Re: [Ietf-krb-wg] Camellia-CTS for Kerberos

Love Hörnquist Åstrand <lha@apple.com> Sun, 21 February 2010 04:17 UTC

Return-Path: <ietf-krb-wg-bounces@lists.anl.gov>
X-Original-To: ietfarch-krb-wg-archive@core3.amsl.com
Delivered-To: ietfarch-krb-wg-archive@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id 8130F28C0CF for <ietfarch-krb-wg-archive@core3.amsl.com>; Sat, 20 Feb 2010 20:17:43 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -106.299
X-Spam-Level:
X-Spam-Status: No, score=-106.299 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, MIME_8BIT_HEADER=0.3, RCVD_IN_DNSWL_MED=-4, USER_IN_WHITELIST=-100]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id YM3ungXpgYFU for <ietfarch-krb-wg-archive@core3.amsl.com>; Sat, 20 Feb 2010 20:17:42 -0800 (PST)
Received: from mailhost.anl.gov (mailhost.anl.gov [130.202.113.50]) by core3.amsl.com (Postfix) with ESMTP id 4A3743A7F41 for <krb-wg-archive@lists.ietf.org>; Sat, 20 Feb 2010 20:17:42 -0800 (PST)
Received: from mailhost.anl.gov (mailhost.anl.gov [130.202.113.50]) by localhost.anl.gov (Postfix) with ESMTP id 35A3E28; Sat, 20 Feb 2010 22:19:35 -0600 (CST)
Received: from lists.anl.gov (katydid.it.anl.gov [146.137.96.32]) by mailhost.anl.gov (Postfix) with ESMTP id 5484112; Sat, 20 Feb 2010 22:19:30 -0600 (CST)
Received: from katydid.it.anl.gov (localhost [127.0.0.1]) by lists.anl.gov (Postfix) with ESMTP id 1B8AA80E45; Sat, 20 Feb 2010 22:19:30 -0600 (CST)
X-Original-To: ietf-krb-wg@lists.anl.gov
Delivered-To: ietf-krb-wg@lists.anl.gov
Received: from mailrelay.anl.gov (mailrelay.anl.gov [130.202.101.22]) by lists.anl.gov (Postfix) with ESMTP id 4537A80E31 for <ietf-krb-wg@lists.anl.gov>; Sat, 20 Feb 2010 22:19:28 -0600 (CST)
Received: from localhost (localhost [127.0.0.1]) by localhost.it.anl.gov (Postfix) with ESMTP id 257427CC076; Sat, 20 Feb 2010 22:19:28 -0600 (CST)
Received: from mailrelay.anl.gov ([127.0.0.1]) by localhost (mailrelay.anl.gov [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 07054-08; Sat, 20 Feb 2010 22:19:28 -0600 (CST)
Received: from mailgateway.anl.gov (mailgateway.anl.gov [130.202.101.28]) by mailrelay.anl.gov (Postfix) with ESMTP id 0A7887CC059 for <ietf-krb-wg@lists.anl.gov>; Sat, 20 Feb 2010 22:19:28 -0600 (CST)
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: AvMAANFCgEsR/g0XkWdsb2JhbACbFRUBAQEBCQsKBxMFHbpphGsEgxWCfQ
X-IronPort-AV: E=Sophos;i="4.49,511,1262584800"; d="scan'208";a="37704952"
Received: from mail-out4.apple.com ([17.254.13.23]) by mailgateway.anl.gov with ESMTP; 20 Feb 2010 22:19:27 -0600
Received: from relay13.apple.com (relay13.apple.com [17.128.113.29]) by mail-out4.apple.com (Postfix) with ESMTP id 4404F8D4BB60 for <ietf-krb-wg@lists.anl.gov>; Sat, 20 Feb 2010 20:19:27 -0800 (PST)
X-AuditID: 1180711d-b7b18ae000001001-37-4b80b44f3026
Received: from et.apple.com (et.apple.com [17.151.62.12]) by relay13.apple.com (Apple SCV relay) with SMTP id 03.41.04097.F44B08B4; Sat, 20 Feb 2010 20:19:27 -0800 (PST)
MIME-version: 1.0
Received: from [192.168.1.101] (adsl-71-158-241-78.dsl.pltn13.sbcglobal.net [71.158.241.78]) by et.apple.com (Sun Java(tm) System Messaging Server 6.3-7.04 (built Sep 26 2008; 32bit)) with ESMTPSA id <0KY6005SZC0EK080@et.apple.com> for ietf-krb-wg@lists.anl.gov; Sat, 20 Feb 2010 20:19:27 -0800 (PST)
From: Love Hörnquist Åstrand <lha@apple.com>
In-reply-to: <4B7D286D.3000203@po.ntts.co.jp>
Date: Sat, 20 Feb 2010 20:19:26 -0800
Message-id: <0199AD85-2E1D-4A93-9992-02D7B14541A2@apple.com>
References: <4B7D286D.3000203@po.ntts.co.jp>
To: Satoru Kanno <kanno.satoru@po.ntts.co.jp>
X-Mailer: Apple Mail (2.1137)
X-Brightmail-Tracker: AAAAAQAAAZE=
X-Virus-Scanned: Debian amavisd-new at frigga.it.anl.gov
Cc: ietf-krb-wg@lists.anl.gov, kanda.masayuki@lab.ntt.co.jp
Subject: Re: [Ietf-krb-wg] Camellia-CTS for Kerberos
X-BeenThere: ietf-krb-wg@lists.anl.gov
X-Mailman-Version: 2.1.13
Precedence: list
List-Id: "This is a list for the IETF Kerberos Working Group. {WORLDPUB, EXTERNAL}" <ietf-krb-wg.lists.anl.gov>
List-Unsubscribe: <https://lists.anl.gov/mailman/options/ietf-krb-wg>, <mailto:ietf-krb-wg-request@lists.anl.gov?subject=unsubscribe>
List-Archive: <https://lists.anl.gov/pipermail/ietf-krb-wg>
List-Post: <mailto:ietf-krb-wg@lists.anl.gov>
List-Help: <mailto:ietf-krb-wg-request@lists.anl.gov?subject=help>
List-Subscribe: <https://lists.anl.gov/mailman/listinfo/ietf-krb-wg>, <mailto:ietf-krb-wg-request@lists.anl.gov?subject=subscribe>
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: 7bit
Sender: ietf-krb-wg-bounces@lists.anl.gov
Errors-To: ietf-krb-wg-bounces@lists.anl.gov

