Re: [openpgp] Request on Adding ChaCha20-Poly1305 to the OpenPGP Standardization

Werner Koch <> Thu, 16 April 2020 05:10 UTC

Return-Path: <>
Received: from localhost (localhost []) by (Postfix) with ESMTP id F20A23A0DE0 for <>; Wed, 15 Apr 2020 22:10:14 -0700 (PDT)
X-Virus-Scanned: amavisd-new at
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: (amavisd-new); dkim=pass (1024-bit key)
Received: from ([]) by localhost ( []) (amavisd-new, port 10024) with ESMTP id CwQRM8MSOQCy for <>; Wed, 15 Apr 2020 22:10:11 -0700 (PDT)
Received: from ( [IPv6:2001:aa8:fff1:100::22]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by (Postfix) with ESMTPS id 94E663A0DDF for <>; Wed, 15 Apr 2020 22:10:11 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed;; s=20181017; h=Content-Type:MIME-Version:Message-ID:In-Reply-To:Date: References:Subject:Cc:To:From:Sender:Reply-To:Content-Transfer-Encoding: Content-ID:Content-Description:Resent-Date:Resent-From:Resent-Sender: Resent-To:Resent-Cc:Resent-Message-ID:List-Id:List-Help:List-Unsubscribe: List-Subscribe:List-Post:List-Owner:List-Archive; bh=W/9vj5PqT65mi1PyX3YP2cfbrnb+JRLhXLOuUDNi300=; b=B0DOwNMcksqUMOdknXEmV/8+qV 458TYnAtSCCcy/EntFZyGMGXJUAA3K5bOHU3PWG41xLuW0FXnHQo680al4LLUYnwb2enJTi5ViKx4 74Fh6/Yu9mSXPMTxs4ZaFYpiRqC9QSnbjFtPzzc3GlDvARBVesnnyBi6UDPLRuAY2sRA=;
Received: from uucp by with local-rmail (Exim 4.89 #1 (Debian)) id 1jOwmv-0006gt-2r for <>; Thu, 16 Apr 2020 07:10:09 +0200
Received: from wk by with local (Exim 4.92 #5 (Debian)) id 1jOwmN-0002d5-NK; Thu, 16 Apr 2020 07:09:35 +0200
From: Werner Koch <>
To: "Tanveer.Salim" <>
Cc: "openpgp\" <>, "Tanveer.Salim" <>
References: <>
Organisation: GnuPG e.V.
X-message-flag: Mails containing HTML will not be read! Please send only plain text.
Mail-Followup-To: "Tanveer.Salim" <>, "openpgp\" <>, "Tanveer.Salim" <>
Date: Thu, 16 Apr 2020 07:09:30 +0200
In-Reply-To: <> (Tanveer Salim's message of "Wed, 15 Apr 2020 17:53:31 +0000")
Message-ID: <>
User-Agent: Gnus/5.13 (Gnus v5.13)
MIME-Version: 1.0
Content-Type: multipart/signed; boundary="=Salmonella_Ammonium_nitrate_SAFE_Recce_Arellano-Felix_Mayfly_Jet_Sle"; micalg=pgp-sha256; protocol="application/pgp-signature"
Archived-At: <>
Subject: Re: [openpgp] Request on Adding ChaCha20-Poly1305 to the OpenPGP Standardization
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Ongoing discussion of OpenPGP issues." <>
List-Unsubscribe: <>, <>
List-Archive: <>
List-Post: <>
List-Help: <>
List-Subscribe: <>, <>
X-List-Received-Date: Thu, 16 Apr 2020 05:10:15 -0000

On Wed, 15 Apr 2020 17:53, Tanveer.Salim said:

> issues with adding ChaCha20-Poly1305. Political in the sense that many
> implementations will be offended if the switch was made from AES to
> ChaCha20-Poly1305. I am not saying we should necessarily switch the

Well, that was not exactly my point.  With political I meant that we had
to add a couple of algorithms to please some countries or make it
possible for them to use OpenPGP.  That is for example the case for
Camellia, the Brainpool and NIST curves.

> According to the Autocrypt website, it would be great if Argon2 and
> SCrypt key derivation functions to OpenPGP as well. But Autocrypt

Well, we are doing public key crypto and thus passwords are not of
primary interest.  If OpenPGP is used with symmetric-only encryption I
expect that a full-entropy key is used and thus the KDF is not used for
security reasons.



Die Gedanken sind frei.  Ausnahmen regelt ein Bundesgesetz.