RE: Change to padding in encryption -- examples look ok

"Manger, James" <James.H.Manger@team.telstra.com> Tue, 31 January 2017 07:06 UTC

Return-Path: <ietf-http-wg-request+bounce-httpbisa-archive-bis2juki=lists.ie@listhub.w3.org>
X-Original-To: ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com
Delivered-To: ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1A116124281 for <ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com>; Mon, 30 Jan 2017 23:06:50 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -10.1
X-Spam-Level:
X-Spam-Status: No, score=-10.1 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HEADER_FROM_DIFFERENT_DOMAINS=0.001, RCVD_IN_DNSWL_HI=-5, RP_MATCHES_RCVD=-3.199, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=teamtelstra.onmicrosoft.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 6RF2KEtVsV67 for <ietfarch-httpbisa-archive-bis2Juki@ietfa.amsl.com>; Mon, 30 Jan 2017 23:06:47 -0800 (PST)
Received: from frink.w3.org (frink.w3.org [128.30.52.56]) (using TLSv1.2 with cipher DHE-RSA-AES128-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 92698126FDC for <httpbisa-archive-bis2Juki@lists.ietf.org>; Mon, 30 Jan 2017 23:06:46 -0800 (PST)
Received: from lists by frink.w3.org with local (Exim 4.80) (envelope-from <ietf-http-wg-request@listhub.w3.org>) id 1cYSSu-0002nK-3H for ietf-http-wg-dist@listhub.w3.org; Tue, 31 Jan 2017 07:02:56 +0000
Resent-Date: Tue, 31 Jan 2017 07:02:56 +0000
Resent-Message-Id: <E1cYSSu-0002nK-3H@frink.w3.org>
Received: from titan.w3.org ([128.30.52.76]) by frink.w3.org with esmtps (TLS1.2:RSA_AES_128_CBC_SHA1:128) (Exim 4.80) (envelope-from <James.H.Manger@team.telstra.com>) id 1cYSSm-0002m4-Dt for ietf-http-wg@listhub.w3.org; Tue, 31 Jan 2017 07:02:48 +0000
Received: from ipxavo.tcif.telstra.com.au ([203.35.135.200]) by titan.w3.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.84_2) (envelope-from <James.H.Manger@team.telstra.com>) id 1cYSSW-0006OM-Fs for ietf-http-wg@w3.org; Tue, 31 Jan 2017 07:02:42 +0000
X-IronPort-AV: E=Sophos;i="5.33,313,1477918800"; d="scan'208";a="134545496"
Received: from unknown (HELO ipcbvi.tcif.telstra.com.au) ([10.97.217.204]) by ipoavi.tcif.telstra.com.au with ESMTP; 31 Jan 2017 18:01:58 +1100
X-IronPort-AV: E=McAfee;i="5700,7163,8424"; a="410974155"
Received: from wsmsg3752.srv.dir.telstra.com ([172.49.40.173]) by ipcbvi.tcif.telstra.com.au with ESMTP; 31 Jan 2017 18:01:58 +1100
Received: from wsapp5585.srv.dir.telstra.com (10.75.3.67) by wsmsg3752.srv.dir.telstra.com (172.49.40.173) with Microsoft SMTP Server (TLS) id 8.3.485.1; Tue, 31 Jan 2017 18:01:59 +1100
Received: from wsapp5585.srv.dir.telstra.com (10.75.3.67) by wsapp5585.srv.dir.telstra.com (10.75.3.67) with Microsoft SMTP Server (TLS) id 15.0.1236.3; Tue, 31 Jan 2017 18:01:57 +1100
Received: from AUS01-ME1-obe.outbound.protection.outlook.com (10.172.229.126) by wsapp5585.srv.dir.telstra.com (10.75.3.67) with Microsoft SMTP Server (TLS) id 15.0.1236.3 via Frontend Transport; Tue, 31 Jan 2017 18:01:57 +1100
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=teamtelstra.onmicrosoft.com; s=selector1-team-telstra-com; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=1+voNnhId3rNaY1tqfFdT0aeAXIPS8OeM/1mtRgi5d8=; b=EF3J6BA6ZAb9MJ5rHzKFjMYZeJKm3jziHnF5NueEmWySAN+uWEdynVmbMa1oRnFRfpenfXg0Tzp3bnTUSWPXH3E9fCaOE0Oyp0S5HQfqbvlBShimA4dWjWHEVJ2v+Qg2YrIxbWV6SMlJmx4SPFD8cm0Pj6U60yb+XVzzxfUHgF4=
Received: from SYXPR01MB1615.ausprd01.prod.outlook.com (10.175.209.15) by SYXPR01MB1614.ausprd01.prod.outlook.com (10.175.209.14) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_CBC_SHA384_P384) id 15.1.860.13; Tue, 31 Jan 2017 07:01:55 +0000
Received: from SYXPR01MB1615.ausprd01.prod.outlook.com ([10.175.209.15]) by SYXPR01MB1615.ausprd01.prod.outlook.com ([10.175.209.15]) with mapi id 15.01.0860.024; Tue, 31 Jan 2017 07:01:55 +0000
From: "Manger, James" <James.H.Manger@team.telstra.com>
