[Curdle] [Technical Errata Reported] RFC8410 (8297)

RFC Errata System <rfc-editor@rfc-editor.org> Sun, 16 February 2025 15:57 UTC

Return-Path: <wwwrun@rfcpa.rfc-editor.org>
X-Original-To: curdle@ietfa.amsl.com
Delivered-To: curdle@ietfa.amsl.com
Received: from mail.ietf.org (ietfa.amsl.com [50.223.129.194]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPSA id BECD0C14CF1A; Sun, 16 Feb 2025 07:57:10 -0800 (PST)
Received: from rfcpa.rfc-editor.org (unknown [167.172.21.234]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id AB084C14F69A; Sun, 16 Feb 2025 07:57:10 -0800 (PST)
Received: by rfcpa.rfc-editor.org (Postfix, from userid 461) id 1B6FE23AED9; Sun, 16 Feb 2025 07:57:10 -0800 (PST)
To: simon@josefsson.org, ietf@augustcellars.com, debcooley1@gmail.com, paul.wouters@aiven.io, daniel.migault@ericsson.com, rsalz@akamai.com
From: RFC Errata System <rfc-editor@rfc-editor.org>
Content-Type: text/plain; charset="UTF-8"
Message-Id: <20250216155710.1B6FE23AED9@rfcpa.rfc-editor.org>
Date: Sun, 16 Feb 2025 07:57:10 -0800
Message-ID-Hash: H7IYBOAYOHRAP6HFXPSETU22LX73W6WT
X-Message-ID-Hash: H7IYBOAYOHRAP6HFXPSETU22LX73W6WT
X-MailFrom: wwwrun@rfcpa.rfc-editor.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-curdle.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: rdonchen@outlook.com, curdle@ietf.org, rfc-editor@rfc-editor.org
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [Curdle] [Technical Errata Reported] RFC8410 (8297)
List-Id: "List for discussion of potential new security area wg." <curdle.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/curdle/lKZWTOs0TsrP9rwY1HefOnPwzYk>
List-Archive: <https://mailarchive.ietf.org/arch/browse/curdle>
List-Help: <mailto:curdle-request@ietf.org?subject=help>
List-Owner: <mailto:curdle-owner@ietf.org>
List-Post: <mailto:curdle@ietf.org>
List-Subscribe: <mailto:curdle-join@ietf.org>
List-Unsubscribe: <mailto:curdle-leave@ietf.org>

The following errata report has been submitted for RFC8410,
"Algorithm Identifiers for Ed25519, Ed448, X25519, and X448 for Use in the Internet X.509 Public Key Infrastructure".

--------------------------------------
You may review the report below and at:
https://www.rfc-editor.org/errata/eid8297

--------------------------------------
Type: Technical
Reported by: Roman Donchenko <rdonchen@outlook.com>

Section: 7

Original Text
-------------
   -----BEGIN PRIVATE KEY-----
   MHICAQEwBQYDK2VwBCIEINTuctv5E1hK1bbY8fdp+K06/nwoy/HU++CXqI9EdVhC
   oB8wHQYKKoZIhvcNAQkJFDEPDA1DdXJkbGUgQ2hhaXJzgSEAGb9ECWmEzf6FQbrB
   Z9w7lshQhqowtrbLDFw4rXAxZuE=
   -----END PRIVATE KEY------


Corrected Text
--------------
(re-encoded with correct attribute OID, see notes)

Notes
-----
This encoded private key contains an attribute with OID "1 2 840 113549 1 9 9 20", which is not assigned to anything. Likely, the intent was to use "1 2 840 113549 1 9 20" (one fewer 9), which is pkcs-9-at-friendlyName from RFC 2985.

The same private key also appears in section 10.3.

Instructions:
-------------
This erratum is currently posted as "Reported". (If it is spam, it 
will be removed shortly by the RFC Production Center.) Please
use "Reply All" to discuss whether it should be verified or
rejected. When a decision is reached, the verifying party  
will log in to change the status and edit the report, if necessary.

--------------------------------------
RFC8410 (draft-ietf-curdle-pkix-10)
--------------------------------------
Title               : Algorithm Identifiers for Ed25519, Ed448, X25519, and X448 for Use in the Internet X.509 Public Key Infrastructure
Publication Date    : August 2018
Author(s)           : S. Josefsson, J. Schaad
Category            : PROPOSED STANDARD
Source              : CURves, Deprecating and a Little more Encryption
Stream              : IETF
Verifying Party     : IESG