Re: [jose] Issue #13 - use AES-GCM for Key Wrapping

Edmund Jay <ejay@mgi1.com> Wed, 26 June 2013 07:12 UTC

Return-Path: <edmundjay@sbcglobal.net>
X-Original-To: jose@ietfa.amsl.com
Delivered-To: jose@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 349D221E8119 for <jose@ietfa.amsl.com>; Wed, 26 Jun 2013 00:12:43 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.598
X-Spam-Level:
X-Spam-Status: No, score=-2.598 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, HTML_MESSAGE=0.001]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id j7g5ygDPYTIx for <jose@ietfa.amsl.com>; Wed, 26 Jun 2013 00:12:37 -0700 (PDT)
Received: from nm7-vm0.access.bullet.mail.mud.yahoo.com (nm7-vm0.access.bullet.mail.mud.yahoo.com [66.94.237.189]) by ietfa.amsl.com (Postfix) with ESMTP id 6633021E808E for <jose@ietf.org>; Wed, 26 Jun 2013 00:12:37 -0700 (PDT)
Received: from [66.94.237.193] by nm7.access.bullet.mail.mud.yahoo.com with NNFMP; 26 Jun 2013 07:12:36 -0000
Received: from [66.196.81.125] by tm4.access.bullet.mail.mud.yahoo.com with NNFMP; 26 Jun 2013 07:12:36 -0000
Received: from [127.0.0.1] by omp1001.access.mail.bf1.yahoo.com with NNFMP; 26 Jun 2013 07:12:36 -0000
X-Yahoo-Newman-Property: ymail-3
X-Yahoo-Newman-Id: 640952.38709.bm@omp1001.access.mail.bf1.yahoo.com
Received: (qmail 53228 invoked by uid 60001); 26 Jun 2013 07:12:36 -0000
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=sbcglobal.net; s=s1024; t=1372230756; bh=BeJlbg4W6kcOtMX21rRDhIo5aQzYyKlInfuqErxdSAM=; h=X-YMail-OSG:Received:X-Rocket-MIMEInfo:X-RocketYMMF:X-Mailer:References:Message-ID:Date:From:Reply-To:Subject:To:Cc:In-Reply-To:MIME-Version:Content-Type; b=TjiiRt0UkorLvE175P3CfQpKY/PglFlPSwTr9pH9tqtxKppMJaaVo38h86gQteV8+lvs7vDnUWPD63upULNUgQGHeChTsfKVKt/OlSzYM97I+M7iNZMi2PPz0BJnCl+pOO5DCyXdYybBmMXSN/zp/+1378942o/vA+Aas2n2bxg=
DomainKey-Signature: a=rsa-sha1; q=dns; c=nofws; s=s1024; d=sbcglobal.net; h=X-YMail-OSG:Received:X-Rocket-MIMEInfo:X-RocketYMMF:X-Mailer:References:Message-ID:Date:From:Reply-To:Subject:To:Cc:In-Reply-To:MIME-Version:Content-Type; b=ceqaSRhFuiC9JvqWkqNDaRRcYHjQDBKxv/QrGrEAvTMqYOdDrRo/tZYdXI/hC67TVoXSRjWHR9PRuFC9Y1n1oo0776GLwcb0qWkj5dsRKa2S3CPLCdxibdBp4O4PPVI9cGw34xadtQdeTFEeCVrysm5F1tueFrdrUlMOm0NUxrw=;
X-YMail-OSG: ZFgHR_YVM1kAV_qXb_70xFlpftYV2jT.ziSXRKxykizill3 PEfEYaoH22_aggvT3u17y1KKV_D1P3kHSLpQxvM6Rkp0B4jz19FxXeWzCUIV AgEXEXCcvJlnqEMok2eKK.Pcfn6_NG_3n2x3g0PJbO31Oi4Q2rrCVNnowbvE x34OkYlF8xVC7kqjWZM9sh5ntVqJeDxOxfBdFW.5HYjllv0M7CgTDb6uPStF DMhNjI50D6tLw6JmjrBBoSNm81sQ07xaKeblLfer8SYHvwp_2R8_CrriZTgr HDKweBq.aIr.MdfyIEh2VJb7.09PDL3mkuBPCWBEY3op3h0Cgx8gO4tIJ_qG MW7mt_3UIC6cBx_0hayuhp_uQRELcrokSds9i.oJXvvGGilNwDf4DxPmaety OSTr76XswgDZReEy766UGNykYYinzzygPnGH95we4wxBpjkTGVWgfOJM9Fbf HvNRBbvlliWcEEECBvuuLQ7VgX24joaPYwpzBc0C5rnp5e1DGYzO.INHCtRd m68LvkdShvYHFKx9itL20uqLtFslgzeFMfxVp.1LrqpWEFVZDc9413TbXsNL hAB4MLDPlCnwumn0zdg--
Received: from [70.36.254.42] by web184405.mail.bf1.yahoo.com via HTTP; Wed, 26 Jun 2013 00:12:35 PDT
X-Rocket-MIMEInfo: 002.001, SSdtIGluIGZhdm9yIG9mIHN1cHBvcnRpbmcgTWlrZSdzIHByb3Bvc2FsIGR1ZSB0byBzaW1wbGljaXR5LgoKCl9fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fCiBGcm9tOiBSb2xhbmQgSGVkYmVyZyA8cm9sYW5kLmhlZGJlcmdAYWRtLnVtdS5zZT4KVG86ICJqb3NlQGlldGYub3JnIiA8am9zZUBpZXRmLm9yZz4gCkNjOiBKb2huIEJyYWRsZXkgPHZlN2p0YkB2ZTdqdGIuY29tPjsgTWlrZSBKb25lcyA8TWljaGFlbC5Kb25lc0BtaWNyb3NvZnQuY29tPjsgSmltIFNjaGFhZCA8aWV0ZkBhdWd1c3RjZWwBMAEBAQE-
X-RocketYMMF: edmundjay@sbcglobal.net
X-Mailer: YahooMailWebService/0.8.148.554
References: <4E1F6AAD24975D4BA5B168042967394367898761@TK5EX14MBXC283.redmond.corp.microsoft.com> <AB09929C-35FA-4185-94BD-DBE6F57083DF@ve7jtb.com> <6036825F-6F06-412E-89B1-523BC10D1AA9@adm.umu.se>
Message-ID: <1372230755.52922.YahooMailNeo@web184405.mail.bf1.yahoo.com>
Date: Wed, 26 Jun 2013 00:12:35 -0700
From: Edmund Jay <ejay@mgi1.com>
To: Roland Hedberg <roland.hedberg@adm.umu.se>, "jose@ietf.org" <jose@ietf.org>
In-Reply-To: <6036825F-6F06-412E-89B1-523BC10D1AA9@adm.umu.se>
MIME-Version: 1.0
Content-Type: multipart/alternative; boundary="-1412092350-1960711502-1372230755=:52922"
Cc: John Bradley <ve7jtb@ve7jtb.com>, Mike Jones <Michael.Jones@microsoft.com>, Jim Schaad <ietf@augustcellars.com>
Subject: Re: [jose] Issue #13 - use AES-GCM for Key Wrapping
X-BeenThere: jose@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
Reply-To: Edmund Jay <ejay@mgi1.com>
List-Id: Javascript Object Signing and Encryption <jose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/jose>, <mailto:jose-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/jose>
List-Post: <mailto:jose@ietf.org>
List-Help: <mailto:jose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/jose>, <mailto:jose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 26 Jun 2013 07:12:43 -0000

