Re: [Curdle] [DNSOP] Fwd: I-D Action: draft-ietf-curdle-dnskey-eddsa-02.txt

Ondřej Surý <ondrej.sury@nic.cz> Wed, 16 November 2016 04:45 UTC

Return-Path: <ondrej.sury@nic.cz>
X-Original-To: curdle@ietfa.amsl.com
Delivered-To: curdle@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1B1B91294FC; Tue, 15 Nov 2016 20:45:19 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -8.497
X-Spam-Level:
X-Spam-Status: No, score=-8.497 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_HI=-5, RP_MATCHES_RCVD=-1.497] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=nic.cz
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id CxKpMtSII1_C; Tue, 15 Nov 2016 20:45:16 -0800 (PST)
Received: from mail.nic.cz (mail.nic.cz [IPv6:2001:1488:800:400::400]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 5427F129457; Tue, 15 Nov 2016 20:45:16 -0800 (PST)
Received: from zimbra.rfc1925.org (calcifer.labs.nic.cz [217.31.192.138]) by mail.nic.cz (Postfix) with ESMTP id 0C60C61FFB; Wed, 16 Nov 2016 05:45:15 +0100 (CET)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=nic.cz; s=default; t=1479271515; bh=OmVXWG3lju7x3zxIqoZjr4zsVoGB4t5X4E2zsKzWN20=; h=Date:From:To; b=Mb8sNCH0onEFuhO/385KaeAOOBhHEe81hyAyrah6umo2Lx1JpZYoJeWJtSAiBIRLs UhIj72MKEWg7eFQ8Q8JfY4OhYyobbvefav9QVcWxSQeia8gqY+lHOU7MsBqKK6Mos5 zmwCr4gmNbWH4yGmJZI9lQKuoY+HFdzHdVEwAIKg=
Date: Wed, 16 Nov 2016 05:45:15 +0100
From: Ondřej Surý <ondrej.sury@nic.cz>
To: Daniel Migault <daniel.migault@ericsson.com>
Message-ID: <1320631198.1957.1479271514994.JavaMail.zimbra@nic.cz>
In-Reply-To: <CADZyTkmQhZ+ouhR4gFxPzn=nfVUDb_3JS207gy-yXkvvc3u5=g@mail.gmail.com>
References: <147916501531.919.1356911194907095952.idtracker@ietfa.amsl.com> <1045632662.533.1479165738709.JavaMail.zimbra@nic.cz> <CAKW6Ri6BR25LF9fyB+hH37g=tO2jJA9-OokN2MLXK9HQQ0UfXQ@mail.gmail.com> <1765127159.1826.1479229557011.JavaMail.zimbra@nic.cz> <CAKW6Ri5DNyOgMYgxZusvuC+xK7ycP7+W0dDfmmVhLZn81-xemg@mail.gmail.com> <CADZyTkmQhZ+ouhR4gFxPzn=nfVUDb_3JS207gy-yXkvvc3u5=g@mail.gmail.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
X-Originating-IP: [217.31.192.138]
X-Mailer: Zimbra 8.7.0_GA_1659 (ZimbraWebClient - FF49 (Linux)/8.7.0_GA_1659)
Thread-Topic: I-D Action: draft-ietf-curdle-dnskey-eddsa-02.txt
Thread-Index: A0aaP+zMrFj5PZ70sjlELuPgtyQMdQ==
X-Virus-Scanned: clamav-milter 0.98.7 at mail
X-Virus-Status: Clean
Archived-At: <https://mailarchive.ietf.org/arch/msg/curdle/TMpMhxYH8uTx0QaTa1g6b5F04MM>
Cc: dnsop <dnsop@ietf.org>, curdle <curdle@ietf.org>
Subject: Re: [Curdle] [DNSOP] Fwd: I-D Action: draft-ietf-curdle-dnskey-eddsa-02.txt
X-BeenThere: curdle@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: "List for discussion of potential new security area wg." <curdle.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/curdle>, <mailto:curdle-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/curdle/>
List-Post: <mailto:curdle@ietf.org>
List-Help: <mailto:curdle-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/curdle>, <mailto:curdle-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 16 Nov 2016 04:45:19 -0000

draft-irft-cfrg-eddsa states in Section 5.2:

   Value of context is set by signer and verifier (maximum of 255
   octets, the default is empty string) and has to match octet by octet
   for verification to be successful.

So in fact, the default context for Ed448 is "empty string".

Cheers,
Ondrej

--
 Ondřej Surý -- Technical Fellow
 --------------------------------------------
 CZ.NIC, z.s.p.o.    --     Laboratoře CZ.NIC
 Milesovska 5, 130 00 Praha 3, Czech Republic
 mailto:ondrej.sury@nic.cz    https://nic.cz/
 --------------------------------------------

----- Original Message -----
> From: "Daniel Migault" <daniel.migault@ericsson.com>
> To: "Dick Franks" <rwfranks@acm.org>
> Cc: "dnsop" <dnsop@ietf.org>, "Ondřej Surý" <ondrej.sury@nic.cz>
> Sent: Wednesday, 16 November, 2016 05:23:23
> Subject: Re: [DNSOP] Fwd: [Curdle] I-D Action: draft-ietf-curdle-dnskey-eddsa-02.txt