To: Martin Thomson <martin.thomson@gmail.com>, HTTP Working Group <ietf-http-wg@w3.org>
Thread-Topic: Change to padding in encryption -- examples look ok
Thread-Index: AdJ7ipVCFoDTaJsWStC2EhW7HU6vXw==
Date: Tue, 31 Jan 2017 07:01:55 +0000
Message-ID: <SYXPR01MB1615624CD6805FD00B64020BE54A0@SYXPR01MB1615.ausprd01.prod.outlook.com>
Accept-Language: en-AU, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: spf=none (sender IP is ) smtp.mailfrom=James.H.Manger@team.telstra.com;
x-originating-ip: [203.35.185.244]
x-ms-office365-filtering-correlation-id: 0c701937-b2c2-4dba-6120-08d449a70af2
x-microsoft-antispam: UriScan:;BCL:0;PCL:0;RULEID:(22001);SRVR:SYXPR01MB1614;
x-microsoft-exchange-diagnostics: 1; SYXPR01MB1614; 7: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
x-microsoft-antispam-prvs: <SYXPR01MB1614EFA5D8554568DF38AC6CE54A0@SYXPR01MB1614.ausprd01.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(166708455590820)(67441168502697);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(6040375)(2401047)(5005006)(8121501046)(3002001)(10201501046)(6041248)(20161123564025)(20161123560025)(20161123555025)(20161123562025)(6072148); SRVR:SYXPR01MB1614; BCL:0; PCL:0; RULEID:; SRVR:SYXPR01MB1614;
x-forefront-prvs: 0204F0BDE2
x-forefront-antispam-report: SFV:NSPM; SFS:(10019020)(6009001)(7916002)(39450400003)(189002)(199003)(24454002)(3280700002)(53936002)(305945005)(3846002)(107886002)(68736007)(102836003)(105586002)(42882006)(2906002)(5660300001)(106356001)(7696004)(66066001)(6116002)(86362001)(8936002)(74316002)(81156014)(122556002)(8676002)(9686003)(81166006)(189998001)(3660700001)(7736002)(97736004)(5001770100001)(39060400001)(92566002)(50986999)(6306002)(55016002)(6506006)(54356999)(33656002)(2900100001)(6436002)(77096006)(99286003)(38730400001)(101416001)(25786008)(229853002)(19627235001); DIR:OUT; SFP:1102; SCL:1; SRVR:SYXPR01MB1614; H:SYXPR01MB1615.ausprd01.prod.outlook.com; FPR:; SPF:None; PTR:InfoNoRecords; MX:1; A:0; LANG:en;
received-spf: None (protection.outlook.com: team.telstra.com does not designate permitted sender hosts)
spamdiagnosticoutput: 1:99
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-MS-Exchange-CrossTenant-originalarrivaltime: 31 Jan 2017 07:01:55.6694 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 49dfc6a3-5fb7-49f4-adea-c54e725bb854
X-MS-Exchange-Transport-CrossTenantHeadersStamped: SYXPR01MB1614
X-OriginatorOrg: team.telstra.com
Received-SPF: none client-ip=203.35.135.200; envelope-from=James.H.Manger@team.telstra.com; helo=ipxavo.tcif.telstra.com.au
X-W3C-Hub-Spam-Status: No, score=-2.1
X-W3C-Hub-Spam-Report: BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H3=-0.01, RCVD_IN_MSPIKE_WL=-0.01, W3C_NW=0.5
X-W3C-Scan-Sig: titan.w3.org 1cYSSW-0006OM-Fs 8cee99e8dd2f9a5186a5b6430ecabd29
X-Original-To: ietf-http-wg@w3.org
Subject: RE: Change to padding in encryption -- examples look ok
Archived-At: <http://www.w3.org/mid/SYXPR01MB1615624CD6805FD00B64020BE54A0@SYXPR01MB1615.ausprd01.prod.outlook.com>
Resent-From: ietf-http-wg@w3.org
X-Mailing-List: <ietf-http-wg@w3.org> archive/latest/33396
X-Loop: ietf-http-wg@w3.org
Resent-Sender: ietf-http-wg-request@w3.org
Precedence: list
List-Id: <ietf-http-wg.w3.org>
List-Help: <http://www.w3.org/Mail/>
List-Post: <mailto:ietf-http-wg@w3.org>
List-Unsubscribe: <mailto:ietf-http-wg-request@w3.org?subject=unsubscribe>

Martin Thomson wrote:
> Based on the discussion thus far, I've put together a PR that changes how padding works.
> https://github.com/httpwg/http-extensions/pull/283

The 2 main examples in the PR are correct according to my implementation (https://id.cto.telstra.com/2017/aes128gcm).


Typos:
* In "JWE Mapping", "leading padding" should now be "trailing padding".
* In "JWE Mapping", the nonce looks wrong; I guess it should be .Bcs8gkIRKLI8GeI8. to match the #explicit example.
* In #aes128gcm, drop "a" from "octet a value of 1".

--
James Manger