Re: [jose] DISCUSS: RSA-OAEP/RSA-PSS default parameters

Brian Campbell <bcampbell@pingidentity.com> Tue, 28 August 2012 20:30 UTC

Return-Path: <bcampbell@pingidentity.com>
X-Original-To: jose@ietfa.amsl.com
Delivered-To: jose@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 8F01321F8512 for <jose@ietfa.amsl.com>; Tue, 28 Aug 2012 13:30:44 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -5.975
X-Spam-Level:
X-Spam-Status: No, score=-5.975 tagged_above=-999 required=5 tests=[AWL=0.001, BAYES_00=-2.599, FM_FORGED_GMAIL=0.622, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([64.170.98.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 7qmOsqyFt2YS for <jose@ietfa.amsl.com>; Tue, 28 Aug 2012 13:30:43 -0700 (PDT)
Received: from na3sys009aog105.obsmtp.com (na3sys009aog105.obsmtp.com [74.125.149.75]) by ietfa.amsl.com (Postfix) with ESMTP id 9321421F8510 for <jose@ietf.org>; Tue, 28 Aug 2012 13:30:43 -0700 (PDT)
Received: from mail-qa0-f43.google.com ([209.85.216.43]) (using TLSv1) by na3sys009aob105.postini.com ([74.125.148.12]) with SMTP ID DSNKUD0qaWlGGJzbZOreRT+k/Tc4wZz8hoSw@postini.com; Tue, 28 Aug 2012 13:30:43 PDT
Received: by qatk31 with SMTP id k31so3394926qat.2 for <jose@ietf.org>; Tue, 28 Aug 2012 13:30:33 -0700 (PDT)
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=20120113; h=mime-version:in-reply-to:references:from:date:message-id:subject:to :cc:content-type:x-gm-message-state; bh=Rx48ZsKutkhm4UaPrx5WfbxoBF8aE4ca8FlQPZlOLv0=; b=fYCeDTECuObrmDwxwicA3NrcX3qcqqP9NtuClm6759k88SKtas+p3fHBzOs2DDF0UH +1TPQSNODj6C06O90wAEX1GOMA0FFB8oujFk+Q8OO4mniBbJaAmjOL+g7041MRUSDgdn dYhJ1QiFnWQ69wTOFZbpRqxUXyeuarQ2GlVE5Qnmy1ebe5jE+lbilLvPTyGcT1pHDyDZ +VcZEFY/c8CRCYm/P7Av2yzxFLws2m62T/NEWm1pp2bX9thrCYgTWxeQ/hq98Qc0CFjN 6nHmYxm2QF+5tBvtfi2g1mK+po+t5wyGPzTiQrXkrjz7dwI/tbIKJ7m0QiD/bqN3f9d9 eQyw==
Received: by 10.224.196.134 with SMTP id eg6mr32885969qab.63.1346185832902; Tue, 28 Aug 2012 13:30:32 -0700 (PDT)
MIME-Version: 1.0
Received: by 10.49.48.73 with HTTP; Tue, 28 Aug 2012 13:30:02 -0700 (PDT)
In-Reply-To: <4E1F6AAD24975D4BA5B1680429673943667A1FD3@TK5EX14MBXC284.redmond.corp.microsoft.com>
References: <4E1F6AAD24975D4BA5B168042967394366797E0F@TK5EX14MBXC284.redmond.corp.microsoft.com> <024001cd7d31$ca406620$5ec13260$@augustcellars.com> <4E1F6AAD24975D4BA5B1680429673943667A1FD3@TK5EX14MBXC284.redmond.corp.microsoft.com>
From: Brian Campbell <bcampbell@pingidentity.com>
Date: Tue, 28 Aug 2012 14:30:02 -0600
Message-ID: <CA+k3eCTKstiycKafo+jJWqaXWcrcDytEz_bZBUwt6BQ-Z5-uPw@mail.gmail.com>
To: Mike Jones <Michael.Jones@microsoft.com>
Content-Type: multipart/alternative; boundary="20cf3005dd965f2f7804c859502b"
X-Gm-Message-State: ALoCoQlKqXPRlQO86QJlRlfiQ1zzowaz1qoSmizzALdlcY45Em8nm4ao6sLnEcqi9u9aqfQ8YiOQ
Cc: Jim Schaad <ietf@augustcellars.com>, "jose@ietf.org" <jose@ietf.org>
Subject: Re: [jose] DISCUSS: RSA-OAEP/RSA-PSS default parameters
X-BeenThere: jose@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: Javascript Object Signing and Encryption <jose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/jose>, <mailto:jose-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/jose>
List-Post: <mailto:jose@ietf.org>
List-Help: <mailto:jose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/jose>, <mailto:jose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 28 Aug 2012 20:30:44 -0000

I, for one, am very confused by this one. I just went with the intention to
vote in favor of using widely deployed default parameters (like SHA1) but
after reading this and the poll thread again, I wasn't sure what a yes or
no vote was actually for.

On Mon, Aug 20, 2012 at 12:08 PM, Mike Jones <Michael.Jones@microsoft.com>wrote:

> Just to avoid confusion, could you or Karen please resend the poll
> question with the correct room count?
>
>                                 Thanks,
>                                 -- Mike
>
> -----Original Message-----
> From: Jim Schaad [mailto:ietf@augustcellars.com]
> Sent: Saturday, August 18, 2012 4:08 AM
> To: Mike Jones; jose@ietf.org
> Subject: RE: [jose] DISCUSS: RSA-OAEP/RSA-PSS default parameters
>
> I believe that I switched the question between the room and here.  The
> question in the room was should we switch FROM SHA1 to something else.
>
> The room count should be reversed with the revised question.
>
> > -----Original Message-----
> > From: Mike Jones [mailto:Michael.Jones@microsoft.com]
> > Sent: Saturday, August 18, 2012 1:53 AM
> > To: Jim Schaad; jose@ietf.org
> > Subject: RE: [jose] DISCUSS: RSA-OAEP/RSA-PSS default parameters
> >
> > I believe that the results below are recorded incorrectly.  I know
> > that I personally voted that we use the default parameters as widely
> > deployed (SHA-1), so the results below can not be right.  I believe
> > that the
> results were
> > likely actually:
> >
> > Room vote:  5 yes, 0 no, 3 discuss
> >
> >                               -- Mike
> >
> > -----Original Message-----
> > From: jose-bounces@ietf.org [mailto:jose-bounces@ietf.org] On Behalf
> > Of Jim Schaad
> > Sent: Friday, August 17, 2012 12:05 AM
> > To: jose@ietf.org
> > Subject: [jose] POLL: RSA-OAEP/RSA-PSS default parameters
> >
> > <CHAIR>
> >
> > If you voted at the face-2-face please do not vote again.  If you want
> > to provide comments please change the title from POLL to DISCUSS.
> >
> > Should SHA1 be the default parameters for these algorithms?
> >
> >
> > Room vote:  0 yes, 5 no, 3 discuss
> >
> >
> > _______________________________________________
> > jose mailing list
> > jose@ietf.org
> > https://www.ietf.org/mailman/listinfo/jose
>
>
>
>
> _______________________________________________
> jose mailing list
> jose@ietf.org
> https://www.ietf.org/mailman/listinfo/jose
>