Re: [Ietf-krb-wg] CF2 test vectors for DES and 3DES

Sam Hartman <hartmans-ietf@mit.edu> Fri, 01 May 2009 08:41 UTC

Return-Path: <ietf-krb-wg-bounces@lists.anl.gov>
X-Original-To: ietfarch-krb-wg-archive@core3.amsl.com
Delivered-To: ietfarch-krb-wg-archive@core3.amsl.com
Received: from localhost (localhost [127.0.0.1]) by core3.amsl.com (Postfix) with ESMTP id B9E873A7010 for <ietfarch-krb-wg-archive@core3.amsl.com>; Fri, 1 May 2009 01:41:54 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.996
X-Spam-Level:
X-Spam-Status: No, score=-1.996 tagged_above=-999 required=5 tests=[AWL=-0.297, BAYES_00=-2.599, J_CHICKENPOX_74=0.6, MIME_8BIT_HEADER=0.3]
Received: from mail.ietf.org ([64.170.98.32]) by localhost (core3.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id aYFwtVn0TMOc for <ietfarch-krb-wg-archive@core3.amsl.com>; Fri, 1 May 2009 01:41:53 -0700 (PDT)
Received: from mailhost.anl.gov (mailhost.anl.gov [130.202.113.50]) by core3.amsl.com (Postfix) with ESMTP id C5C993A700F for <krb-wg-archive@lists.ietf.org>; Fri, 1 May 2009 01:41:53 -0700 (PDT)
Received: from mailhost.anl.gov (mailhost.anl.gov [130.202.113.50]) by localhost.ctd.anl.gov (Postfix) with ESMTP id 68F7436; Fri, 1 May 2009 03:43:17 -0500 (CDT)
Received: from lists.anl.gov (katydid.it.anl.gov [146.137.96.32]) by mailhost.anl.gov (Postfix) with ESMTP id 8EF6E11; Fri, 1 May 2009 03:43:14 -0500 (CDT)
Received: from katydid.it.anl.gov (localhost [127.0.0.1]) by lists.anl.gov (Postfix) with ESMTP id 8EC5880DFD; Fri, 1 May 2009 03:43:14 -0500 (CDT)
X-Original-To: ietf-krb-wg@lists.anl.gov
Delivered-To: ietf-krb-wg@lists.anl.gov
Received: from mailhost.anl.gov (mailhost.anl.gov [130.202.113.50]) by lists.anl.gov (Postfix) with ESMTP id 4C5F880DF1 for <ietf-krb-wg@lists.anl.gov>; Fri, 1 May 2009 03:43:12 -0500 (CDT)
Received: by mailhost.anl.gov (Postfix) id 3D89511; Fri, 1 May 2009 03:43:12 -0500 (CDT)
Delivered-To: ietf-krb-wg@anl.gov
Received: from mailhost.anl.gov (mailhost.anl.gov [130.202.113.50]) by localhost.ctd.anl.gov (Postfix) with ESMTP id 38D3C1D for <ietf-krb-wg@anl.gov>; Fri, 1 May 2009 03:43:12 -0500 (CDT)
Received: from mailrelay.anl.gov (mailrelay.anl.gov [130.202.101.22]) by mailhost.anl.gov (Postfix) with ESMTP id 343B611 for <ietf-krb-wg@anl.gov>; Fri, 1 May 2009 03:43:12 -0500 (CDT)
Received: from localhost (localhost [127.0.0.1]) by localhost.it.anl.gov (Postfix) with ESMTP id 16F767CC098; Fri, 1 May 2009 03:43:12 -0500 (CDT)
Received: from mailrelay.anl.gov ([127.0.0.1]) by localhost (mailrelay.anl.gov [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 26626-07; Fri, 1 May 2009 03:43:12 -0500 (CDT)
Received: from mailgateway.anl.gov (mailgateway.anl.gov [130.202.101.28]) by mailrelay2.anl.gov (Postfix) with ESMTP id ECF287CC075 for <ietf-krb-wg@anl.gov>; Fri, 1 May 2009 03:43:11 -0500 (CDT)
