Re: [Dcrup] Hashed Key Records

Phillip Hallam-Baker <phill@hallambaker.com> Fri, 23 June 2017 00:20 UTC

Return-Path: <hallam@gmail.com>
X-Original-To: dcrup@ietfa.amsl.com
Delivered-To: dcrup@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EA3C4129BB3 for <dcrup@ietfa.amsl.com>; Thu, 22 Jun 2017 17:20:04 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.399
X-Spam-Level:
X-Spam-Status: No, score=-2.399 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, FREEMAIL_FORGED_FROMDOMAIN=0.199, FREEMAIL_FROM=0.001, HEADER_FROM_DIFFERENT_DOMAINS=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ZfksRCCxos-g for <dcrup@ietfa.amsl.com>; Thu, 22 Jun 2017 17:20:02 -0700 (PDT)
Received: from mail-oi0-x234.google.com (mail-oi0-x234.google.com [IPv6:2607:f8b0:4003:c06::234]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 765A6129BB2 for <dcrup@ietf.org>; Thu, 22 Jun 2017 17:20:02 -0700 (PDT)
Received: by mail-oi0-x234.google.com with SMTP id c189so17840032oia.2 for <dcrup@ietf.org>; Thu, 22 Jun 2017 17:20:02 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:sender:in-reply-to:references:from:date:message-id :subject:to:cc; bh=6A66t2jDoFq5vhxH8bLEIchP2mzw69Kkn8QSDMO/290=; b=hrqJ202hITdz0WKZB06VB/emozfTHx7L9xHPsYjohcPhR5DliYJ6KsJc6Ddh5W5cz8 WIC3hQHjDcQB58tfPdquXu5DX60ii3mHNREK2xcvSBNEt+K/TliEGaxtY/u5Ah1NBRfV 3QoTnOSnmWce5BrgSo2hQ+xUX0kc255TS+hK2VXm2xPJLHrFGw8g5XJmvZP3keVg6uKh Dz4G0Ystfb9k2B9aOCVtSjT9yta2Yxtt/AAG3X3bLniaJCbd+TMT3YM4UyRBZXe1vN7W Y/4D2XA/uqsglccKYkwwrIXYpxJl27Nf8hZIh9CsOmbkJWlw9YBSB5QVNYdco6jxFKtV rmAQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:sender:in-reply-to:references:from :date:message-id:subject:to:cc; bh=6A66t2jDoFq5vhxH8bLEIchP2mzw69Kkn8QSDMO/290=; b=D4U6Raq/LXwTqYhe4U2sLGrDsTC/2zW1otWhzr7ZHfwZ3hIFL3MMDUtEGZswpwjQZB cXafX9AKN7/Hb1MVe2E9ro/5dGoi4Wd9FmW4fsgVPiogL//cZ+DvAgc+HWCHN3IEmp5S q/eSDLlRk+UyNJ/48GSa1EJbLvI7N+/2mi08nLXWrvy0DynphepEf3uAwFsaJDYXuYL8 h6QbrdbRZgxutuUA2E9ax7onmZc6zel513jq1nr1iaplW3c+4gYky84ep7rzp6MKjH2L gmSZfY6nFlYs0dPLkXz8hes/6xQr9VztWCxTKU6icd2a5nH9VPfZzsWXBfzZQJPBuzPQ 7uGQ==
X-Gm-Message-State: AKS2vOyB9u8zamGcFNjCtyF9UgYvf9t21zk41JPCizd8HV8B2w5fF/vV AIJ16WLW74ViUjGmNrG7oe+zmIJ8vkOs
X-Received: by 10.202.235.12 with SMTP id j12mr2422163oih.2.1498177201765; Thu, 22 Jun 2017 17:20:01 -0700 (PDT)
MIME-Version: 1.0
Sender: hallam@gmail.com
Received: by 10.157.14.206 with HTTP; Thu, 22 Jun 2017 17:20:01 -0700 (PDT)
In-Reply-To: <2322507.4QhTyLSsXE@kitterma-e6430>
References: <2793611.63lxTaCm4r@kitterma-e6430> <29347FB0-BFF6-42C4-B489-302342F6F2C0@blighty.com> <CAMm+LwgcVbOxmd_BZXY=V0H3w5zZnsWYxvyZ1mM6H9vQL24Z9g@mail.gmail.com> <2322507.4QhTyLSsXE@kitterma-e6430>
From: Phillip Hallam-Baker <phill@hallambaker.com>
Date: Thu, 22 Jun 2017 20:20:01 -0400
X-Google-Sender-Auth: wtcsaDQr5mXWBIxLOYFXdjRmodY
Message-ID: <CAMm+LwjddoZtZXSs89RDkE2CBKAmo5SWNCUYeFFkA5DZBWRTeQ@mail.gmail.com>
To: Scott Kitterman <sklist@kitterman.com>
Cc: dcrup@ietf.org
Content-Type: multipart/alternative; boundary="001a113cc70cec04660552958fc1"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dcrup/gf0VH9W87vQ1Dn8yO_c0qAkxTdw>
Subject: Re: [Dcrup] Hashed Key Records
X-BeenThere: dcrup@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: DKIM Crypto Update <dcrup.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dcrup>, <mailto:dcrup-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dcrup/>
List-Post: <mailto:dcrup@ietf.org>
List-Help: <mailto:dcrup-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dcrup>, <mailto:dcrup-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 23 Jun 2017 00:20:05 -0000

This draft describes all the requirements etc and the current proposal.

https://tools.ietf.org/html/draft-hallambaker-udf-05

The reference implementation is actually rather shorter than the draft
describing the requirements. Basically it is little more than a wrapper
around SHA-2-512.






On Thu, Jun 22, 2017 at 8:07 PM, Scott Kitterman <sklist@kitterman.com>
wrote:

> On Thursday, June 22, 2017 08:01:28 PM Phillip Hallam-Baker wrote:
> > On Thu, Jun 22, 2017 at 7:51 PM, Steve Atkins <steve@blighty.com> wrote:
> > > (and maybe be specific about what embedded whitespace means)
> > >
> > > These all seem good features..
> > >
> > > I'm reminded of the $1$... style password hashes. Immediately
> recognizable
> > > in
> > > general, but including enough embedded information that you know which
> > > spec to follow.
> >
> > ​The other thing I would like is the ability to truncate fingerprints to
> > arbitrary lengths by truncating the string specifying the fingerprint. In
> > all but a few applications, a fingerprint with a workfactor of 2^118 is
> > sufficient to prevent most attacks.​ That is 25 characters in my proposal
> > (since there is a one byte algorithm identifier prefix).
> >
> > There are also some hacks that can be used for compressing the
> fingerprint
> > but I don't think these would be relevant here.
>
> I'm probably just grumpy because it's been a long day in a long week, but
> if
> you are going to not answer my question and go off in a completely
> different
> direction (in case you missed it, my question was about what's in the draft
> now, not an invitation to imagine what should be in the draft), would you
> please at least start your own thread so others are less likely to assume I
> already got my answer somewhere in what seems likely to be a long thread
> spiraling off into some new ocean that wants boiling?
>
> Thanks,
>
> Scott K
>
> _______________________________________________
> Dcrup mailing list
> Dcrup@ietf.org
> https://www.ietf.org/mailman/listinfo/dcrup
>