Re: [jose] Support PQC in JOSE

Antonio Sanso <asanso@adobe.com> Mon, 01 February 2016 09:50 UTC

Return-Path: <asanso@adobe.com>
X-Original-To: jose@ietfa.amsl.com
Delivered-To: jose@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B5B171B2F60 for <jose@ietfa.amsl.com>; Mon, 1 Feb 2016 01:50:11 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: 0.453
X-Spam-Level:
X-Spam-Status: No, score=0.453 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FRT_ADOBE2=2.455, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_PASS=-0.001, SPF_PASS=-0.001] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id WVr0O_LJyvad for <jose@ietfa.amsl.com>; Mon, 1 Feb 2016 01:50:07 -0800 (PST)
Received: from na01-bl2-obe.outbound.protection.outlook.com (mail-bl2on0088.outbound.protection.outlook.com [65.55.169.88]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1677F1B2F5F for <jose@ietf.org>; Mon, 1 Feb 2016 01:50:06 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=adobe.com; s=selector1; h=From:To:Date:Subject:Message-ID:Content-Type:MIME-Version; bh=89hmKD74I19Vn7B3Us7RxAYnxbw3ERLeSoeZHIjBFKc=; b=ASPkK9FDSDP8mKojCi6uSr6L1Kv+5b9cof/LeLNVVX8BpLfzLIPirc0Ifyk75Wimqegyq/evSUI98GFxJzTMH51ud26uQQ5uvkmnGP1LF2bxmafLRNjbA+gPCpymz3DBethN4KNTLi3FrnLGtUbpP8wMgTNiWXwuaWrBFlPF8IY=
Received: from BY1PR0201MB1030.namprd02.prod.outlook.com (10.161.203.148) by BY1PR0201MB1032.namprd02.prod.outlook.com (10.161.203.15) with Microsoft SMTP Server (TLS) id 15.1.396.15; Mon, 1 Feb 2016 09:50:01 +0000
Received: from BY1PR0201MB1030.namprd02.prod.outlook.com ([10.161.203.148]) by BY1PR0201MB1030.namprd02.prod.outlook.com ([10.161.203.148]) with mapi id 15.01.0390.019; Mon, 1 Feb 2016 09:50:01 +0000
From: Antonio Sanso <asanso@adobe.com>
To: "jose@ietf.org" <jose@ietf.org>
Thread-Topic: [jose] Support PQC in JOSE
Thread-Index: AQHRXNLNeRZx+kc1Wky9E5QMX6Y7B58W+dWA
Date: Mon, 01 Feb 2016 09:50:01 +0000
Message-ID: <30A36E2A-2263-4F5A-A093-3D54B3842E8F@adobe.com>
References: <69E1ACAC-AAEE-49D8-953F-FAE3649EB3D2@adobe.com>
In-Reply-To: <69E1ACAC-AAEE-49D8-953F-FAE3649EB3D2@adobe.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: ietf.org; dkim=none (message not signed) header.d=none;ietf.org; dmarc=none action=none header.from=adobe.com;
x-ms-exchange-messagesentrepresentingtype: 1
x-originating-ip: [192.147.117.11]
x-microsoft-exchange-diagnostics: 1; BY1PR0201MB1032; 5:cq0djrf21xt4nSo2ZPrAFtPo5cnBR/mHw7b/rbOH6uHG/cRANVl6yjDerqG4A6zWL5Ana4hCSX1pIc4hw7G6xW4+TTJWc7A3JK6nIdRxzb89sl0igJP1KjxU8HfkfWz8FpUpBOCT7UXucTB6O3YjEQ==; 24:nF+QRjhKVxmVW2LiFoji89H5Y9aORcZuDL2jWzlLkTCTG2TujSToEekVoKRjTVATnkvQSRNyd/PXChqoyBU513SYCqRKvTrUBAKIq43s0qs=
x-microsoft-antispam: UriScan:;BCL:0;PCL:0;RULEID:;SRVR:BY1PR0201MB1032;
x-ms-office365-filtering-correlation-id: 16b63dc3-30d5-47b8-7d0a-08d32aed0d90
x-microsoft-antispam-prvs: <BY1PR0201MB1032326FD34B71052360AF99D9DE0@BY1PR0201MB1032.namprd02.prod.outlook.com>
x-exchange-antispam-report-test: UriScan:(22321516928792);
x-exchange-antispam-report-cfa-test: BCL:0; PCL:0; RULEID:(61425038)(601004)(2401047)(5005006)(8121501046)(3002001)(10201501046)(61426038)(61427038); SRVR:BY1PR0201MB1032; BCL:0; PCL:0; RULEID:; SRVR:BY1PR0201MB1032;
