Re: [openpgp] Deprecating compression support

Andre Heinecke <aheinecke@gnupg.org> Tue, 19 March 2019 23:47 UTC

Return-Path: <aheinecke@gnupg.org>
X-Original-To: openpgp@ietfa.amsl.com
Delivered-To: openpgp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 90C3913128B for <openpgp@ietfa.amsl.com>; Tue, 19 Mar 2019 16:47:30 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.234
X-Spam-Level:
X-Spam-Status: No, score=-1.234 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, SPF_SOFTFAIL=0.665, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id NYBpXdaiCcEq for <openpgp@ietfa.amsl.com>; Tue, 19 Mar 2019 16:47:28 -0700 (PDT)
Received: from mail.heinecke.or.at (mail.heinecke.or.at [159.69.149.236]) by ietfa.amsl.com (Postfix) with ESMTP id AF2611311C0 for <openpgp@ietf.org>; Tue, 19 Mar 2019 16:47:28 -0700 (PDT)
Received: from localhost (localhost [127.0.0.1]) by mail.heinecke.or.at (Postfix) with ESMTP id DD1693ED45; Wed, 20 Mar 2019 00:47:27 +0100 (CET)
Received: from mail.heinecke.or.at ([127.0.0.1]) by localhost (mail.heinecke.or.at [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 5hBPZMgwG7_P; Wed, 20 Mar 2019 00:47:26 +0100 (CET)
Received: from esus.localnet (193-80-87-252.hdsl.highway.telekom.at [193.80.87.252]) (Authenticated sender: andre@heinecke.or.at) by mail.heinecke.or.at (Postfix) with ESMTPSA id 18FC13E8A9; Wed, 20 Mar 2019 00:47:26 +0100 (CET)
From: Andre Heinecke <aheinecke@gnupg.org>
To: openpgp@ietf.org
Cc: Justus Winter <justuswinter@gmail.com>
Date: Wed, 20 Mar 2019 00:47:25 +0100
Message-ID: <2301148.obROdnegVN@esus>
In-Reply-To: <871s3475dy.fsf@europa.jade-hamburg.de>
References: <871s3475dy.fsf@europa.jade-hamburg.de>
MIME-Version: 1.0
Content-Type: multipart/signed; boundary="nextPart6266008.WZM8d6r4oB"; micalg="pgp-sha256"; protocol="application/pgp-signature"
Archived-At: <https://mailarchive.ietf.org/arch/msg/openpgp/G3ePsoFfw6T4DGl7EV0MTeifE4c>
Subject: Re: [openpgp] Deprecating compression support
X-BeenThere: openpgp@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Ongoing discussion of OpenPGP issues." <openpgp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/openpgp>, <mailto:openpgp-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/openpgp/>
List-Post: <mailto:openpgp@ietf.org>
List-Help: <mailto:openpgp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/openpgp>, <mailto:openpgp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 19 Mar 2019 23:47:33 -0000

Hi,

On Monday 18 March 2019 13:07:21 CET Justus Winter wrote:
> Hello,

Hello to you, too. Here is a parable:

Kleopatra goes into a Bar:
Kleo (linux): Hey look how small my archives are now using LZMA!!
Kleo (win): Uhm LZMA is that a disease? I don't know it!
KMail (linux): Ha, I have KArchive. K7Zip is the Best!
GpgOl (win): Uhm 7zip, does that mean that I have to unzip it seven times?
KMail (linux): No stupid, you just have to get your user to install additional 
software.
GpgOL (win): Awww. shucks. I thought we were user friendly nowadays.
GpgOL (win): Haha! But now!  I have winrar.
Kleo (linux): What? Winrar? "Win" and rar? go @!ยง13 yoursellf.
KMail (linux): Yeah KArchive can handle that.. *sunglasses*
Enigmail (win): Eh, guys I'm a crypto plugin, what are you talking about? I 	
			can no longer decrypt your messages! What are you doing?!!
Kleo (win): I can do ZIP! (Imagine Ralph Wiggum)

And even in this scenario how would they even communicate which compression 
algos are used. Because it is _not standartized_
OpenPGP has been around for ages. Software relies on the pecularities of it.
If I would have to design a cryptographic message format from scratch I 
probably also would not include compression in there.

But the existing software relies on that. We are not designing a new standard. 
We are designing an improvement on RFC4880.

I don't want to rewrite major parts of KMail / GpgOL / Kleopatra with some 
weird unstandartized custom compression stuff. It's a part of OpenPGP. IMO it's 
a good part.

It's nice that you guys have new ideas but we have literally millions and 
possibly billions of users already and we have to be f'''ing rock solid in our 
implementations and in our standards.


Best Regards,
Andre
-- 
GnuPG.com - a brand of g10 Code, the GnuPG experts.

g10 Code GmbH, Erkrath/Germany, AG Wuppertal HRB14459
GF Werner Koch, USt-Id DE215605608, www.g10code.com.