> my understanding is that ed448 does not specify default values for the
> context and i have not seen in the current draft a specification of the
> context. Shouldn't we explicitly mention that the context is empty?
> Yours,
> daniel
> 
> On Nov 16, 2016 2:44 AM, "Dick Franks" <rwfranks@acm.org> wrote:
> 
>> My mistake. Apologies.
>>
>> I also had draft-wouters-sury-dnsop-algorithm-update-02
>> on screen. That has the registry table with same TBDs.
>> Starting at 04:30 dulls the brain.
>>
>>
>> Dick Franks
>> ________________________
>>
>>
>> On 15 November 2016 at 17:05, Ondřej Surý <ondrej.sury@nic.cz> wrote:
>>
>>> The IANA Considerations Sections says:
>>>
>>> This document updates the IANA registry "Domain Name System Security
>>> (DNSSEC) Algorithm Numbers".
>>>
>>> And I believe that's the correct language according to
>>> https://tools.ietf.org/html/rfc5226#section-5.1
>>>
>>> Cheers,
>>> Ondrej
>>>
>>> --
>>>  Ondřej Surý -- Technical Fellow
>>>  --------------------------------------------
>>>  CZ.NIC, z.s.p.o.    --     Laboratoře CZ.NIC
>>>  Milesovska 5, 130 00 Praha 3, Czech Republic
>>>  mailto:ondrej.sury@nic.cz    https://nic.cz/
>>>  --------------------------------------------
>>>
>>> ----- Original Message -----
>>> > From: "Dick Franks" <rwfranks@acm.org>
>>> > To: "Ondřej Surý" <ondrej.sury@nic.cz>
>>> > Cc: "dnsop" <dnsop@ietf.org>
>>> > Sent: Tuesday, 15 November, 2016 17:51:56
>>> > Subject: Re: [DNSOP] Fwd: [Curdle] I-D Action:
>>> draft-ietf-curdle-dnskey-eddsa-02.txt
>>>
>>> > Ondrej
>>> >
>>> > The document calls up two TBD code points for the EDDSA algorithms, but
>>> the
>>> > IANA Considerations section places no action on IANA to assign these and
>>> > add them to the registry.
>>> >
>>> > Other than that, seems ok.
>>> >
>>> >
>>> > Dick Franks
>>> > ________________________
>>> >
>>> >
>>> > On 14 November 2016 at 23:22, Ondřej Surý <ondrej.sury@nic.cz> wrote:
>>> >
>>> >> Dear all,
>>> >>
>>> >> a new version of EDDSA for DNSSEC has been posted
>>> >> that resolves most if not all comments received
>>> >> during WGLC in curdle.  This is one last chance
>>> >> to review the document, so don't miss it! :)
>>> >>
>>> >> Cheers,
>>> >> --
>>> >>  Ondřej Surý -- Technical Fellow
>>> >>  --------------------------------------------
>>> >>  CZ.NIC, z.s.p.o.    --     Laboratoře CZ.NIC
>>> >>  Milesovska 5, 130 00 Praha 3, Czech Republic
>>> >>  mailto:ondrej.sury@nic.cz    https://nic.cz/
>>> >>  --------------------------------------------
>>> >>
>>> >> ----- Forwarded Message -----
>>> >> From: internet-drafts@ietf.org
>>> >> To: i-d-announce@ietf.org
>>> >> Cc: "curdle" <curdle@ietf.org>
>>> >> Sent: Tuesday, 15 November, 2016 00:10:15
>>> >> Subject: [Curdle] I-D Action: draft-ietf-curdle-dnskey-eddsa-02.txt
>>> >>
>>> >> A New Internet-Draft is available from the on-line Internet-Drafts
>>> >> directories.
>>> >> This draft is a work item of the CURves, Deprecating and a Little more
>>> >> Encryption of the IETF.
>>> >>
>>> >>         Title           : EdDSA for DNSSEC
>>> >>         Authors         : Ondrej Sury
>>> >>                           Robert Edmonds
>>> >>         Filename        : draft-ietf-curdle-dnskey-eddsa-02.txt
>>> >>         Pages           : 8
>>> >>         Date            : 2016-11-14
>>> >>
>>> >> Abstract:
>>> >>    This document describes how to specify EdDSA keys and signatures in
>>> >>    DNS Security (DNSSEC).  It uses the Edwards-curve Digital Security
>>> >>    Algorithm (EdDSA) with the choice of two curves, Ed25519 and Ed448.
>>> >>
>>> >>
>>> >> The IETF datatracker status page for this draft is:
>>> >> https://datatracker.ietf.org/doc/draft-ietf-curdle-dnskey-eddsa/
>>> >>
>>> >> There's also a htmlized version available at:
>>> >> https://tools.ietf.org/html/draft-ietf-curdle-dnskey-eddsa-02
>>> >>
>>> >> A diff from the previous version is available at:
>>> >> https://www.ietf.org/rfcdiff?url2=draft-ietf-curdle-dnskey-eddsa-02
>>> >>
>>> >>
>>> >> Please note that it may take a couple of minutes from the time of
>>> >> submission
>>> >> until the htmlized version and diff are available at tools.ietf.org.
>>> >>
>>> >> Internet-Drafts are also available by anonymous FTP at:
>>> >> ftp://ftp.ietf.org/internet-drafts/
>>> >>
>>> >> _______________________________________________
>>> >> Curdle mailing list
>>> >> Curdle@ietf.org
>>> >> https://www.ietf.org/mailman/listinfo/curdle
>>> >>
>>> >> _______________________________________________
>>> >> DNSOP mailing list
>>> >> DNSOP@ietf.org
>>> >> https://www.ietf.org/mailman/listinfo/dnsop
>>>
>>> _______________________________________________
>>> DNSOP mailing list
>>> DNSOP@ietf.org
>>> https://www.ietf.org/mailman/listinfo/dnsop
>>>
>>
>>
>> _______________________________________________
>> DNSOP mailing list
>> DNSOP@ietf.org
>> https://www.ietf.org/mailman/listinfo/dnsop
>>