXkYFwTCv_6_padwPwUN0u1N7Qg>
Subject: Re: [COSE] draft-ietf-cose-hpke-00 and proposed changes for -01
X-BeenThere: cose@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: CBOR Object Signing and Encryption <cose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/cose>,
<mailto:cose-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/cose/>
List-Post: <mailto:cose@ietf.org>
List-Help: <mailto:cose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/cose>,
<mailto:cose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 24 Jan 2022 16:50:52 -0000
Hi Ilari, Let me quickly jump to one point in your email below: > [Hannes] I am not sure > what you mean by "HPKE also has public and private keys". The newly > defined structure is supposed to communicate only the ephemeral public > key I mean, COSE_key can hold public or private keys for any algorithm supported by COSE (with exception of HSS-LMS private keys). HPKE does define format for its public and private keys. [Hannes] That's true. The ESNI spec also defines a configuration format (ECHConfig). While ECHConfig does not include the private key, it can otherwise serve as a template for defining a format for configuring HPKE-needed information. More responses later.... Ciao Hannes IMPORTANT NOTICE: The contents of this email and any attachments are confidential and may also be privileged. If you are not the intended recipient, please notify the sender immediately and do not disclose the contents to any other person, use it for any purpose, or store or copy the information in any medium. Thank you.
- [COSE] draft-ietf-cose-hpke-00 and proposed chang… Hannes Tschofenig
- Re: [COSE] draft-ietf-cose-hpke-00 and proposed c… Ilari Liusvaara
- Re: [COSE] draft-ietf-cose-hpke-00 and proposed c… Hannes Tschofenig
- Re: [COSE] draft-ietf-cose-hpke-00 and proposed c… Ilari Liusvaara
- Re: [COSE] draft-ietf-cose-hpke-00 and proposed c… Hannes Tschofenig
- Re: [COSE] draft-ietf-cose-hpke-00 and proposed c… Ilari Liusvaara
- Re: [COSE] draft-ietf-cose-hpke-00 and proposed c… Hannes Tschofenig
- Re: [COSE] draft-ietf-cose-hpke-00 and proposed c… Ilari Liusvaara
- Re: [COSE] draft-ietf-cose-hpke-00 and proposed c… Hannes Tschofenig
- Re: [COSE] draft-ietf-cose-hpke-00 and proposed c… Carsten Bormann
- Re: [COSE] draft-ietf-cose-hpke-00 and proposed c… Hannes Tschofenig
- Re: [COSE] draft-ietf-cose-hpke-00 and proposed c… Ilari Liusvaara
- Re: [COSE] draft-ietf-cose-hpke-00 and proposed c… Hannes Tschofenig