I'm in favor of supporting Mike's proposal due to simplicity.


________________________________
 From: Roland Hedberg <roland.hedberg@adm.umu.se>
To: "jose@ietf.org" <jose@ietf.org> 
Cc: John Bradley <ve7jtb@ve7jtb.com>; Mike Jones <Michael.Jones@microsoft.com>; Jim Schaad <ietf@augustcellars.com> 
Sent: Tuesday, June 25, 2013 11:52 PM
Subject: Re: [jose] Issue #13 - use AES-GCM for Key Wrapping
 

Likewise, I also prefer Mike's proposal.

26 jun 2013 kl. 01:28 skrev John Bradley <ve7jtb@ve7jtb.com>:

> I prefer the approach Mike is proposing.   It is overall simper and less restructuring.
> 
> John B.
> On 2013-06-25, at 7:18 PM, Mike Jones <Michael.Jones@microsoft.com> wrote:
> 
>> http://tools.ietf.org/html/draft-jones-jose-aes-gcm-key-wrap-00 seems like a substantially simpler approach thanhttp://tools.ietf.org/html/draft-barnes-jose-key-wrapping-01.  This is evident by several metrics:
>> ·         Number of proposed changes:  The Jones draft proposes no changes to any of the current specs.  It simply defines an encoding for GCM and adds registry entries for it.  Whereas the Barnes draft proposes a major restructuring – listing 4 major changes in the introduction and 4 smaller changes.
>> ·         Normative text size:  The Jones GCM key wrap approach requires only 7 normative sentences in 1/2 page of text.  The Barnes draft has four pages of normative text, along with an extensive introduction describing the proposed complete restructuring of JWS and JWE.
>>  
>> We don’t need to boil the ocean with a total redesign to enable AEAD key wrapping.  It can already easily be done with the current specs simply by defining new algorithms.  The approach taken in http://tools.ietf.org/html/draft-jones-jose-aes-gcm-key-wrap-00 would work for any AEAD algorithm.
>>  
>>                                                                 -- Mike
>>  
>> From: jose-bounces@ietf.org [mailto:jose-bounces@ietf.org] On Behalf Of Jim Schaad
>> Sent: Tuesday, June 25, 2013 9:53 AM
>> To: jose@ietf.org
>> Subject: [jose] Issue #13 - use AES-GCM for Key Wrapping
>>  
>> We now have two documents – one from Richard and one from Mike – which provide the two different ways that have been proposed for doing key wrapping with an AEAD algorithm.
>>  
>> Please review the two documents and provide comments to the list.
>>  
>> Jim
>>  
>> _______________________________________________
>> jose mailing list
>> jose@ietf.org
>> https://www.ietf.org/mailman/listinfo/jose
> 

_______________________________________________
jose mailing list
jose@ietf.org
https://www.ietf.org/mailman/listinfo/jose