[Curdle] [IANA #1362871] [Errata Verified] RFC8410 (7384)

Sabrina Tanamal via RT <iana-matrix@iana.org> Thu, 11 April 2024 22:41 UTC

Return-Path: <iana-shared@icann.org>
X-Original-To: curdle@ietfa.amsl.com
Delivered-To: curdle@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4340CC14F61F for <curdle@ietfa.amsl.com>; Thu, 11 Apr 2024 15:41:42 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.926
X-Spam-Level:
X-Spam-Status: No, score=-2.926 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, HEADER_FROM_DIFFERENT_DOMAINS=0.248, MISSING_HEADERS=1.021, RCVD_IN_DNSWL_MED=-2.3, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id aabZP5Yo3Kgp for <curdle@ietfa.amsl.com>; Thu, 11 Apr 2024 15:41:38 -0700 (PDT)
Received: from smtp.lax.icann.org (smtp.lax.icann.org [192.0.33.81]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9FCF8C14F5FC for <curdle@ietf.org>; Thu, 11 Apr 2024 15:41:38 -0700 (PDT)
Received: from request6.lax.icann.org (request1.lax.icann.org [10.32.11.221]) by smtp.lax.icann.org (Postfix) with ESMTP id 63326E0371; Thu, 11 Apr 2024 22:41:38 +0000 (UTC)
Received: by request6.lax.icann.org (Postfix, from userid 48) id 6040250232; Thu, 11 Apr 2024 22:41:38 +0000 (UTC)
RT-Owner: sabrina.tanamal
From: Sabrina Tanamal via RT <iana-matrix@iana.org>
Reply-To: iana-matrix@iana.org
In-Reply-To: <20240411195633.4C0D0CE3BD@rfcpa.amsl.com>
References: <RT-Ticket-1362871@icann.org> <20240411195633.4C0D0CE3BD@rfcpa.amsl.com>
Message-ID: <rt-5.0.3-1696220-1712875298-543.1362871-37-0@icann.org>
X-RT-Loop-Prevention: IANA
X-RT-Ticket: IANA #1362871
X-Managed-BY: RT 5.0.3 (http://www.bestpractical.com/rt/)
X-RT-Originator: sabrina.tanamal@icann.org
CC: simon@josefsson.org, housley@vigilsec.com, debcooley1@gmail.com, curdle@ietf.org
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
X-RT-Original-Encoding: utf-8
Precedence: bulk
Date: Thu, 11 Apr 2024 22:41:38 +0000
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/curdle/jeDO3XkKuZ-gdBiZDWTpKEwrNPw>
Subject: [Curdle] [IANA #1362871] [Errata Verified] RFC8410 (7384)
X-BeenThere: curdle@ietf.org
X-Mailman-Version: 2.1.39
List-Id: "List for discussion of potential new security area wg." <curdle.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/curdle>, <mailto:curdle-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/curdle/>
List-Post: <mailto:curdle@ietf.org>
List-Help: <mailto:curdle-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/curdle>, <mailto:curdle-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 11 Apr 2024 22:41:42 -0000

Hi Russ, all,

Do we need to list this errata report as an additional reference for any of the RFC 8410 registrations in the SMI Security for Cryptographic Algorithms registry? 

https://www.iana.org/assignments/smi-numbers

Thanks, 
Sabrina

On Thu Apr 11 19:56:55 2024, rfc-editor@rfc-editor.org wrote:
> The following errata report has been verified for RFC8410,
>  "Algorithm Identifiers for Ed25519, Ed448, X25519, and X448 for Use
> in the Internet X.509 Public Key Infrastructure".
> 
> --------------------------------------
> You may review the report below and at:
> https://www.rfc-editor.org/errata/eid7384
> 
> --------------------------------------
> Status: Verified
> Type: Technical
> 
> Reported by: Russ Housley <housley@vigilsec.com>
> Date Reported: 2023-03-12
> Verified by: Deb Cooley (IESG)
> 
> Section: 9
> 
> Original Text
> -------------
> sa-Ed25519 SIGNATURE-ALGORITHM ::= {
>    IDENTIFIER id-Ed25519
>     PARAMS ARE absent
>     PUBLIC-KEYS {pk-Ed25519}
>     SMIME-CAPS { IDENTIFIED BY id-Ed25519 }
> }
> 
> pk-Ed25519 PUBLIC-KEY ::= {
>     IDENTIFIER id-Ed25519
>     -- KEY no ASN.1 wrapping --
>     PARAMS ARE absent
>     CERT-KEY-USAGE {digitalSignature, nonRepudiation,
>                     keyCertSign, cRLSign}
>     PRIVATE-KEY CurvePrivateKey
> }
> 
> Corrected Text
> --------------
> sa-Ed25519 SIGNATURE-ALGORITHM ::= {
>    IDENTIFIER id-Ed25519
>     PARAMS ARE absent
>     PUBLIC-KEYS {pk-Ed25519}
>     SMIME-CAPS { IDENTIFIED BY id-Ed25519 }
> }
> 
> pk-Ed25519 PUBLIC-KEY ::= {
>     IDENTIFIER id-Ed25519
>     -- KEY no ASN.1 wrapping --
>     PARAMS ARE absent
>     CERT-KEY-USAGE {digitalSignature, nonRepudiation,
>                     keyCertSign, cRLSign}
>     PRIVATE-KEY CurvePrivateKey
> }
> 
> sa-Ed448 SIGNATURE-ALGORITHM ::= {
>    IDENTIFIER id-Ed448
>     PARAMS ARE absent
>     PUBLIC-KEYS {pk-Ed448}
>     SMIME-CAPS { IDENTIFIED BY id-Ed448 }
> }
> 
> pk-Ed448 PUBLIC-KEY ::= {
>     IDENTIFIER id-Ed448
>     -- KEY no ASN.1 wrapping --
>     PARAMS ARE absent
>     CERT-KEY-USAGE {digitalSignature, nonRepudiation,
>                     keyCertSign, cRLSign}
>     PRIVATE-KEY CurvePrivateKey
> }
> 
> Notes
> -----
> The definitions for sa-Ed448 and pk-Ed448 are missing from RFC 8410.
> 
> --------------------------------------
> RFC8410 (draft-ietf-curdle-pkix-10)
> --------------------------------------
> Title               : Algorithm Identifiers for Ed25519, Ed448,
> X25519, and X448 for Use in the Internet X.509 Public Key
> Infrastructure
> Publication Date    : August 2018
> Author(s)           : S. Josefsson, J. Schaad
> Category            : PROPOSED STANDARD
> Source              : CURves, Deprecating and a Little more Encryption
> Stream              : IETF
> Verifying Party     : IESG