Re: [DNSOP] Fwd: [Curdle] I-D Action: draft-ietf-curdle-dnskey-eddsa-02.txt

Daniel Migault <daniel.migault@ericsson.com> Wed, 16 November 2016 05:02 UTC

Return-Path: <mglt.ietf@gmail.com>
X-Original-To: dnsop@ietfa.amsl.com
Delivered-To: dnsop@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 32C8B12964E; Tue, 15 Nov 2016 21:02:03 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.399
X-Spam-Level:
X-Spam-Status: No, score=-2.399 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, FREEMAIL_FORGED_FROMDOMAIN=0.199, FREEMAIL_FROM=0.001, HEADER_FROM_DIFFERENT_DOMAINS=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id ZdG3_834KuAL; Tue, 15 Nov 2016 21:02:00 -0800 (PST)
Received: from mail-it0-x232.google.com (mail-it0-x232.google.com [IPv6:2607:f8b0:4001:c0b::232]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1FDDD1294F7; Tue, 15 Nov 2016 21:02:00 -0800 (PST)
Received: by mail-it0-x232.google.com with SMTP id c20so191319769itb.0; Tue, 15 Nov 2016 21:02:00 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:sender:in-reply-to:references:from:date:message-id :subject:to:cc; bh=OSo5iEEsjRvMVPj0JOn1RQL1h9JETRDf28crLwS6/uA=; b=Gj8LxqzClg71lFe/vWlDldzvUzRpou5MDv9ip/Upu9SdDlhGUKpXMLRQVSXF1Wc0p1 z+nVlv+nY/r84e+kaUVUW6SxZdpIsK6i0RhT0xfrWKHNJwOQBxfJNfQduyje39lJuUVI 9ELpwLLJPFw9Oz1Ku1zC2BWGeoeSGrhC2B3cHTi5WfCIwzCgkAlJ0002eCVeZWAnghco 5VcE/YEYLMJZ8cnWbF1yuh69cEMjIg1knAVmSTO1fBm0doDTx6vuYSAHjj2k7L9SHSaT hh17niVrb/pn5pLxBKHDVVzgL/C8vOvjKudFITkqzPAi52KRvKT91itjzMUqknRzUmKI Lu5g==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:sender:in-reply-to:references:from :date:message-id:subject:to:cc; bh=OSo5iEEsjRvMVPj0JOn1RQL1h9JETRDf28crLwS6/uA=; b=Xp+l27nMeWpc/HI+Y1nw0guf4J8qBQlmG8qGeK8on5kcr/oXsDT1Ip45pt2bNjfDjM YAo3xC08eL5djmL4Lma4dWcUwKr7JaeaSfreUP2KHE1+l21hMeTEsEMz5UzUF238jlWx yZrPkc4bzEUHex20MZsf04j0DZ6i4/R8t3enWC+E9cBKXvUU0pfRQl1SIQC0XdnVoEZm XWcSboFWGsIWh9fszi80S5gwCMVOpXUzJL/PVcXM6+72IJdGtJGOyS09Yn+0hhhPpIPN ooOqVIJlaSDpvmOYBUZk1aL0y93Dqmp5/iQq2aOjpr0YD6u73EW3oas4/EMIoIN5vfNd aFCQ==
X-Gm-Message-State: ABUngvcUU8MopqjZEun072OEKbo0vUwx5o+nbCDobuVR+bk6vZSJY8EAL4EnP6GCfjeU2wEpaKOlG8azfypqcQ==
X-Received: by 10.107.12.214 with SMTP id 83mr1208406iom.10.1479272519466; Tue, 15 Nov 2016 21:01:59 -0800 (PST)
MIME-Version: 1.0
Sender: mglt.ietf@gmail.com
Received: by 10.107.32.10 with HTTP; Tue, 15 Nov 2016 21:01:58 -0800 (PST)
Received: by 10.107.32.10 with HTTP; Tue, 15 Nov 2016 21:01:58 -0800 (PST)
In-Reply-To: <1320631198.1957.1479271514994.JavaMail.zimbra@nic.cz>
References: <147916501531.919.1356911194907095952.idtracker@ietfa.amsl.com> <1045632662.533.1479165738709.JavaMail.zimbra@nic.cz> <CAKW6Ri6BR25LF9fyB+hH37g=tO2jJA9-OokN2MLXK9HQQ0UfXQ@mail.gmail.com> <1765127159.1826.1479229557011.JavaMail.zimbra@nic.cz> <CAKW6Ri5DNyOgMYgxZusvuC+xK7ycP7+W0dDfmmVhLZn81-xemg@mail.gmail.com> <CADZyTkmQhZ+ouhR4gFxPzn=nfVUDb_3JS207gy-yXkvvc3u5=g@mail.gmail.com> <1320631198.1957.1479271514994.JavaMail.zimbra@nic.cz>
From: Daniel Migault <daniel.migault@ericsson.com>
Date: Wed, 16 Nov 2016 00:01:58 -0500
X-Google-Sender-Auth: o5Fr8Ju-k1ZdZK2Uj-QLrhKHIro
Message-ID: <CADZyTknBwUTA7cUc1uayYy6BHfaBaM-0S-chd-uEuqfqKZbH+Q@mail.gmail.com>
To: Ondřej Surý <ondrej.sury@nic.cz>
Content-Type: multipart/alternative; boundary="001a113fc0ee0c84ee054163f964"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dnsop/ggO3sAAaVcfpdKY8uZ7_jGhdEtw>
Cc: curdle <curdle@ietf.org>, dnsop <dnsop@ietf.org>
Subject: Re: [DNSOP] Fwd: [Curdle] I-D Action: draft-ietf-curdle-dnskey-eddsa-02.txt
X-BeenThere: dnsop@ietf.org
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: IETF DNSOP WG mailing list <dnsop.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dnsop>, <mailto:dnsop-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dnsop/>
List-Post: <mailto:dnsop@ietf.org>
List-Help: <mailto:dnsop-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dnsop>, <mailto:dnsop-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 16 Nov 2016 05:02:03 -0000