Satoru,

   To generate an encryption key from a pass phrase and salt string, the
   Camellia uses the PBKDF2 function from PKCS #5 v2.0 [RFC2898].  This
   function of Camellia can define as same specification of AES
   [RFC3962]

   The pseudorandom function used by PBKDF2 will be a SHA-1 HMAC of the
   passphrase and salt.  The case of AES described in Appendix B of
   [RFC3962].  For pseudorandom function, Camellia can use like an AES.

The second sentence is not very clear, and can partly be dropped.

I assume you are using PBKDF2-HMAC-SHA1, using the same way as used in AES.

The pseudeo-random function (PRF) is the same as AES, except that camelia is used instead of AES.

I'm not going to worry about that AES and camellia uses the the same key, maybe its a feature ?

Love



18 feb 2010 kl. 03:45 skrev Satoru Kanno:

> Dear Kerberos-WG,
> 
> This draft is a collaborative effort between NTT and the MIT-KC
> to address the use of Kerberos with the Camellia cipher using CTS mode.
> A forthcoming separate draft will address the use of Camellia in GCM mode.
> 
> We request a time-slot for presenting this work at the coming IETF-77 in
> March 2010.
> 
> This draft appears with the following URL.
> URL: http://www.ietf.org/id/draft-krb-wg-kanno-camellia-00.txt
> 
> Best regards,
> 
> -- 
> Satoru Kanno
> 
> Security Business Unit
> Mobile and Security Solution Business Group
> NTT Software Corporation
> 
> e-mail: kanno.satoru@po.ntts.co.jp
> 
> _______________________________________________
> ietf-krb-wg mailing list
> ietf-krb-wg@lists.anl.gov
> https://lists.anl.gov/mailman/listinfo/ietf-krb-wg

_______________________________________________
ietf-krb-wg mailing list
ietf-krb-wg@lists.anl.gov
https://lists.anl.gov/mailman/listinfo/ietf-krb-wg