Re: [Lake] Call for adoption of draft-selander-lake-traces

John Mattsson <john.mattsson@ericsson.com> Mon, 25 October 2021 19:08 UTC

Return-Path: <john.mattsson@ericsson.com>
X-Original-To: lake@ietfa.amsl.com
Delivered-To: lake@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D80E93A12E6 for <lake@ietfa.amsl.com>; Mon, 25 Oct 2021 12:08:34 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.101
X-Spam-Level:
X-Spam-Status: No, score=-2.101 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=ericsson.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Jq4b6i1pzGUn for <lake@ietfa.amsl.com>; Mon, 25 Oct 2021 12:08:29 -0700 (PDT)
Received: from EUR04-HE1-obe.outbound.protection.outlook.com (mail-eopbgr70072.outbound.protection.outlook.com [40.107.7.72]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2E9B73A1445 for <lake@ietf.org>; Mon, 25 Oct 2021 12:04:34 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=dHksu6RLnqjUn121ZYpLVpuYuyMOcIDetbsfILAAhlk4GYf1B5jEmUshWfatEzRGoDTwXhAlwSXBdCxSJm5iE5t8mNm3G+IRCsTkn08xjtT4t4mcR1lTFQ2wyGy4fsvtXwN2VG3GLqA66E6SsE6s6vpDP7NGq7ZkNOsZC9JJ2C/HNbLZq1i6HtygNYoRSHyr6uND3sYJoaN8B37aVOKIBzPAwW8Z47JLqfx2WtGsZWrdTbojmmgXO5Ij1OId5EiTjhLKKw39ePUbES3DQ6prUPgHhd1fSrkEdyXe3I/8XqAgshhpYTT2nXJVh5ZCn2cHE6phLxCc1DHalvNTnwXVVQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=eyDKlQ4gy/fSF0gn6WlmGqLmZKCW3qvBjcPtcNrI0A4=; b=UmRXeiVWw0sETZSSdGQh6pp2aNw6fNMe10wvMc6aAlmsjzIA7XuDvQpLVy9yIPXocQVZt60JPK2gFExxbKC+0XLJRgFg3FDohysDE/NL+n0tDej4uvUCHa1cInmQlvdctrL0OBy9Wxx00BB3LGTx5AjlJd7De28RuE91xQ/pJV9Lm7e7hLY+hAJfpPQ3SSY6JRD5rDHHswvasGJJXG9ZL54kk5scwYfnh2QioyM6Jl5EX86d0ypEkXqPGSD5pJL9GFXUXpsjiFodQJJlddomJbFS2qPZ9IyeBgcFDQOyoXltWPofZ1teeUqsLUu2o173W5Z5lk3aqZBQTdjoBQ7+VA==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=eyDKlQ4gy/fSF0gn6WlmGqLmZKCW3qvBjcPtcNrI0A4=; b=Vp6tw+QTEcxHLFHJvlei4bchbQemyfuaupSzmPglUWpnUO3wK1bRQIHMkgN16ueu+arBl1MRvca9ZKACQaY5QBKSd/pjM3ijVosyrX6Jw9lOCWRJhYfQKOcME0oUKfm36du0W9bPlfaD50ncSeCtCohrDiYgrfGSpcKT+e5u87c=
Received: from HE1PR0701MB3050.eurprd07.prod.outlook.com (2603:10a6:3:4b::8) by HE1PR0701MB2090.eurprd07.prod.outlook.com (2603:10a6:3:2b::22) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.4649.12; Mon, 25 Oct 2021 19:04:31 +0000
Received: from HE1PR0701MB3050.eurprd07.prod.outlook.com ([fe80::d012:63e4:344b:a81b]) by HE1PR0701MB3050.eurprd07.prod.outlook.com ([fe80::d012:63e4:344b:a81b%8]) with mapi id 15.20.4649.013; Mon, 25 Oct 2021 19:04:31 +0000
From: John Mattsson <john.mattsson@ericsson.com>
To: Marco Tiloca <marco.tiloca=40ri.se@dmarc.ietf.org>, Mališa Vučinić <malisa.vucinic@inria.fr>, "lake@ietf.org" <lake@ietf.org>
Thread-Topic: [Lake] Call for adoption of draft-selander-lake-traces
Thread-Index: AQHXxA5Si7Z1+Ztq0ki133M0sqCLp6vdeYgAgAakK/8=
Date: Mon, 25 Oct 2021 19:04:31 +0000
Message-ID: <HE1PR0701MB30504C3D57A339F626166FAD89839@HE1PR0701MB3050.eurprd07.prod.outlook.com>
References: <F60A5766-1249-4BA2-B6F9-5F7169187B14@inria.fr> <526c7505-f85f-58c5-1088-4193a248d833@ri.se>
In-Reply-To: <526c7505-f85f-58c5-1088-4193a248d833@ri.se>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=ericsson.com;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 93ed09ee-85ab-4f01-dad6-08d997ea46a0
x-ms-traffictypediagnostic: HE1PR0701MB2090:
x-microsoft-antispam-prvs: <HE1PR0701MB2090521140B62786BB22608B89839@HE1PR0701MB2090.eurprd07.prod.outlook.com>
x-ms-oob-tlc-oobclassifiers: OLM:9508;
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:HE1PR0701MB3050.eurprd07.prod.outlook.com; PTR:; CAT:NONE; SFS:(4636009)(366004)(52536014)(38070700005)(38100700002)(44832011)(508600001)(86362001)(9686003)(166002)(6506007)(64756008)(5660300002)(33656002)(8676002)(110136005)(122000001)(4001150100001)(316002)(82960400001)(186003)(55016002)(76116006)(83380400001)(66446008)(66946007)(26005)(7696005)(66556008)(966005)(8936002)(53546011)(71200400001)(2906002)(66476007); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_HE1PR0701MB30504C3D57A339F626166FAD89839HE1PR0701MB3050_"
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: HE1PR0701MB3050.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 93ed09ee-85ab-4f01-dad6-08d997ea46a0
X-MS-Exchange-CrossTenant-originalarrivaltime: 25 Oct 2021 19:04:31.1304 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: ZKIE6wFF/vmf9coisxSg+CexOmbXxkEDP3zE4HrwtLsEvme7TKD5K2eTPkr9PedfyBI+dmk6JUAAV7RO1+yzR7iuoycFKcqoZ/edEi8XGZg=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: HE1PR0701MB2090
Archived-At: <https://mailarchive.ietf.org/arch/msg/lake/93CH2XTZ3WuGX8qojfnZeJSebYI>
Subject: Re: [Lake] Call for adoption of draft-selander-lake-traces
X-BeenThere: lake@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Lightweight Authenticated Key Exchange <lake.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/lake>, <mailto:lake-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/lake/>
List-Post: <mailto:lake@ietf.org>
List-Help: <mailto:lake-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/lake>, <mailto:lake-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 25 Oct 2021 19:08:39 -0000