Thanks, i did not saw it. This is explicitely mentioned.
Yours,
Daniel

On Nov 16, 2016 1:45 PM, "Ondřej Surý" <ondrej.sury@nic.cz> wrote:

> draft-irft-cfrg-eddsa states in Section 5.2:
>
>    Value of context is set by signer and verifier (maximum of 255
>    octets, the default is empty string) and has to match octet by octet
>    for verification to be successful.
>
> So in fact, the default context for Ed448 is "empty string".
>
> Cheers,
> Ondrej
>
> --
>  Ondřej Surý -- Technical Fellow
>  --------------------------------------------
>  CZ.NIC, z.s.p.o.    --     Laboratoře CZ.NIC
>  Milesovska 5, 130 00 Praha 3, Czech Republic
>  mailto:ondrej.sury@nic.cz    https://nic.cz/
>  --------------------------------------------
>
> ----- Original Message -----
> > From: "Daniel Migault" <daniel.migault@ericsson.com>
> > To: "Dick Franks" <rwfranks@acm.org>
> > Cc: "dnsop" <dnsop@ietf.org>, "Ondřej Surý" <ondrej.sury@nic.cz>
> > Sent: Wednesday, 16 November, 2016 05:23:23
> > Subject: Re: [DNSOP] Fwd: [Curdle] I-D Action: draft-ietf-curdle-dnskey-
> eddsa-02.txt
>
> > my understanding is that ed448 does not specify default values for the
> > context and i have not seen in the current draft a specification of the
> > context. Shouldn't we explicitly mention that the context is empty?
> > Yours,
> > daniel
> >
> > On Nov 16, 2016 2:44 AM, "Dick Franks" <rwfranks@acm.org> wrote:
> >
> >> My mistake. Apologies.
> >>
> >> I also had draft-wouters-sury-dnsop-algorithm-update-02
> >> on screen. That has the registry table with same TBDs.
> >> Starting at 04:30 dulls the brain.
> >>
> >>
> >> Dick Franks
> >> ________________________
> >>
> >>
> >> On 15 November 2016 at 17:05, Ondřej Surý <ondrej.sury@nic.cz> wrote:
> >>
> >>> The IANA Considerations Sections says:
> >>>
> >>> This document updates the IANA registry "Domain Name System Security
> >>> (DNSSEC) Algorithm Numbers".
> >>>
> >>> And I believe that's the correct language according to
> >>> https://tools.ietf.org/html/rfc5226#section-5.1
> >>>
> >>> Cheers,
> >>> Ondrej
> >>>
> >>> --
> >>>  Ondřej Surý -- Technical Fellow
> >>>  --------------------------------------------
> >>>  CZ.NIC, z.s.p.o.    --     Laboratoře CZ.NIC
> >>>  Milesovska 5, 130 00 Praha 3, Czech Republic
> >>>  mailto:ondrej.sury@nic.cz    https://nic.cz/
> >>>  --------------------------------------------
> >>>
> >>> ----- Original Message -----
> >>> > From: "Dick Franks" <rwfranks@acm.org>
> >>> > To: "Ondřej Surý" <ondrej.sury@nic.cz>
> >>> > Cc: "dnsop" <dnsop@ietf.org>
> >>> > Sent: Tuesday, 15 November, 2016 17:51:56
> >>> > Subject: Re: [DNSOP] Fwd: [Curdle] I-D Action:
> >>> draft-ietf-curdle-dnskey-eddsa-02.txt
> >>>
> >>> > Ondrej
> >>> >
> >>> > The document calls up two TBD code points for the EDDSA algorithms,
> but
> >>> the
> >>> > IANA Considerations section places no action on IANA to assign these
> and
> >>> > add them to the registry.
> >>> >
> >>> > Other than that, seems ok.
> >>> >
> >>> >
> >>> > Dick Franks
> >>> > ________________________
> >>> >
> >>> >
> >>> > On 14 November 2016 at 23:22, Ondřej Surý <ondrej.sury@nic.cz>
> wrote:
> >>> >
> >>> >> Dear all,
> >>> >>
