Re: [openpgp] Fingerprints

ianG <iang@iang.org> Wed, 15 April 2015 22:58 UTC

Return-Path: <iang@iang.org>
X-Original-To: openpgp@ietfa.amsl.com
Delivered-To: openpgp@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 6982C1AC3D2 for <openpgp@ietfa.amsl.com>; Wed, 15 Apr 2015 15:58:30 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.3
X-Spam-Level:
X-Spam-Status: No, score=-1.3 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, J_CHICKENPOX_21=0.6] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id luQbb_OdVjhj for <openpgp@ietfa.amsl.com>; Wed, 15 Apr 2015 15:58:29 -0700 (PDT)
Received: from virulha.pair.com (virulha.pair.com [209.68.5.166]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4AF0F1AC3D1 for <openpgp@ietf.org>; Wed, 15 Apr 2015 15:58:29 -0700 (PDT)
Received: from tormenta.local (iang.org [209.197.106.187]) by virulha.pair.com (Postfix) with ESMTPSA id 37BFE6D750; Wed, 15 Apr 2015 18:58:28 -0400 (EDT)
Message-ID: <552EED12.7060100@iang.org>
Date: Wed, 15 Apr 2015 23:58:26 +0100
From: ianG <iang@iang.org>
User-Agent: Mozilla/5.0 (Macintosh; Intel Mac OS X 10.9; rv:31.0) Gecko/20100101 Thunderbird/31.6.0
MIME-Version: 1.0
To: openpgp@ietf.org
References: <CAMm+LwhbB+-MnGRBCvprgAGOuu+5CJ2rgod7EBGOQR5UNVrspQ@mail.gmail.com> <87y4m0ozlt.fsf@vigenere.g10code.de> <20150415135105.GJ3106@singpolyma-liberty> <FE2717DC-3950-4536-B83D-BD005D2F26A6@callas.org> <1429128262.1702.41.camel@scientia.net> <CAMm+LwhHkRNDUT9H9=RV-caqPiWpe9OBriR8pSsoA1PqKf6C-Q@mail.gmail.com> <1429131456.1702.51.camel@scientia.net> <552ED916.6010309@iang.org> <1429138292.1702.58.camel@scientia.net>
In-Reply-To: <1429138292.1702.58.camel@scientia.net>
Content-Type: text/plain; charset="windows-1252"; format="flowed"
Content-Transfer-Encoding: 7bit
Archived-At: <http://mailarchive.ietf.org/arch/msg/openpgp/06IGoX_uJBEi5WHxY17Q4iTtA60>
Subject: Re: [openpgp] Fingerprints
X-BeenThere: openpgp@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "Ongoing discussion of OpenPGP issues." <openpgp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/openpgp>, <mailto:openpgp-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/openpgp/>
List-Post: <mailto:openpgp@ietf.org>
List-Help: <mailto:openpgp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/openpgp>, <mailto:openpgp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 15 Apr 2015 22:58:30 -0000

On 15/04/2015 23:51 pm, Christoph Anton Mitterer wrote:
> On Wed, 2015-04-15 at 22:33 +0100, ianG wrote:
>> IP#s are one per person, approx.
> Well, looking at v6, it's actually gazillions of IPs per person ;-)
>
>>    We're trying to get away from one
>> algorithm per person, not encourage it ;)
> Okay than take another example... e.g. registered port numbers.


We can take multiple train engines if you like, or multiple mars rovers 
... all of these have reasons for being multiples, we need many of them, 
as many as we can afford.

We only ever need one fingerprint hash.  The reason we're forced to have 
more than one is because they wear out at a rate of one per decade.

So, as per PHB, 10 is like the maximum we'll ever see.  Even the one 
we've got isn't broken.  Hence, the smallest byte possible is all that 
is needed, and we still have plenty of room for expansion to two bytes.

Now, some might say computers don't care, and they'd be right if 
callous.  Fingerprints are for humans tho, and humans do care, and 
humans get all twisted up over the extra bytes.

For my humanity, even one byte of algorithm identification is one too 
many.  I'm quite happy to define the new fingerprint with unusual lengths.



iang