Last Call: <draft-ietf-jose-hpke-encrypt-22.txt> (Use of Hybrid Public Key Encryption (HPKE) with JSON Web Encryption (JWE)) to Proposed Standard

The IESG <iesg-secretary@ietf.org> Mon, 13 July 2026 18:51 UTC

Return-Path: <iesg-secretary@ietf.org>
X-Original-To: ietf-announce@ietf.org
Delivered-To: ietf-announce@mail2.ietf.org
Received: from [10.244.21.112] (gaia.k8s.ietf.org [4.156.85.76]) by mail2.ietf.org (Postfix) with ESMTP id 727A6116050B4; Mon, 13 Jul 2026 11:51:13 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1783968673; bh=bZe9/QpZeJJ1wQh4VuUSzJR/wpcN7l+bE3WFKB+Yj0A=; h=From:To:Subject:CC:Reply-To:Date; b=SkfegejYf+nWP/EK8u0g2Rm8TFfLcmJYT+4PyIUBMszvKz0VBQXr9vMpFOHrhmvKN Onp8KYnV9/lNrC22OK3+EbVODnj/5dBjXrPRPCsxm2sAERKSoNXuVW050rNpXiKZ3U CVxh/sPsBl5+rz0R47oOq8U9eHf0RVfLT3RVGNV4=
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: The IESG <iesg-secretary@ietf.org>
To: IETF-Announce <ietf-announce@ietf.org>
Subject: Last Call: <draft-ietf-jose-hpke-encrypt-22.txt> (Use of Hybrid Public Key Encryption (HPKE) with JSON Web Encryption (JWE)) to Proposed Standard
X-Test-IDTracker: no
X-IETF-IDTracker: 12.69.0
Auto-Submitted: auto-generated
Precedence: bulk
Sender: iesg-secretary@ietf.org
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
Message-ID: <178396867340.474007.14333978790489261732@dt-datatracker-d4d6ff9d9-kg6bf>
Date: Mon, 13 Jul 2026 11:51:13 -0700
Message-ID-Hash: ZD5DCV2A4VRM5UNIK5RFPIGK2D5JXMEQ
X-Message-ID-Hash: ZD5DCV2A4VRM5UNIK5RFPIGK2D5JXMEQ
X-MailFrom: iesg-secretary@ietf.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-ietf-announce.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: draft-ietf-jose-hpke-encrypt@ietf.org, jose-chairs@ietf.org, jose@ietf.org, michael.p1@ncsc.gov.uk
X-Mailman-Version: 3.3.9rc6
Reply-To: last-call@ietf.org
List-Id: "IETF announcement list. No discussions." <ietf-announce.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/ietf-announce/yMW0Ars8nOtHyNxhzd-IpmlAkC4>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ietf-announce>
List-Help: <mailto:ietf-announce-request@ietf.org?subject=help>
List-Owner: <mailto:ietf-announce-owner@ietf.org>
List-Post: <mailto:ietf-announce@ietf.org>
List-Subscribe: <mailto:ietf-announce-join@ietf.org>
List-Unsubscribe: <mailto:ietf-announce-leave@ietf.org>

The IESG has received a request from the Javascript Object Signing and
Encryption WG (jose) to consider the following document: - 'Use of Hybrid
Public Key Encryption (HPKE) with JSON Web Encryption
   (JWE)'
  <draft-ietf-jose-hpke-encrypt-22.txt> as Proposed Standard

This is a second Last Call for draft-ietf-jose-hpke-encrypt. After the recent IESG telechat, with the input of the AD, and based on concerns raised during IETF Last Call, it was decided to remove the HPKE-4-KE and HPKE-6-KE algorithms (JOSE doesn't have a ChaCha20/Poly1305 content encryption algorithm registered). This IETF Last Call is ensure IETF consensus to update these registry options.  Section 6, and Section 11.1 have been updated, removing these two options.

The IESG plans to make a decision in the next few weeks, and solicits final
comments on this action. Please send substantive comments to the
last-call@ietf.org mailing lists by 2026-08-03. Exceptionally, comments may
be sent to iesg@ietf.org instead. In either case, please retain the beginning
of the Subject line to allow automated sorting.

Abstract


   This specification defines how to use Hybrid Public Key Encryption
   (HPKE) with JSON Web Encryption (JWE).  HPKE enables public key
   encryption of arbitrary-sized plaintexts to a recipient's public key,
   and provides security against adaptive chosen ciphertext attacks.
   This specification chooses a specific subset of the HPKE features to
   use with JWE.

   This specification updates RFC 7516 (JWE) to enable use of Integrated
   Encryption as a Key Management Mode.




The file can be obtained via
https://datatracker.ietf.org/doc/draft-ietf-jose-hpke-encrypt/



No IPR declarations have been submitted directly on this I-D.


The document contains these normative downward references.
See RFC 3967 for additional information: 
    rfc8937: Randomness Improvements for Security Protocols (Informational - Internet Research Task Force (IRTF) stream)