> >>> >> a new version of EDDSA for DNSSEC has been posted
> >>> >> that resolves most if not all comments received
> >>> >> during WGLC in curdle.  This is one last chance
> >>> >> to review the document, so don't miss it! :)
> >>> >>
> >>> >> Cheers,
> >>> >> --
> >>> >>  Ondřej Surý -- Technical Fellow
> >>> >>  --------------------------------------------
> >>> >>  CZ.NIC, z.s.p.o.    --     Laboratoře CZ.NIC
> >>> >>  Milesovska 5, 130 00 Praha 3, Czech Republic
> >>> >>  mailto:ondrej.sury@nic.cz    https://nic.cz/
> >>> >>  --------------------------------------------
> >>> >>
> >>> >> ----- Forwarded Message -----
> >>> >> From: internet-drafts@ietf.org
> >>> >> To: i-d-announce@ietf.org
> >>> >> Cc: "curdle" <curdle@ietf.org>
> >>> >> Sent: Tuesday, 15 November, 2016 00:10:15
> >>> >> Subject: [Curdle] I-D Action: draft-ietf-curdle-dnskey-eddsa-02.txt
> >>> >>
> >>> >> A New Internet-Draft is available from the on-line Internet-Drafts
> >>> >> directories.
> >>> >> This draft is a work item of the CURves, Deprecating and a Little
> more
> >>> >> Encryption of the IETF.
> >>> >>
> >>> >>         Title           : EdDSA for DNSSEC
> >>> >>         Authors         : Ondrej Sury
> >>> >>                           Robert Edmonds
> >>> >>         Filename        : draft-ietf-curdle-dnskey-eddsa-02.txt
> >>> >>         Pages           : 8
> >>> >>         Date            : 2016-11-14
> >>> >>
> >>> >> Abstract:
> >>> >>    This document describes how to specify EdDSA keys and signatures
> in
> >>> >>    DNS Security (DNSSEC).  It uses the Edwards-curve Digital
> Security
> >>> >>    Algorithm (EdDSA) with the choice of two curves, Ed25519 and
> Ed448.
> >>> >>
> >>> >>
> >>> >> The IETF datatracker status page for this draft is:
> >>> >> https://datatracker.ietf.org/doc/draft-ietf-curdle-dnskey-eddsa/
> >>> >>
> >>> >> There's also a htmlized version available at:
> >>> >> https://tools.ietf.org/html/draft-ietf-curdle-dnskey-eddsa-02
> >>> >>
> >>> >> A diff from the previous version is available at:
> >>> >> https://www.ietf.org/rfcdiff?url2=draft-ietf-curdle-dnskey-eddsa-02
> >>> >>
> >>> >>
> >>> >> Please note that it may take a couple of minutes from the time of
> >>> >> submission
> >>> >> until the htmlized version and diff are available at tools.ietf.org
> .
> >>> >>
> >>> >> Internet-Drafts are also available by anonymous FTP at:
> >>> >> ftp://ftp.ietf.org/internet-drafts/
> >>> >>
> >>> >> _______________________________________________
> >>> >> Curdle mailing list
> >>> >> Curdle@ietf.org
> >>> >> https://www.ietf.org/mailman/listinfo/curdle
> >>> >>
> >>> >> _______________________________________________
> >>> >> DNSOP mailing list
> >>> >> DNSOP@ietf.org
> >>> >> https://www.ietf.org/mailman/listinfo/dnsop
> >>>
> >>> _______________________________________________
> >>> DNSOP mailing list
> >>> DNSOP@ietf.org
> >>> https://www.ietf.org/mailman/listinfo/dnsop
> >>>
> >>
> >>
> >> _______________________________________________
> >> DNSOP mailing list
> >> DNSOP@ietf.org
> >> https://www.ietf.org/mailman/listinfo/dnsop
> >>
>
> _______________________________________________
> DNSOP mailing list
> DNSOP@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsop
>