Re: [Eligibility-discuss] On 3797 alternatives

Martin Thomson <mt@lowentropy.net> Wed, 31 May 2023 14:22 UTC

Return-Path: <mt@lowentropy.net>
X-Original-To: eligibility-discuss@ietfa.amsl.com
Delivered-To: eligibility-discuss@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EF462C15198C for <eligibility-discuss@ietfa.amsl.com>; Wed, 31 May 2023 07:22:43 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.797
X-Spam-Level:
X-Spam-Status: No, score=-2.797 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=lowentropy.net header.b="q5zKqTyL"; dkim=pass (2048-bit key) header.d=messagingengine.com header.b="BEwUVijB"
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id z5cN9OE7IRPN for <eligibility-discuss@ietfa.amsl.com>; Wed, 31 May 2023 07:22:38 -0700 (PDT)
Received: from wout2-smtp.messagingengine.com (wout2-smtp.messagingengine.com [64.147.123.25]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C813BC15153C for <eligibility-discuss@ietf.org>; Wed, 31 May 2023 07:22:38 -0700 (PDT)
Received: from compute6.internal (compute6.nyi.internal [10.202.2.47]) by mailout.west.internal (Postfix) with ESMTP id A4C81320089C; Wed, 31 May 2023 10:22:37 -0400 (EDT)
Received: from imap41 ([10.202.2.91]) by compute6.internal (MEProxy); Wed, 31 May 2023 10:22:38 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=lowentropy.net; h=cc:cc:content-type:content-type:date:date:from:from :in-reply-to:in-reply-to:message-id:mime-version:references :reply-to:sender:subject:subject:to:to; s=fm2; t=1685542957; x= 1685629357; bh=DNVAaj3EKpNGfk/daWZQtlp0rcs9R/sQZ0+ndt0Yxhk=; b=q 5zKqTyLmqEC0RJPdENySzOn5n2/6mCg0eeI5+h/3QNfUBRHeS6kuxIU+vt2CPUCm oP2iYeEqIhBA2ewezOh8RUr/Rv3TGVUMKg0Dj8U/EqK9M8ltfhuxvjPdOvpnOgbD lbHT8mJeR3rHFXGjFoKIdBCg8NdratVjFLkNDssmMlJGQMqVjwl3w8Ur1znwPx9d 8Kt4pjeyFYK7uj1p8xevUU6aLy5nINMY35V2Sn8t8n2Blo/O+5y9Mg6uiN+OvC/g hM5j27RXTN9Lho1rfNL97Zi3wU6x7RUEkVKNZRwIu+lr8DFaqKreWCODEJEwOM7X 1Y8RvaWaZxu6tZprokiHQ==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:cc:content-type:content-type:date:date :feedback-id:feedback-id:from:from:in-reply-to:in-reply-to :message-id:mime-version:references:reply-to:sender:subject :subject:to:to:x-me-proxy:x-me-proxy:x-me-sender:x-me-sender :x-sasl-enc; s=fm1; t=1685542957; x=1685629357; bh=DNVAaj3EKpNGf k/daWZQtlp0rcs9R/sQZ0+ndt0Yxhk=; b=BEwUVijBq/vIHbmj6aTA6yiODoMAQ CIiDEFs81IaZ0R9d31KXLG6SKNrBbjuhYZWr9L03QN8XTMMcaF+JYzVMr7/8vOfU RVeyveUo/JsRozt62m9C+82k6RFelNoy/r0RvZkEC0pycXUlm0LjtddFICxWyTLp 7cYTBXvUJnk0/RdHIBlRjpz7UlfseOQ6lMVtFIpzLLYacaZ1y1sBANG97G09mBuc NJm2IK70Y7ErIA4MWftqW2wCC84vBznmmkgX3e46h4PxsXuaBnC7BerfyDTEe6Mq KJMN+fb/o/ce4qCKdRuI8CXzgh0LoJ38WhS07txLeXcyJYKh0/t5hkhmg==
X-ME-Sender: <xms:LVh3ZGU8Lzl4T2E31rQgBouIn0U68xhJsUn_8SCS_n5-y_0u_p8vng> <xme:LVh3ZCmRcVSUCg7XGAotj87qMBaKvmKs9a1Xznf-ly9c_4q26f7FMq2vfjt8RBnxu oMXK0i_vbo3WtKcAkg>
X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgedvhedrfeekledgjeehucetufdoteggodetrfdotf fvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdfqfgfvpdfurfetoffkrfgpnffqhgen uceurghilhhouhhtmecufedttdenucenucfjughrpefofgggkfgjfhffhffvvefutgesth dtredtreertdenucfhrhhomhepfdforghrthhinhcuvfhhohhmshhonhdfuceomhhtsehl ohifvghnthhrohhphidrnhgvtheqnecuggftrfgrthhtvghrnhepudelueeftdfhgeeiie eikeekjedvjefgveduffegfedvffelveefkeduieeikeelnecuvehluhhsthgvrhfuihii vgeptdenucfrrghrrghmpehmrghilhhfrhhomhepmhhtsehlohifvghnthhrohhphidrnh gvth
