Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06
"John Levine" <johnl@taugh.com> Thu, 14 September 2017 01:41 UTC
Return-Path: <johnl@taugh.com>
X-Original-To: dcrup@ietfa.amsl.com
Delivered-To: dcrup@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 94112133042 for <dcrup@ietfa.amsl.com>; Wed, 13 Sep 2017 18:41:42 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.901
X-Spam-Level:
X-Spam-Status: No, score=-1.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 1_1VYY_F0BFn for <dcrup@ietfa.amsl.com>; Wed, 13 Sep 2017 18:41:41 -0700 (PDT)
Received: from gal.iecc.com (abusenet-1-pt.tunnel.tserv4.nyc4.ipv6.he.net [IPv6:2001:470:1f06:1126::2]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 31A85132F8F for <dcrup@ietf.org>; Wed, 13 Sep 2017 18:41:41 -0700 (PDT)
Received: (qmail 48757 invoked from network); 14 Sep 2017 01:41:40 -0000
Received: from unknown (64.57.183.53) by gal.iecc.com with QMQP; 14 Sep 2017 01:41:40 -0000
Date: Thu, 14 Sep 2017 01:41:18 -0000
Message-ID: <20170914014118.2378.qmail@ary.lan>
From: John Levine <johnl@taugh.com>
To: dcrup@ietf.org
Cc: jgh@wizmail.org
In-Reply-To: <d6f08ab8-cb70-7fbb-b8d7-3cb4f9f961e1@wizmail.org>
Organization:
X-Headerized: yes
Mime-Version: 1.0
Content-type: text/plain; charset="utf-8"
Content-transfer-encoding: 8bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/dcrup/wVzFK03x2lW1d0b5XPYV-vqBQT8>
Subject: Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06
X-BeenThere: dcrup@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: DKIM Crypto Update <dcrup.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dcrup>, <mailto:dcrup-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dcrup/>
List-Post: <mailto:dcrup@ietf.org>
List-Help: <mailto:dcrup-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dcrup>, <mailto:dcrup-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 14 Sep 2017 01:41:42 -0000
In article <d6f08ab8-cb70-7fbb-b8d7-3cb4f9f961e1@wizmail.org> you write: >On 13/09/17 18:41, John R Levine wrote: >> I have sent in a new draft which is intended to take into account all of >> the comments I've seen. > >Section 4 says to use the Pure variant of Ed25519, which section 4 >of rfc 8032 appears to describe as (my paraphrase) sign only; not >hashing the data handed to it. What we hand to it is already a >hash, using sha256. > >Do I have that right? Yes. >The existing interfaces in both GnuTLS and OpenSSL appear to >be aiming towards a Hash version of Ed25519, if I read them right - >and they don't say explicitly what the hash-function is. We know, see previous discussion of this exact topic. The existing RSA DKIM signatures already do a hash of the canonicalized text and it is operationally a lot easier to pass the same hash to EC crypto rather than invent a different canonicalization scheme just to move the hash to the other side of the call to the crypto library. >Are we expecting these libraries to enhance their APIs? I haven't looked in detail at the APIs for Ed25519 crypto, but naively assumed that if the spec says there's a pure version that doesn't hash its input, the libraries would implement it. R's, John
- [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 John R Levine
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 Jeremy Harris
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 John Levine
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 Jeremy Harris
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 James Cloos
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 John R Levine
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 Salz, Rich
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 Scott Kitterman
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 Jim Fenton
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 James Cloos
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 John Levine
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 James Cloos
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 Jim Fenton
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 Scott Kitterman
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 Alessandro Vesely
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 Jeremy Harris
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 Jeremy Harris
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 John Levine
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 John Levine
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 Jeremy Harris
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 John Levine
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 denis bider
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 Jeremy Harris
- Re: [Dcrup] I-D draft-ietf-dcrup-dkim-crypto-06 Salz, Rich