Re: [Ietf-krb-wg] CF2 test vectors for DES and 3DES

Tom Yu <tlyu@MIT.EDU> Fri, 01 May 2009 21:58 UTC

Return-Path: <ietf-krb-wg-bounces@lists.anl.gov>
X-Original-To: ietfarch-krb-wg-archive@core3.amsl.com
Delivered-To: ietfarch-krb-wg-archive@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 3C0573A6EAB for <ietfarch-krb-wg-archive@core3.amsl.com>; Fri, 1 May 2009 14:58:10 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.956
X-Spam-Level:
X-Spam-Status: No, score=-3.956 tagged_above=-999 required=5 tests=[AWL=-1.357, BAYES_00=-2.599]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id VjqKzSTeaxPT for <ietfarch-krb-wg-archive@core3.amsl.com>; Fri, 1 May 2009 14:58:09 -0700 (PDT)
Received: from mailhost.anl.gov (mailhost.anl.gov [130.202.113.50]) by core3.amsl.com (Postfix) with ESMTP id 7BEFE3A6960 for <krb-wg-archive@lists.ietf.org>; Fri, 1 May 2009 14:55:50 -0700 (PDT)
Received: from mailhost.anl.gov (mailhost.anl.gov [130.202.113.50]) by localhost.ctd.anl.gov (Postfix) with ESMTP id 7A56911; Fri, 1 May 2009 16:57:14 -0500 (CDT)
Received: from lists.anl.gov (katydid.it.anl.gov [146.137.96.32]) by mailhost.anl.gov (Postfix) with ESMTP id 9F04530; Fri, 1 May 2009 16:57:12 -0500 (CDT)
Received: from katydid.it.anl.gov (localhost [127.0.0.1]) by lists.anl.gov (Postfix) with ESMTP id 7705080DFD; Fri, 1 May 2009 16:57:12 -0500 (CDT)
X-Original-To: ietf-krb-wg@lists.anl.gov
Delivered-To: ietf-krb-wg@lists.anl.gov
Received: from mailhost.anl.gov (mailhost.anl.gov [130.202.113.50]) by lists.anl.gov (Postfix) with ESMTP id D225580DF1 for <ietf-krb-wg@lists.anl.gov>; Fri, 1 May 2009 16:57:10 -0500 (CDT)
Received: by mailhost.anl.gov (Postfix) id C1CF211; Fri, 1 May 2009 16:57:10 -0500 (CDT)
Delivered-To: ietf-krb-wg@anl.gov
Received: from mailhost.anl.gov (mailhost.anl.gov [130.202.113.50]) by localhost.ctd.anl.gov (Postfix) with ESMTP id BC66C30 for <ietf-krb-wg@anl.gov>; Fri, 1 May 2009 16:57:10 -0500 (CDT)
Received: from mailrelay.anl.gov (mailrelay.anl.gov [130.202.101.22]) by mailhost.anl.gov (Postfix) with ESMTP id B735711 for <ietf-krb-wg@anl.gov>; Fri, 1 May 2009 16:57:10 -0500 (CDT)
Received: from localhost (localhost [127.0.0.1]) by localhost.it.anl.gov (Postfix) with ESMTP id 9E52F7CC0A9; Fri, 1 May 2009 16:57:10 -0500 (CDT)
Received: from mailrelay.anl.gov ([127.0.0.1]) by localhost (mailrelay.anl.gov [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 28439-01; Fri, 1 May 2009 16:57:10 -0500 (CDT)
Received: from mailgateway.anl.gov (mailgateway.anl.gov [130.202.101.28]) by mailrelay2.anl.gov (Postfix) with ESMTP id 7939F7CC067 for <ietf-krb-wg@anl.gov>; Fri, 1 May 2009 16:57:10 -0500 (CDT)
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AgUCAJQM+0kSBwdQkWdsb2JhbACWZgEBAQEJCwoHEQWoJIZ3iE2DfQWHdg
X-IronPort-AV: E=Sophos;i="4.40,280,1238994000"; d="scan'208";a="26572781"
