[Emu] [Errata Verified] RFC5216 (6357)

RFC Errata System <rfc-editor@rfc-editor.org> Wed, 19 January 2022 22:33 UTC

Return-Path: <wwwrun@rfc-editor.org>
X-Original-To: emu@ietfa.amsl.com
Delivered-To: emu@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5A8E73A1F80; Wed, 19 Jan 2022 14:33:52 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.899
X-Spam-Level:
X-Spam-Status: No, score=-1.899 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_BLOCKED=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id UDus3bnL12Ae; Wed, 19 Jan 2022 14:33:48 -0800 (PST)
Received: from rfc-editor.org (rfc-editor.org [IPv6:2001:1900:3001:11::31]) (using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 185093A1F7E; Wed, 19 Jan 2022 14:33:48 -0800 (PST)
Received: by rfc-editor.org (Postfix, from userid 499) id 196BBEB6A5; Wed, 19 Jan 2022 14:33:45 -0800 (PST)
To: kaduk@mit.edu, dansimon@microsoft.com, bernarda@microsoft.com, rmh@microsoft.com
From: RFC Errata System <rfc-editor@rfc-editor.org>
Cc: rdd@cert.org, iesg@ietf.org, emu@ietf.org
Content-Type: text/plain; charset="UTF-8"
Message-Id: <20220119223345.196BBEB6A5@rfc-editor.org>
Date: Wed, 19 Jan 2022 14:33:45 -0800
Archived-At: <https://mailarchive.ietf.org/arch/msg/emu/f5rkPjgMYEP7nbNEsWoWaYjQg8U>
Subject: [Emu] [Errata Verified] RFC5216 (6357)
X-BeenThere: emu@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "EAP Methods Update \(EMU\)" <emu.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/emu>, <mailto:emu-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/emu/>
List-Post: <mailto:emu@ietf.org>
List-Help: <mailto:emu-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/emu>, <mailto:emu-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 19 Jan 2022 22:33:53 -0000

The following errata report has been verified for RFC5216,
"The EAP-TLS Authentication Protocol". 

--------------------------------------
You may review the report below and at:
https://www.rfc-editor.org/errata/eid6357

--------------------------------------
Status: Verified
Type: Editorial

Reported by: Benjamin Kaduk <kaduk@mit.edu>
Date Reported: 2020-12-16
Verified by: Roman Danyliw (IESG)

Section: 5.1

Original Text
-------------
   [3] Section 5 of BCP 86 [RFC3766] offers advice on the required RSA
   or Diffie-Hellman (DH) module and Digital Signature Algorithm (DSA)
   subgroup size in bits, for a given level of attack resistance in
   bits.  For example, a 2048-bit RSA key is recommended to provide
   128-bit equivalent key strength.  The National Institute of Standards
   and Technology (NIST) also offers advice on appropriate key sizes in
   [SP800-57].

Corrected Text
--------------
   [3] Section 5 of BCP 86 [RFC3766] offers advice on the required RSA
   or Diffie-Hellman (DH) modulus and Digital Signature Algorithm (DSA)
   subgroup size in bits, for a given level of attack resistance in
   bits.  For example, a 2048-bit RSA key is recommended to provide
   128-bit equivalent key strength.  The National Institute of Standards
   and Technology (NIST) also offers advice on appropriate key sizes in
   [SP800-57].

Notes
-----
RSA and DH computations are parameterized by their moduli, with singular "modulus" (not "module").

--------------------------------------
RFC5216 (draft-simon-emu-rfc2716bis-13)
--------------------------------------
Title               : The EAP-TLS Authentication Protocol
Publication Date    : March 2008
Author(s)           : D. Simon, B. Aboba, R. Hurst
Category            : PROPOSED STANDARD
Source              : EAP Method Update
Area                : Security
Stream              : IETF
Verifying Party     : IESG