Re: [MLS] [interim_transcript_hash]

Richard Barnes <rlb@ipv.sx> Fri, 11 October 2019 13:54 UTC

Return-Path: <rlb@ipv.sx>
X-Original-To: mls@ietfa.amsl.com
Delivered-To: mls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 04B5E120073 for <mls@ietfa.amsl.com>; Fri, 11 Oct 2019 06:54:13 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.897
X-Spam-Level:
X-Spam-Status: No, score=-1.897 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_NONE=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=ipv-sx.20150623.gappssmtp.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2Jwz_gRLbJvr for <mls@ietfa.amsl.com>; Fri, 11 Oct 2019 06:54:11 -0700 (PDT)
Received: from mail-ot1-x32a.google.com (mail-ot1-x32a.google.com [IPv6:2607:f8b0:4864:20::32a]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4ECAF12003F for <mls@ietf.org>; Fri, 11 Oct 2019 06:54:11 -0700 (PDT)
Received: by mail-ot1-x32a.google.com with SMTP id 89so7987453oth.13 for <mls@ietf.org>; Fri, 11 Oct 2019 06:54:11 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ipv-sx.20150623.gappssmtp.com; s=20150623; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=eRfUIB25DmoGshmODLTYj0cqQfok3y6ABH3uDROBzvY=; b=KIs2yuHcPN8V7YNH3pf0NtPvIv2Za8mayIZVun8IIYhV9hyHypPogWVz/IGP1qfo6V ZzvgXuOB6X9Bm9qAH2zSyM5IpDl09R5V9G5lOT+7I+UOqdk6NSQ2I0lC0HawAN2Uo1x0 afbduXvHE2PY6zoMcP+bYOKpPc4x9vmUFl7YhL0C9BWvwD91fe+gmrLq2iz+9Tmf92Z9 7CdH1z2RJqshXx8lsq9MjZ6JEy5BdtbzZZlRSbsF9abYBEQc488WEB8T9IDnkYN13X1O Vdn6IUxx1KRRcN9dCf31iAV/USxByD82toi5lfcyjFlcwwNT8Rr8G0sTId9zx8Qfs5rH E5gA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=eRfUIB25DmoGshmODLTYj0cqQfok3y6ABH3uDROBzvY=; b=QFsl0lfqgb30xf1OkPUttEt8NqxnvTc0NBDaCnTEnA977CYK4d7NwU20fmkYfmSlSh 0+FOpBh/auzLuPwDjzkw7EnclGM0Dylkzi2s2OmCrMrs2Hsm/1QU2I/nPIiErsqdrNTu VoM6UDCs1oX5NzQiBVTiyZFn5Qd+i4Dvs8mdBlaLSh2Pp1tQ+8CzKdFmqB0wcewrFEYS pUxhpc7ETnjFkJ0a+siXlu7cxVwhDH8DAaeG7SGkXriffE0FSmYHYd/LmAANHIex7oCO jl/7RMiE8BCrLguZDZFx3D388q/LwRpahr1D9zHDNPMTIG2YiZeziZ0c1pxLYOvc67Vr IwmQ==
X-Gm-Message-State: APjAAAW0JDCH5p3NwRiJBND2RrnrVcMdEpnojSNvn5WCniNtxlxWYOXf xuijyyjqOg0S9y0o2hjVv5L6d58j/cPwySSKdf/2inuY
X-Google-Smtp-Source: APXvYqzefCuLEswnnz9MlTx9BAOzN3Oosq/huhC8rGsXD+9aFIew/JzkDhWtbyHBvxg6rWyYwOnto1w8zXXaIgeQoqM=
X-Received: by 2002:a9d:4613:: with SMTP id y19mr12109870ote.159.1570802050397; Fri, 11 Oct 2019 06:54:10 -0700 (PDT)
MIME-Version: 1.0
References: <CAPOUjt7K4_sCfnA5zjOBTSDaHZVrvG5mqLB-jZ14yMQMZe7Avw@mail.gmail.com>
In-Reply-To: <CAPOUjt7K4_sCfnA5zjOBTSDaHZVrvG5mqLB-jZ14yMQMZe7Avw@mail.gmail.com>
From: Richard Barnes <rlb@ipv.sx>
Date: Fri, 11 Oct 2019 09:53:59 -0400
Message-ID: <CAL02cgTEdnjbg5c4psAgOCgJ_hBxrYmgCxJ5xoJjSJW7vVgO-Q@mail.gmail.com>
To: Pascal Junod <pascalj=40snap.com@dmarc.ietf.org>
Cc: Messaging Layer Security WG <mls@ietf.org>
Content-Type: multipart/alternative; boundary="0000000000003a0b550594a2daae"
Archived-At: <https://mailarchive.ietf.org/arch/msg/mls/GADOzbD8Y6GFy2pRbVBnKDFqZes>
Subject: Re: [MLS] [interim_transcript_hash]
X-BeenThere: mls@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Messaging Layer Security <mls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/mls>, <mailto:mls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/mls/>
List-Post: <mailto:mls@ietf.org>
List-Help: <mailto:mls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/mls>, <mailto:mls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 11 Oct 2019 13:54:13 -0000

Because if you did that, then you would have a circular dependency:

interim_transcript_hash
<= MLSPlaintext.confirmation
<= confirmation_key
<= GroupContext (via DeriveSecret)
<= interim_transcript_hash

This was a problem in earlier versions!

On Thu, Oct 10, 2019 at 10:02 Pascal Junod <pascalj=
40snap.com@dmarc.ietf.org> wrote:

> Hi !
>
> Just wondering whether there is a reason why the interim_transcript_hash
> value (necessary to build Welcome messages) value is not contained into
> the GroupContext structure.
>
> Best,
>
> Pascal
> _______________________________________________
> MLS mailing list
> MLS@ietf.org
> https://www.ietf.org/mailman/listinfo/mls
>