X-ME-Proxy: <xmx:LVh3ZKb88VOawnOPXjhUUE-UoCFyiIvlo75AR6kpGKw783veKuseZA> <xmx:LVh3ZNUi8UiTObTnd0hOWs4v_NSvTzoArpoQm41Mzh2NkFIM_Bjkig> <xmx:LVh3ZAn3lsJQIMmZHljmmiVhDoq-aTCFsM2eVjHWwNzeiJIsK4RohA> <xmx:LVh3ZMvT15qRlp_2otAB13OhqGy6fzgJA4yc3RTsPmC7Gq5WS3DpTw>
Feedback-ID: ic129442d:Fastmail
Received: by mailuser.nyi.internal (Postfix, from userid 501) id EC557234007B; Wed, 31 May 2023 10:22:36 -0400 (EDT)
X-Mailer: MessagingEngine.com Webmail Interface
User-Agent: Cyrus-JMAP/3.9.0-alpha0-447-ge2460e13b3-fm-20230525.001-ge2460e13
Mime-Version: 1.0
Message-Id: <30f8a4a3-2a3c-4560-abe5-63ee0c4366d4@app.fastmail.com>
In-Reply-To: <CABcZeBN7XyRknvkg9TfvTCx3rGEpLtWynE7-eaufhmcEmnDHtA@mail.gmail.com>
References: <54F373CD-1E97-42BC-9AAB-0451ABD9D448@eggert.org> <1229DD7D-3640-4EFD-8058-D0EC18020038@eggert.org> <18537EEF-4E16-4C48-8456-02A8FB0C8CFC@vpnc.org> <4a8f2bb4-25c3-5514-f13f-8db1804619a6@joelhalpern.com> <0531CD69-AAA4-4657-9B90-B50F76D997B7@vpnc.org> <ffa1d82b-a22b-f68f-5000-6a1ca437d147@joelhalpern.com> <B953359D-72A9-4032-857E-490AEAF60C4A@vpnc.org> <2745cf30-098d-4a3a-9e9e-3c3c44179176@app.fastmail.com> <CAF4+nEGL0_h-iagUxhyxh2FJdz=QUi5JQr6XdPj-Q=q8Rov0XQ@mail.gmail.com> <9d9b0e70-c7ca-4602-8862-33165522497c@app.fastmail.com> <896FF479-E5B7-4A31-95AE-376CCE2591C9@akamai.com> <CABcZeBN7XyRknvkg9TfvTCx3rGEpLtWynE7-eaufhmcEmnDHtA@mail.gmail.com>
Date: Wed, 31 May 2023 10:22:14 -0400
From: Martin Thomson <mt@lowentropy.net>
To: Eric Rescorla <ekr@rtfm.com>, "Salz, Rich" <rsalz=40akamai.com@dmarc.ietf.org>
Cc: Donald Eastlake <d3e3e3@gmail.com>, "eligibility-discuss@ietf.org" <eligibility-discuss@ietf.org>
Content-Type: text/plain
Archived-At: <https://mailarchive.ietf.org/arch/msg/eligibility-discuss/rcRX5noFXc_29_nKTORCHFU81lU>
Subject: Re: [Eligibility-discuss] On 3797 alternatives
X-BeenThere: eligibility-discuss@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: IETF eligibility procedures <eligibility-discuss.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/eligibility-discuss>, <mailto:eligibility-discuss-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/eligibility-discuss/>
List-Post: <mailto:eligibility-discuss@ietf.org>
List-Help: <mailto:eligibility-discuss-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/eligibility-discuss>, <mailto:eligibility-discuss-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 31 May 2023 14:22:44 -0000

On Tue, May 30, 2023, at 19:58, Eric Rescorla wrote:
> I'm not MT, but yes, I think that's the threat model. I think the 
> relevant point is that the most serious attack is that only one such 
> attacker is involved and so they can predict the results.

That's right.  I'm also assuming that others have access to that information (Robert, the previous chair, people writing software for the datatracker, etc...)  I'm not implying anything about the character of those individuals, only saying that a stronger system wouldn't rely so much on us trusting those people ... or chance.