X-IronPort-Anti-Spam-Filtered: true
X-IronPort-Anti-Spam-Result: ApoEAGxT+klFGcSy/2dsb2JhbADAEYdaiE2DfwU
X-IronPort-AV: E=Sophos;i="4.40,277,1238994000"; d="scan'208";a="26539240"
Received: from carter-zimmerman.suchdamage.org ([69.25.196.178]) by mailgateway.anl.gov with ESMTP; 01 May 2009 03:43:11 -0500
Received: by carter-zimmerman.suchdamage.org (Postfix, from userid 8042) id 9D060415B; Fri, 1 May 2009 04:43:06 -0400 (EDT)
To: Love Hörnquist Åstrand <lha@apple.com>
References: <tsl63gl7ujg.fsf@mit.edu> <361B75F7-C6F7-4955-85E8-080FEA051DB2@apple.com>
From: Sam Hartman <hartmans-ietf@mit.edu>
Date: Fri, 01 May 2009 04:43:06 -0400
In-Reply-To: <361B75F7-C6F7-4955-85E8-080FEA051DB2@apple.com> ("Love Hörnquist Åstrand"'s message of "Thu\, 30 Apr 2009 20\:37\:31 -0700")
Message-ID: <tsleiv95i3p.fsf@mit.edu>
User-Agent: Gnus/5.11 (Gnus v5.11) Emacs/22.2 (gnu/linux)
MIME-Version: 1.0
X-Virus-Scanned: Debian amavisd-new at frigga.it.anl.gov
Cc: ietf-krb-wg@anl.gov, Sam Hartman <hartmans-ietf@mit.edu>
Subject: Re: [Ietf-krb-wg] CF2 test vectors for DES and 3DES
X-BeenThere: ietf-krb-wg@lists.anl.gov
X-Mailman-Version: 2.1.11
Precedence: list
List-Id: "This is a list for the IETF Kerberos Working Group. {WORLDPUB, EXTERNAL}" <ietf-krb-wg.lists.anl.gov>
List-Unsubscribe: <https://lists.anl.gov/mailman/options/ietf-krb-wg>, <mailto:ietf-krb-wg-request@lists.anl.gov?subject=unsubscribe>
List-Archive: <https://lists.anl.gov/pipermail/ietf-krb-wg>
List-Post: <mailto:ietf-krb-wg@lists.anl.gov>
List-Help: <mailto:ietf-krb-wg-request@lists.anl.gov?subject=help>
List-Subscribe: <https://lists.anl.gov/mailman/listinfo/ietf-krb-wg>, <mailto:ietf-krb-wg-request@lists.anl.gov?subject=subscribe>
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
Sender: ietf-krb-wg-bounces@lists.anl.gov
Errors-To: ietf-krb-wg-bounces@lists.anl.gov

>>>>> "Love" == Love Hörnquist Åstrand <lha@apple.com> writes:

    Love> 30 apr 2009 kl. 13:31 skrev Sam Hartman:

    >> I suspec Heimdal does the same thing as MIT here because we
    >> seem to interoperate for PKINIT and this issue comes up there
    >> too.

    Love> I don't think most people use DES with PK-INIT.

    Love> In heimdal DES3 does what you describe (uses 3 * 8), DES
    Love> doesn't (uses 8 bytes).

I thought we had tested DES for pkinit--guess not.

So, if I'm understanding this correctly, unless one of us does
something special,then we will not interoperate for CF2 for DES
enctypes because of this issue, right?  If so, sounds like MIT should
be the one to change because we're the one not following the spec.

--Sam
_______________________________________________
ietf-krb-wg mailing list
ietf-krb-wg@lists.anl.gov
https://lists.anl.gov/mailman/listinfo/ietf-krb-wg