Hi,

- I support adoption.

- I think it should be published as an RFC

- Regarding the scope. I think the scope should be narrow. My view is that the goal with the traces document is to increase understanding compared to the undocumented test vectors in https://github.com/lake-wg/edhoc/tree/master/test-vectors-11
Any additional test vectors can be provided in an undocumented JSON format. I agree with earlier comments that an ECDSA cipher suite should definitly be included. I think the ECDSA cipher suite should replace one of the current EdDSA traces. I don't really see that a third trace increases understanding very much, but I do not have a strong opinion. My suggestion would be two traces
     1. method 3 (static DH - static DH) with cipher suite 0
     2. method 0 (signature - signature) with cipher suite 2 or 3

Cheers,
John

From: Lake <lake-bounces@ietf.org> on behalf of Marco Tiloca <marco.tiloca=40ri.se@dmarc.ietf.org>
Date: Thursday, 21 October 2021 at 15:38
To: Mališa Vučinić <malisa.vucinic@inria.fr>, lake@ietf.org <lake@ietf.org>
Subject: Re: [Lake] Call for adoption of draft-selander-lake-traces
Hi all,

I support adoption of this document, that I have personally found useful
through the implementation/testing process.

I believe that publication as RFC is appropriate too. This would be
analogous to RFC8448.

The current level of details in the traces looks actually good to me. I
think additional traces should include cipher suite 2 (both with
authentication method 0 and 3). This would make the document useful also
for implementations supporting only cipher suite 2, which is admitted
for constrained endpoints.

Best,
/Marco

On 2021-10-18 12:52, Mališa Vučinić wrote:
> Dear all,
>
> As discussed during the IETF-111 meeting and the last interim, this email triggers a 2-week call for adoption of draft-selander-lake-traces-01. The draft contains the EDHOC test vectors, previously part of draft-ietf-lake-edhoc.
>
> We are seeking the working group input on the following points:
> - Whether draft-selander-lake-traces should be adopted as a working group item, and if yes:
> - Whether this draft should be published as an RFC
> - What should be the scope of the document? The current version of the draft covers authentication methods 0 (signature - signature) and 3 (static DH - static DH). Should the draft cover additional methods and / or additional intermediary values? Anything else deemed useful from the implementers point of view?
>
> Please provide your comments by November 1st, 2021.
>
> Mališa and Stephen

--
Marco Tiloca
Ph.D., Senior Researcher

Division: Digital System
Department: Computer Science
Unit: Cybersecurity

RISE Research Institutes of Sweden
https://protect2.fireeye.com/v1/url?k=3da572a9-623e4b95-3da53232-86b1886cfa64-0ab0da9f4cdc4e12&q=1&e=bb32162f-d970-495a-8ea5-4133e01804dc&u=https%3A%2F%2Fwww.ri.se%2F

Phone: +46 (0)70 60 46 501
Isafjordsgatan 22 / Kistagången 16
SE-164 40 Kista (Sweden)