x-forefront-prvs: 0839D067E7
x-forefront-antispam-report: SFV:NSPM; SFS:(10009020)(979002)(6009001)(377454003)(51444003)(24454002)(15975445007)(2950100001)(10090500001)(92566002)(2900100001)(2351001)(2906002)(5004730100002)(10400500002)(1730700002)(5002640100001)(107886002)(106116001)(82746002)(99286002)(54356999)(76176999)(19580405001)(1220700001)(1096002)(50986999)(11100500001)(3846002)(19580395003)(86362001)(77096005)(102836003)(586003)(83716003)(87936001)(5008740100001)(6116002)(36756003)(189998001)(5001960100002)(122556002)(33656002)(40100003)(450100001)(2501003)(3470700001)(3280700002)(3660700001)(110136002)(66066001)(104396002)(969003)(989001)(999001)(1009001)(1019001); DIR:OUT; SFP:1101; SCL:1; SRVR:BY1PR0201MB1032; H:BY1PR0201MB1030.namprd02.prod.outlook.com; FPR:; SPF:None; MLV:ovrnspm; PTR:InfoNoRecords; LANG:en;
spamdiagnosticoutput: 1:23
spamdiagnosticmetadata: NSPM
Content-Type: text/plain; charset="Windows-1252"
Content-ID: <2D8973952984C54EB8B37364A68BD126@namprd02.prod.outlook.com>
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: adobe.com
X-MS-Exchange-CrossTenant-originalarrivaltime: 01 Feb 2016 09:50:01.1154 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: fa7b1b5a-7b34-4387-94ae-d2c178decee1
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BY1PR0201MB1032
Archived-At: <http://mailarchive.ietf.org/arch/msg/jose/sNO_VIGc0nHiKeLFRHrqF8t_Gxw>
Subject: Re: [jose] Support PQC in JOSE
X-BeenThere: jose@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Javascript Object Signing and Encryption <jose.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/jose>, <mailto:jose-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/jose/>
List-Post: <mailto:jose@ietf.org>
List-Help: <mailto:jose-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/jose>, <mailto:jose-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 01 Feb 2016 09:50:11 -0000

ops it look like I kind of fat fingered , meant 

A quantum computer will break totally this (thanks to Shor's algorithm).

On Feb 1, 2016, at 10:27 AM, Antonio Sanso <asanso@adobe.com> wrote:

> hi *,
> 
> I know that this might sounds a bit crazy but I think that is time to kind of think about Post Quantum Cryptography (and JOSE should not be left out).
> But let me rewind a bit. 
> According to the last research (done from IBM et al) and NSA suggestions, having a quantum computer is “only” 8/15 years from now (maybe earlier)
> Taking as example JWS it support RSA signature. A quantum computer will break computer will break totally this (thanks to Show algorithms).
> Thinking about start to expand JWS specification to use some of the PQC is not so inimmaginable IMHO.
> For example having JWS supporting Hash based signatures would be a great move (always IMHO :)) for JOSE and JWS. 
> 
> WDYT?
> 
> antonio
> 
> P.S. a great post about Hash based signatures and Merkle tree is at https://www.imperialviolet.org/2013/07/18/hashsig.html
> _______________________________________________
> jose mailing list
> jose@ietf.org
> https://www.ietf.org/mailman/listinfo/jose