Protocol Action: Reuse of CMS Content Encryption Keys to Proposed Standard

The IESG <iesg-secretary@ietf.org> Mon, 01 October 2001 11:36 UTC

Received: from loki.ietf.org (loki [10.27.2.29]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id HAA11583; Mon, 1 Oct 2001 07:36:55 -0400 (EDT)
Received: (from adm@localhost) by loki.ietf.org (8.9.1b+Sun/8.9.1) id HAA04007 for ietf-123-outbound.10@ietf.org; Mon, 1 Oct 2001 07:15:01 -0400 (EDT)
Received: from ietf.org (odin.ietf.org [10.27.2.28]) by loki.ietf.org (8.9.1b+Sun/8.9.1) with ESMTP id GAA03869 for <all-ietf@loki.ietf.org>; Mon, 1 Oct 2001 06:58:57 -0400 (EDT)
Received: from CNRI.Reston.VA.US (localhost [127.0.0.1]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id GAA10682; Mon, 1 Oct 2001 06:58:54 -0400 (EDT)
Message-Id: <200110011058.GAA10682@ietf.org>
To: IETF-Announce:;
Cc: RFC Editor <rfc-editor@isi.edu>
Cc: Internet Architecture Board <iab@isi.edu>
Cc: ietf-smime@IMC.ORG
From: The IESG <iesg-secretary@ietf.org>
Subject: Protocol Action: Reuse of CMS Content Encryption Keys to Proposed Standard
Date: Mon, 01 Oct 2001 06:58:54 -0400
Sender: scoya@cnri.reston.va.us


The IESG has approved the Internet-Draft 'Reuse of CMS Content
Encryption Keys' <draft-ietf-smime-rcek-04.txt> as a Proposed
Standard.  This document is the product of the S/MIME Mail Security
Working Group.  The IESG contact persons are Jeffrey Schiller and
Marcus Leech.

 
Technical Summary
 
  SMIME's Cryptographic Message Syntax (CMS) provides a way to use
  public key cryptography to encrypt a symmetric key which in turn is
  used to encrypt the content of the message.

  There are applications where two parties may need to exchange
  multiple messages and wish to avoid the overhead of the public key
  operation (public key cryptography is much more computationally
  expensive then symmetric algorithms).

  This document defines a secure way of labeling the symmetric key
  (called the Content Encryption Key or CEK) in a message such that it
  may be used as a Key Encrypting Key (KEK) for a later message.

  This technique is not advisable for just any application and the
  document explains where it makes sense and where it doesn't.

Working Group Summary

  The S/MIME Working Group came to consensus on this document.

Protocol Quality

  This protocol was reviewed for the IESG by Jeffrey I. Schiller.