Re: [Curdle] Kathleen Moriarty's Yes on draft-ietf-curdle-ssh-dh-group-exchange-05: (with COMMENT)

Loganaden Velvindron <logan@hackers.mu> Fri, 22 September 2017 17:23 UTC

Return-Path: <logan@hackers.mu>
X-Original-To: curdle@ietfa.amsl.com
Delivered-To: curdle@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id AC8BE13452A for <curdle@ietfa.amsl.com>; Fri, 22 Sep 2017 10:23:11 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.6
X-Spam-Level:
X-Spam-Status: No, score=-2.6 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_LOW=-0.7] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=hackers-mu.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id bAxhLNErjcFH for <curdle@ietfa.amsl.com>; Fri, 22 Sep 2017 10:23:10 -0700 (PDT)
Received: from mail-io0-x236.google.com (mail-io0-x236.google.com [IPv6:2607:f8b0:4001:c06::236]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 544B313455F for <curdle@ietf.org>; Fri, 22 Sep 2017 10:23:07 -0700 (PDT)
Received: by mail-io0-x236.google.com with SMTP id g32so4620193ioj.2 for <curdle@ietf.org>; Fri, 22 Sep 2017 10:23:07 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=hackers-mu.20150623.gappssmtp.com; s=20150623; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc; bh=FDW1t5BEO+bNJwPf3kkPd+/HgpSLNM3dFc410cyJgq0=; b=dkMG4Sw413Lb4D82rf8Dc0FJ2iSP/55kGqYbauYnTwryXmNYLkLHPAqr0FuE8sgrV2 nEwijg9pUMzYG1AC4akCB/BrScvyPcPkWcn0MnCsky6QdYdbq5BNT6j40AWTpUhN3lQr gRi0TjG2YHyXoD0udEgq6iwE4s2Fj2sZt28jIwsLhEjSUqP6rZSD4b8xDqD9KD+X0o5p QwI/WyRkM+A7ZQwvvfk+1wcFgV8+jbizNVscF2089atNYtWeTTbehBhmGODb0FDKd3+g hKu5ncWd0+zeM6gjpNRrfCQzMH0kspXhFzyvbIl/BWTaekDsVqd/dNacd+ypUEUtNDIw U4vg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:in-reply-to:references:from:date :message-id:subject:to:cc; bh=FDW1t5BEO+bNJwPf3kkPd+/HgpSLNM3dFc410cyJgq0=; b=Gov/LRcBIT4RDPcC46RpgVzKpGs3NmHm2jrhY+Jd638/yD5IYTeCusM11zxPe1M1ST S1zyxMJAtjxRfzSTkrgkKOmjqVbfFzDovnVFw2epyMXcKlvGuC90bMmwG51opWrz3Fat apq6YTdldtqff7l4YlKLTBXuOHHPbM2eknxwV/MB2STp6sVWWvxUhvLzFhFGTpGQ3i1l q4TQVp2kVGfvWIiFQE1Q6krg5ayDuaqh/UFx0kBKFzmb+owqEVzpDpK9Jyu8pZxxQ+ZQ W8Rw8I+mtRbiSzkqA3prJOJwv5gNHkmyiEWs1EfwHK+639wdjkWA+AZcY5bS/jkHcsjx ZXBA==
X-Gm-Message-State: AHPjjUj2YxexLm5jeHAVOjzsh3kAZZF/Fu9hk1hfprqewBwxfe/6EOBZ 2Cm6dczc2YTWyHrMISpyZHzU0pISDkKuVWqOsmGmJA==
X-Google-Smtp-Source: AOwi7QCVnS5llm9sZpuDaROTXvL9bPIE8ddWf/kLlldTxA/pTeuQSaq6l4wXsC1Ej7u2eljKn/O3sBwuaY4wcfzPWko=
X-Received: by 10.202.198.131 with SMTP id w125mr7277763oif.120.1506100986653; Fri, 22 Sep 2017 10:23:06 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.74.61.206 with HTTP; Fri, 22 Sep 2017 10:23:05 -0700 (PDT)
In-Reply-To: <CAHbuEH6huisAkD=kMTY-w6gA_tsL-4EDf6m+OC-AcZqcB+0Ftg@mail.gmail.com>
