Re: [Curdle] State of draft-ietf-curdle-ssh-kex-sha2?

"Salz, Rich" <rsalz@akamai.com> Sat, 11 July 2020 18:40 UTC

Return-Path: <rsalz@akamai.com>
X-Original-To: curdle@ietfa.amsl.com
Delivered-To: curdle@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6DB483A1157; Sat, 11 Jul 2020 11:40:04 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=akamai.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id BscWOOsX2Omk; Sat, 11 Jul 2020 11:40:03 -0700 (PDT)
Received: from mx0a-00190b01.pphosted.com (mx0a-00190b01.pphosted.com [IPv6:2620:100:9001:583::1]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 024233A1156; Sat, 11 Jul 2020 11:40:02 -0700 (PDT)
Received: from pps.filterd (m0122333.ppops.net [127.0.0.1]) by mx0a-00190b01.pphosted.com (8.16.0.42/8.16.0.42) with SMTP id 06BIW3fI003137; Sat, 11 Jul 2020 19:40:01 +0100
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=akamai.com; h=from : to : subject : date : message-id : references : in-reply-to : content-type : mime-version; s=jan2016.eng; bh=IvEYrVU55rXVaICWb4KGoBBLyL358X2ZU7TSUGi6zfA=; b=fF3rocba4FC7nVC7A903WYkr0c5re5Fog+wu1BcN/m8GYI3Hhr+fEytkumE5Gga5sIQO kGA/1WFcasKxqv/7byaamzHl6kuHCdq2pds2jzq4k7LeLNBHT7JiPC3yEIFNfvvgOjHB m+MYdpGMeariKTxfJc1nro5uXqDUi+jtA8mbEmAV23CpEyE7l8nlEgAiAAQE+LmvMxWX iomUyg8wLjmpzQ4cVWj8rIKYt98NxTQICIBRM7Biy52Sb0K1sT18ZYeCvRKR3j/K1IdW A4juMcuQltaKrMhMFkGcyFBNakeXfYvONFGe3n6MwHptQtn2yHsW73pnl/Aoy1hvRksr 5w==
Received: from prod-mail-ppoint3 (a72-247-45-31.deploy.static.akamaitechnologies.com [72.247.45.31] (may be forged)) by mx0a-00190b01.pphosted.com with ESMTP id 327an77bem-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Sat, 11 Jul 2020 19:40:01 +0100
Received: from pps.filterd (prod-mail-ppoint3.akamai.com [127.0.0.1]) by prod-mail-ppoint3.akamai.com (8.16.0.42/8.16.0.42) with SMTP id 06BIaa1x006689; Sat, 11 Jul 2020 14:40:00 -0400
Received: from email.msg.corp.akamai.com ([172.27.165.113]) by prod-mail-ppoint3.akamai.com with ESMTP id 3278rxb453-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-SHA384 bits=256 verify=NOT); Sat, 11 Jul 2020 14:40:00 -0400
Received: from USTX2EX-DAG1MB3.msg.corp.akamai.com (172.27.165.121) by ustx2ex-dag1mb2.msg.corp.akamai.com (172.27.165.120) with Microsoft SMTP Server (TLS) id 15.0.1497.2; Sat, 11 Jul 2020 13:39:59 -0500
Received: from USTX2EX-DAG1MB3.msg.corp.akamai.com ([172.27.165.121]) by ustx2ex-dag1mb3.msg.corp.akamai.com ([172.27.165.121]) with mapi id 15.00.1497.006; Sat, 11 Jul 2020 13:39:59 -0500
From: "Salz, Rich" <rsalz@akamai.com>
To: denis bider <denisbider.ietf@gmail.com>, curdle <curdle@ietf.org>, curdle-chairs <curdle-chairs@ietf.org>
Thread-Topic: State of draft-ietf-curdle-ssh-kex-sha2?
Thread-Index: AQHWV6bgpwQBtcqBFky+EC4tQ/Oyp6kCxtAA
Date: Sat, 11 Jul 2020 18:39:58 +0000
Message-ID: <A7586F04-1469-4376-80A4-FD4860A52E3E@akamai.com>
References: <CADPMZDB8oXAg0g0oJvZmkK1XPhb28SQPnxwRmL9umzFXkH0ogQ@mail.gmail.com>
In-Reply-To: <CADPMZDB8oXAg0g0oJvZmkK1XPhb28SQPnxwRmL9umzFXkH0ogQ@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
user-agent: Microsoft-MacOutlook/16.38.20061401
x-ms-exchange-messagesentrepresentingtype: 1
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [172.19.46.184]
Content-Type: multipart/alternative; boundary="_000_A7586F041469437680A4FD4860A52E3Eakamaicom_"
MIME-Version: 1.0
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.235, 18.0.687 definitions=2020-07-11_13:2020-07-10, 2020-07-11 signatures=0
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 mlxlogscore=999 bulkscore=0 malwarescore=0 mlxscore=0 suspectscore=0 spamscore=0 phishscore=0 adultscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2006250000 definitions=main-2007110145
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:6.0.235, 18.0.687 definitions=2020-07-11_13:2020-07-10, 2020-07-11 signatures=0
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 malwarescore=0 bulkscore=0 adultscore=0 mlxscore=0 spamscore=0 suspectscore=0 clxscore=1011 lowpriorityscore=0 phishscore=0 mlxlogscore=994 priorityscore=1501 impostorscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2006250000 definitions=main-2007110145
Archived-At: <https://mailarchive.ietf.org/arch/msg/curdle/psZS89bEwxyp_QQjHvmFfeQL-XA>
Subject: Re: [Curdle] State of draft-ietf-curdle-ssh-kex-sha2?
X-BeenThere: curdle@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "List for discussion of potential new security area wg." <curdle.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/curdle>, <mailto:curdle-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/curdle/>
List-Post: <mailto:curdle@ietf.org>
List-Help: <mailto:curdle-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/curdle>, <mailto:curdle-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sat, 11 Jul 2020 18:40:05 -0000

  *   https://datatracker.ietf.org/doc/draft-ietf-curdle-ssh-kex-sha2/


  *   This seems to be an important draft which would standardize the current use of key exchange algorithms in SSH. However, it looks like no changes have been made in 2.5 years?

Looks like there was some AD feedback that was never addressed; see https://mailarchive.ietf.org/arch/msg/curdle/kf-iCb-o3yyxKLvH_pnGsxq7FVo/
(roughly a year ago).  I guess the chairs (myself included) let this fall through the cracks.