Re: [IPsec] PAKE selection: PACE

"Dan Harkins" <dharkins@lounge.org> Tue, 01 June 2010 16:13 UTC

Return-Path: <dharkins@lounge.org>
X-Original-To: ipsec@core3.amsl.com
Delivered-To: ipsec@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 2663228C0DE for <ipsec@core3.amsl.com>; Tue, 1 Jun 2010 09:13:47 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.312
X-Spam-Level:
X-Spam-Status: No, score=-3.312 tagged_above=-999 required=5 tests=[AWL=0.053, BAYES_50=0.001, IP_NOT_FRIENDLY=0.334, MIME_8BIT_HEADER=0.3, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id qiV7LgGAWk4X for <ipsec@core3.amsl.com>; Tue, 1 Jun 2010 09:13:45 -0700 (PDT)
Received: from colo.trepanning.net (colo.trepanning.net [69.55.226.174]) by core3.amsl.com (Postfix) with ESMTP id D77903A6A43 for <ipsec@ietf.org>; Tue, 1 Jun 2010 09:13:45 -0700 (PDT)
Received: from www.trepanning.net (localhost [127.0.0.1]) by colo.trepanning.net (Postfix) with ESMTP id CCAA41022404C; Tue, 1 Jun 2010 09:13:33 -0700 (PDT)
Received: from 69.12.173.8 (SquirrelMail authenticated user dharkins@lounge.org) by www.trepanning.net with HTTP; Tue, 1 Jun 2010 09:13:33 -0700 (PDT)
Message-ID: <868dbee876960a6ef8a3d37bded2df30.squirrel@www.trepanning.net>
In-Reply-To: <201006011519.36069.dennis.kuegler@bsi.bund.de>
References: <201005261337.14090.dennis.kuegler@bsi.bund.de> <8a7891f3e8674b766ae45a2c51ed1578.squirrel@www.trepanning.net> <201006011519.36069.dennis.kuegler@bsi.bund.de>
Date: Tue, 01 Jun 2010 09:13:33 -0700
From: Dan Harkins <dharkins@lounge.org>
To: Dennis Kügler <dennis.kuegler@bsi.bund.de>
User-Agent: SquirrelMail/1.4.14 [SVN]
MIME-Version: 1.0
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: 8bit
X-Priority: 3 (Normal)
Importance: Normal
Cc: ipsec@ietf.org
Subject: Re: [IPsec] PAKE selection: PACE
X-BeenThere: ipsec@ietf.org
X-Mailman-Version: 2.1.9
Precedence: list
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/ipsec>
List-Post: <mailto:ipsec@ietf.org>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/ipsec>, <mailto:ipsec-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 01 Jun 2010 16:13:47 -0000

  Hi Dennis,

  You made a very vague statement (SPEKE patent infringes on dragonfly).
I made a very detailed response to it, using the first independent claim
in a patent describing SPEKE, explaining why it did not apply.

  Now I make a detailed statement (SPEKE patent infringes on PACE, and
specifically it's the first independent claim of US 6,792,533). You
then make a vague response about how a password is used "only
temporarily", which responds neither to my statement nor to the specific
claim in the specific patent I mentioned, and then something that is
just factually incorrect: "[t]he key derivation step is completely
independent of the password."

  Try again, please. Make a detailed response to each part of the claim
and explain what in the claim does not apply to your proposal and why.
Give my statements the same level of respect that I have given yours.

  regards,

  Dan.

On Tue, June 1, 2010 6:19 am, Dennis Kügler wrote:
> Hi Dan,
>>   Hi Dennis,
>>
>>   I have read the PACE submission. I believe claim 1 of the SPEKE
>> patent,
>> US 6,792,533, covers this protocol. If you do think otherwise, please
>> explain why.
>
> This is very simple. The password is only temporarily used to protect a
> nonce
> sent to the other party. The key derivation step is completely independent
> of
> the password.