Received: from biscayne-one-station.mit.edu ([18.7.7.80]) by mailgateway.anl.gov with ESMTP; 01 May 2009 16:57:10 -0500
Received: from outgoing.mit.edu (OUTGOING-AUTH.MIT.EDU [18.7.22.103]) by biscayne-one-station.mit.edu (8.13.6/8.9.2) with ESMTP id n41Lv8E7016034; Fri, 1 May 2009 17:57:08 -0400 (EDT)
Received: from cathode-dark-space.mit.edu (CATHODE-DARK-SPACE.MIT.EDU [18.18.1.96]) (authenticated bits=56) (User authenticated as tlyu@ATHENA.MIT.EDU) by outgoing.mit.edu (8.13.6/8.12.4) with ESMTP id n41Lv79D002484 (version=TLSv1/SSLv3 cipher=DHE-RSA-AES256-SHA bits=256 verify=NOT); Fri, 1 May 2009 17:57:08 -0400 (EDT)
Received: (from tlyu@localhost) by cathode-dark-space.mit.edu (8.12.9.20060308) id n41Lv7HG008434; Fri, 1 May 2009 17:57:07 -0400 (EDT)
To: Sam Hartman <hartmans-ietf@mit.edu>
References: <tsl63gl7ujg.fsf@mit.edu>
From: Tom Yu <tlyu@MIT.EDU>
Date: Fri, 01 May 2009 17:57:07 -0400
In-Reply-To: <tsl63gl7ujg.fsf@mit.edu> (Sam Hartman's message of "Thu, 30 Apr 2009 16:31:31 -0400")
Message-ID: <ldvljpg8p1o.fsf@cathode-dark-space.mit.edu>
Lines: 15
MIME-Version: 1.0
X-Scanned-By: MIMEDefang 2.42
X-Virus-Scanned: Debian amavisd-new at frigga.it.anl.gov
Cc: ietf-krb-wg@anl.gov
Subject: Re: [Ietf-krb-wg] CF2 test vectors for DES and 3DES
X-BeenThere: ietf-krb-wg@lists.anl.gov
X-Mailman-Version: 2.1.11
Precedence: list
List-Id: "This is a list for the IETF Kerberos Working Group. {WORLDPUB, EXTERNAL}" <ietf-krb-wg.lists.anl.gov>
List-Unsubscribe: <https://lists.anl.gov/mailman/options/ietf-krb-wg>, <mailto:ietf-krb-wg-request@lists.anl.gov?subject=unsubscribe>
List-Archive: <https://lists.anl.gov/pipermail/ietf-krb-wg>
List-Post: <mailto:ietf-krb-wg@lists.anl.gov>
List-Help: <mailto:ietf-krb-wg-request@lists.anl.gov?subject=help>
List-Subscribe: <https://lists.anl.gov/mailman/listinfo/ietf-krb-wg>, <mailto:ietf-krb-wg-request@lists.anl.gov?subject=subscribe>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Sender: ietf-krb-wg-bounces@lists.anl.gov
Errors-To: ietf-krb-wg-bounces@lists.anl.gov

Sam Hartman <hartmans-ietf@MIT.EDU> writes:

> Folks, there seems to be yet another inconsistency between RFC 3961
> and MIT regarding DES and presumably 3DES random2key operations.
>
> MIT assumes that DES random bit strings are 7 byte strings that are
> expanded with parity bits.  The RFC 3961 spec assumes that you take an
> eight byte string and do parity fix-up.

Actually, spec assumes both.  RFC 3961 says des-cbc-md5 uses
des_random_to_key, but des-cbc-md4 and des-cbc-crc use
copy-8-bytes-and-fix-parity.  It does say that the key generation seed
length is 8 bytes for all three, which is inconsistent with the use of
des_random_to_key (which takes 56 bits as input).  I suspect a
copy-and-paste error.
_______________________________________________
ietf-krb-wg mailing list
ietf-krb-wg@lists.anl.gov
https://lists.anl.gov/mailman/listinfo/ietf-krb-wg