References: <CAHbuEH7O=v2k7UWH-nw-+G80oW7q-pK=F7vxB91BfLRuGsXCJw@mail.gmail.com> <21187.1505924879@eng-mail01.juniper.net> <CABcZeBOyAiP7FU-wvmTi46gcQVGzz93TnuskTQb=-cyMfj3wVQ@mail.gmail.com> <2DD56D786E600F45AC6BDE7DA4E8A8C118CEE6E6@eusaamb107.ericsson.se> <CABcZeBPBqQU-XnAc0KoayeOmeVcFkNWa2T3JTJXHC8+voFVA5w@mail.gmail.com> <CAFDEUTecTMwexkZ6d40DSqLFqnPBL6SwOnr6Guh+7RHbZ6qsHQ@mail.gmail.com> <CAHbuEH6huisAkD=kMTY-w6gA_tsL-4EDf6m+OC-AcZqcB+0Ftg@mail.gmail.com>
From: Loganaden Velvindron <logan@hackers.mu>
Date: Fri, 22 Sep 2017 21:23:05 +0400
Message-ID: <CAFDEUTcuOZSpz-Y6KBc_ffStDV0f-yWUsraAWHJk7-B2tAyxWA@mail.gmail.com>
To: Kathleen Moriarty <kathleen.moriarty.ietf@gmail.com>
Cc: Eric Rescorla <ekr@rtfm.com>, Daniel Migault <daniel.migault@ericsson.com>, "Mark D. Baushke" <mdb@juniper.net>, curdle <curdle@ietf.org>, "Salz, Rich" <rsalz@akamai.com>, draft-ietf-curdle-ssh-dh-group-exchange <draft-ietf-curdle-ssh-dh-group-exchange@ietf.org>, curdle <curdle-chairs@ietf.org>, Spencer Dawkins at IETF <spencerdawkins.ietf@gmail.com>, The IESG <iesg@ietf.org>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/curdle/KlCWXxgrmhBHGH1UT0YAEOuQvzM>
Subject: Re: [Curdle] Kathleen Moriarty's Yes on draft-ietf-curdle-ssh-dh-group-exchange-05: (with COMMENT)
X-BeenThere: curdle@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "List for discussion of potential new security area wg." <curdle.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/curdle>, <mailto:curdle-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/curdle/>
List-Post: <mailto:curdle@ietf.org>
List-Help: <mailto:curdle-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/curdle>, <mailto:curdle-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 22 Sep 2017 17:23:11 -0000

On Fri, Sep 22, 2017 at 6:30 PM, Kathleen Moriarty
<kathleen.moriarty.ietf@gmail.com> wrote:
> On Fri, Sep 22, 2017 at 10:20 AM, Loganaden Velvindron <logan@hackers.mu> wrote:
>> On Fri, Sep 22, 2017 at 5:51 PM, Eric Rescorla <ekr@rtfm.com> wrote:
>>> Fantastic. I just hadn't heard from him yet and wanted to make sure we
>>> agreed on who had the job
>>>
>>
>> Hello Eric,
>>
>> It's my fault for not responding earlier. I admit that the IESG review
>> is quite complex for someone who is going through it the first time. I
>> was more comfortable with Mark responding as he has more experience
>> than me, dealing with the IESG.
>
> Thank you.  I guess some of the nuances can be confusing, like a YES
> ballot with a comment.  The last suggested update would be very
> helpful so anyone reading it would know that they shouldn't just go
> for the minimum as that could be phased out within a few years.
>
>

Interestingly, this message about 3072 bits DH Group was sent to the
OpenSSH mailing list recently:
https://lists.mindrot.org/pipermail/openssh-unix-dev/2017-September/036217.html