Re: NIST publishes new DSA draft

Werner Koch <wk@gnupg.org> Wed, 15 March 2006 11:57 UTC

Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1FJUdG-0007fm-NH for openpgp-archive@lists.ietf.org; Wed, 15 Mar 2006 06:57:38 -0500
Received: from balder-227.proper.com ([192.245.12.227]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1FJUdF-0006Yk-CH for openpgp-archive@lists.ietf.org; Wed, 15 Mar 2006 06:57:38 -0500
Received: from balder-227.proper.com (localhost [127.0.0.1]) by balder-227.proper.com (8.13.5/8.13.5) with ESMTP id k2FBWmAD044550; Wed, 15 Mar 2006 04:32:48 -0700 (MST) (envelope-from owner-ietf-openpgp@mail.imc.org)
Received: (from majordom@localhost) by balder-227.proper.com (8.13.5/8.13.5/Submit) id k2FBWmA4044543; Wed, 15 Mar 2006 04:32:48 -0700 (MST) (envelope-from owner-ietf-openpgp@mail.imc.org)
X-Authentication-Warning: balder-227.proper.com: majordom set sender to owner-ietf-openpgp@mail.imc.org using -f
Received: from kerckhoffs.g10code.com (kerckhoffs.g10code.com [217.69.77.222]) by balder-227.proper.com (8.13.5/8.13.5) with ESMTP id k2FBWkli044514 for <ietf-openpgp@imc.org>; Wed, 15 Mar 2006 04:32:47 -0700 (MST) (envelope-from wk@gnupg.org)
Received: from uucp by kerckhoffs.g10code.com with local-rmail (Exim 4.50 #1 (Debian)) id 1FJUNH-0003ZD-Sd for <ietf-openpgp@imc.org>; Wed, 15 Mar 2006 12:41:07 +0100
Received: from wk by localhost with local (Exim 4.34 #1 (Debian)) id 1FJUBu-0008Tj-22; Wed, 15 Mar 2006 12:29:22 +0100
From: Werner Koch <wk@gnupg.org>
To: iang@systemics.com
Cc: ietf-openpgp@imc.org
Subject: Re: NIST publishes new DSA draft
References: <20060314233108.1B3AF57FB0@finney.org> <61223.84.131.251.69.1142414950.squirrel@webmail2.pair.com>
Organisation: g10 Code GmbH
OpenPGP: id=5B0358A2; url=finger:wk@g10code.com
Date: Wed, 15 Mar 2006 12:29:21 +0100
In-Reply-To: <61223.84.131.251.69.1142414950.squirrel@webmail2.pair.com> (Ian Grigg's message of "Wed, 15 Mar 2006 04:29:10 -0500 (EST)")
Message-ID: <87fylk6j5a.fsf@wheatstone.g10code.de>
User-Agent: Gnus/5.110004 (No Gnus v0.4) Emacs/21.4 (gnu/linux)
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Sender: owner-ietf-openpgp@mail.imc.org
Precedence: bulk
List-Archive: <http://www.imc.org/ietf-openpgp/mail-archive/>
List-Unsubscribe: <mailto:ietf-openpgp-request@imc.org?body=unsubscribe>
List-ID: <ietf-openpgp.imc.org>
X-Spam-Score: 0.0 (/)
X-Scan-Signature: 7d33c50f3756db14428398e2bdedd581

On Wed, 15 Mar 2006 04:29:10 -0500 (EST), Ian Grigg said:

> Yes, it's a concern.  FTR, I agree with Hal that
> we should seriously consider taking the draft out
> of last call (dammit!) ... hopefully it won't take

I agree. 

However, SHA-256 should not be a MUST but a SHOULD.  Otherwise many
OpenPGP applications won't be compliant anymore.  In particular
applications on small devices may only support the MUST algorithms.

A remark that this SHOULD will be changed to a MUST algorithm in the
future will help to explain that we really want SHA-256.


Salam-Shalom,

   Werner