Re: [IPsec] comments on draft-ietf-ipsecme-g-ikev2-07

Valery Smyslov <smyslov.ietf@gmail.com> Thu, 12 January 2023 14:06 UTC

Return-Path: <smyslov.ietf@gmail.com>
X-Original-To: ipsec@ietfa.amsl.com
Delivered-To: ipsec@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3FA5DC14CE52 for <ipsec@ietfa.amsl.com>; Thu, 12 Jan 2023 06:06:43 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Level:
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id HR4hiX7gNIZd for <ipsec@ietfa.amsl.com>; Thu, 12 Jan 2023 06:06:42 -0800 (PST)
Received: from mail-lf1-x12d.google.com (mail-lf1-x12d.google.com [IPv6:2a00:1450:4864:20::12d]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D5F08C14CE4E for <ipsec@ietf.org>; Thu, 12 Jan 2023 06:06:42 -0800 (PST)
Received: by mail-lf1-x12d.google.com with SMTP id b3so28586491lfv.2 for <ipsec@ietf.org>; Thu, 12 Jan 2023 06:06:42 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20210112; h=content-language:thread-index:content-transfer-encoding :mime-version:message-id:date:subject:in-reply-to:references:cc:to :from:from:to:cc:subject:date:message-id:reply-to; bh=ayM+vn0qxf3HOcCDc88pHNj9fxI9qHj9Umu5S7I8p7w=; b=bnQPSNyTp6rh9W6DW3qcu/W8PrvwfhMvAnX9OdNPBSw7BZwWm7qhMuSjsdMLDKLeDu TEmHm59uqwvvNINAGS09GAXWGcnk6EQQStY51ELl4t2jZutbYwHMOeb4fIR2bJSDnTGx f2Z+QrUe1YdeZpP/7Ivv29OSbRGMkv8EPAz394angscFDM9HSAt/plRG4GS3CMZLmus+ 5qd3RKNeY8zR154uAKUEjcmak94EfXp2NIN1IaCX+TGJSkX+H8Sjsc0wp3AthC888RmF oNR58omF6Snq0Kt+yekveemGcIAY4AKzAukbsBZDrxwFeaHUva5mEAgCWrzQ8mj3rH08 oSZg==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=content-language:thread-index:content-transfer-encoding :mime-version:message-id:date:subject:in-reply-to:references:cc:to :from:x-gm-message-state:from:to:cc:subject:date:message-id:reply-to; bh=ayM+vn0qxf3HOcCDc88pHNj9fxI9qHj9Umu5S7I8p7w=; b=VkJY/ArIOQ2Jby6/MhwJpkk7SlSU+twOJ9sTV9koaePIHuwY7rS6CRixMnJyc3dxN+ wrAlDp/8qvqzNCQg7VP88FrIDXx7I+trajS/Xc3+sFLolzRGQli4SX3z6HkSFfjC8g+P Ak60qLElWINHB4Sua/iEGOAboSAP06VmgzpyIBwoz5NLj8HLMj3zNZBCS1GR9yZSOczs e3CWRnhJTDfUqcBnm8wxrHbsQtphx3pYElfRDAADDIc8Z8GgBf8iYK1nlihlhvp8veNE yDAjgWZp2Iz3jmQQpRhQbZ2JhFP18k2ACJKL49CgGVSd0+wRL3MqoHDz+LDffBmye7eW LFqw==
X-Gm-Message-State: AFqh2kq2SgdziyH29EY5xrncdf9wzXo7olf1aSn3gAleTGW4pvuOGZjf 7TbBv0666mUhjwPu67bIxYQ=
X-Google-Smtp-Source: AMrXdXt1nCjNn8SZoBDgpZneZKFMC2tRRl68UirlOuXhDlqWaZ5luvGzYxhhbf4akIzTsLwFT85+Mw==
X-Received: by 2002:a05:6512:308f:b0:4cc:7bf2:fa2d with SMTP id z15-20020a056512308f00b004cc7bf2fa2dmr7940579lfd.6.1673532400893; Thu, 12 Jan 2023 06:06:40 -0800 (PST)
Received: from buildpc ([93.188.44.204]) by smtp.gmail.com with ESMTPSA id c14-20020a056512074e00b004cb3a55feacsm3293575lfs.100.2023.01.12.06.06.38 (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Thu, 12 Jan 2023 06:06:39 -0800 (PST)
From: Valery Smyslov <smyslov.ietf@gmail.com>
To: 'Paul Wouters' <paul@nohats.ca>
Cc: ipsec@ietf.org, bew.stds@gmail.com
References: <11505.1671563270@localhost> <257b01d9151c$a16579f0$e4306dd0$@gmail.com> <9470.1671641738@localhost> <261c01d915e3$50ef2670$f2cd7350$@gmail.com> <14222.1671724652@localhost> <268e01d916a2$1ad7bec0$50873c40$@gmail.com> <27837.1671814151@localhost> <27d301d9192b$645265b0$2cf73110$@gmail.com> <cb8a195a-c9f4-2b84-bd40-91f0404cc8f6@nohats.ca>
In-Reply-To: <cb8a195a-c9f4-2b84-bd40-91f0404cc8f6@nohats.ca>
Date: Thu, 12 Jan 2023 17:06:40 +0300
Message-ID: <072c01d9268f$18950b20$49bf2160$@gmail.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
X-Mailer: Microsoft Outlook 14.0
Thread-Index: AQKeBWC6qo76WkEy8zM45q+l9j6TWgGzCTsyAnEMrYcCmknuMQIab9ZYAeHz0tIBSrb5NwGFLueZAWNttrSsmU0D4A==
Content-Language: ru
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipsec/QQrn_Z6Igeia8nbe8jrHWBLmgEM>
Subject: Re: [IPsec] comments on draft-ietf-ipsecme-g-ikev2-07
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipsec/>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 12 Jan 2023 14:06:43 -0000

Hi Paul,

> On Mon, 26 Dec 2022, Valery Smyslov wrote:
> 
> > Subject: Re: [IPsec] comments on draft-ietf-ipsecme-g-ikev2-07
> 
> I know this comment comes very late, but within the IETF we now see
> adoption happening of HPKE, Hybrid Public Key Encryption in RFC 9180.
> 
> Would it make sense to redo the draft using HPKE primitives and methods?

Unless I'm missing something, it's not immediately clear for me how you want 
to use HPKE here. Can you clarify?

> Paul - who still needs to do a full careful reading of the draft, sorry :/

Better late than never :-)

Regards,
Valery.