Re: [openpgp] [PATCH] RFC4880bis: Argon2i

Daniel Kahn Gillmor <dkg@fifthhorseman.net> Tue, 03 November 2015 04:44 UTC

Return-Path: <dkg@fifthhorseman.net>
X-Original-To: openpgp@ietfa.amsl.com
Delivered-To: openpgp@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 505771B2DB5 for <openpgp@ietfa.amsl.com>; Mon, 2 Nov 2015 20:44:06 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id jnDwqvqtAtlX for <openpgp@ietfa.amsl.com>; Mon, 2 Nov 2015 20:44:05 -0800 (PST)
Received: from che.mayfirst.org (che.mayfirst.org [209.234.253.108]) by ietfa.amsl.com (Postfix) with ESMTP id E76DB1B2DB4 for <openpgp@ietf.org>; Mon, 2 Nov 2015 20:44:04 -0800 (PST)
Received: from fifthhorseman.net (dhcp-36-99.meeting.ietf94.jp [133.93.36.99]) by che.mayfirst.org (Postfix) with ESMTPSA id B8844F984; Mon, 2 Nov 2015 23:44:02 -0500 (EST)
Received: by fifthhorseman.net (Postfix, from userid 1000) id 948111FEB8; Tue, 3 Nov 2015 13:43:59 +0900 (JST)
From: Daniel Kahn Gillmor <dkg@fifthhorseman.net>
To: ianG <iang@iang.org>, openpgp@ietf.org
In-Reply-To: <56382F70.5000501@iang.org>
References: <5623AA95.4060903@googlemail.com> <874mh3q3ol.fsf@alice.fifthhorseman.net> <56382F70.5000501@iang.org>
User-Agent: Notmuch/0.20.2 (http://notmuchmail.org) Emacs/24.5.1 (x86_64-pc-linux-gnu)
Date: Tue, 03 Nov 2015 13:43:59 +0900
Message-ID: <878u6fofow.fsf@alice.fifthhorseman.net>
MIME-Version: 1.0
Content-Type: text/plain
Archived-At: <http://mailarchive.ietf.org/arch/msg/openpgp/Pc3s0Tp-XbIzY3S_bCqdcg8wC88>
Subject: Re: [openpgp] [PATCH] RFC4880bis: Argon2i
X-BeenThere: openpgp@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "Ongoing discussion of OpenPGP issues." <openpgp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/openpgp>, <mailto:openpgp-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/openpgp/>
List-Post: <mailto:openpgp@ietf.org>
List-Help: <mailto:openpgp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/openpgp>, <mailto:openpgp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 03 Nov 2015 04:44:06 -0000

On Tue 2015-11-03 12:52:16 +0900, ianG wrote:
> On 3/11/2015 01:20 am, Daniel Kahn Gillmor wrote:
>> If we introduce this as a normative dependency for OpenPGP,
>
> I agree with all the rest, but can we also deprecate some old stuff as well?

Ian's proposed change actually does deprecate some old stuff.  Maybe it
doesn't go far enough, though.

> Can we construct a plan e.g., that no existing S2K be used with new keys 
> and the new form not be used with old keys?
>
> Or *something* to avoid the monotonically increasing algorithmic bloat 
> that seems so trendy.

Yes, we'll be talking about algorithm deprecation at the meeting later
today.

        --dkg