Re: NIST publishes new DSA draft

Werner Koch <wk@gnupg.org> Fri, 17 March 2006 16:17 UTC

Received: from [10.91.34.44] (helo=ietf-mx.ietf.org) by megatron.ietf.org with esmtp (Exim 4.43) id 1FKHeC-0008Hb-5G for openpgp-archive@lists.ietf.org; Fri, 17 Mar 2006 11:17:52 -0500
Received: from balder-227.proper.com ([192.245.12.227]) by ietf-mx.ietf.org with esmtp (Exim 4.43) id 1FKHeA-0004Ek-QO for openpgp-archive@lists.ietf.org; Fri, 17 Mar 2006 11:17:52 -0500
Received: from balder-227.proper.com (localhost [127.0.0.1]) by balder-227.proper.com (8.13.5/8.13.5) with ESMTP id k2HFvl4v066691; Fri, 17 Mar 2006 08:57:47 -0700 (MST) (envelope-from owner-ietf-openpgp@mail.imc.org)
Received: (from majordom@localhost) by balder-227.proper.com (8.13.5/8.13.5/Submit) id k2HFvlYX066690; Fri, 17 Mar 2006 08:57:47 -0700 (MST) (envelope-from owner-ietf-openpgp@mail.imc.org)
X-Authentication-Warning: balder-227.proper.com: majordom set sender to owner-ietf-openpgp@mail.imc.org using -f
Received: from kerckhoffs.g10code.com (kerckhoffs.g10code.com [217.69.77.222]) by balder-227.proper.com (8.13.5/8.13.5) with ESMTP id k2HFvkgc066684 for <ietf-openpgp@imc.org>; Fri, 17 Mar 2006 08:57:47 -0700 (MST) (envelope-from wk@gnupg.org)
Received: from uucp by kerckhoffs.g10code.com with local-rmail (Exim 4.50 #1 (Debian)) id 1FKHSq-0000Zu-27 for <ietf-openpgp@imc.org>; Fri, 17 Mar 2006 17:06:08 +0100
Received: from wk by localhost with local (Exim 4.34 #1 (Debian)) id 1FKHHR-0007Ws-58; Fri, 17 Mar 2006 16:54:21 +0100
From: Werner Koch <wk@gnupg.org>
To: Ian G <iang@systemics.com>
Cc: David Shaw <dshaw@jabberwocky.com>, Hal Finney <hal@finney.org>, ietf-openpgp@imc.org
Subject: Re: NIST publishes new DSA draft
References: <20060314194447.4D59A57FB0@finney.org> <20060316192823.GA9945@jabberwocky.com> <441ACF45.704@systemics.com>
Organisation: g10 Code GmbH
OpenPGP: id=5B0358A2; url=finger:wk@g10code.com
Date: Fri, 17 Mar 2006 16:54:21 +0100
In-Reply-To: <441ACF45.704@systemics.com> (Ian G.'s message of "Fri, 17 Mar 2006 16:01:25 +0100")
Message-ID: <87fylhdq36.fsf@wheatstone.g10code.de>
User-Agent: Gnus/5.110004 (No Gnus v0.4) Emacs/21.4 (gnu/linux)
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Sender: owner-ietf-openpgp@mail.imc.org
Precedence: bulk
List-Archive: <http://www.imc.org/ietf-openpgp/mail-archive/>
List-Unsubscribe: <mailto:ietf-openpgp-request@imc.org?body=unsubscribe>
List-ID: <ietf-openpgp.imc.org>
X-Spam-Score: 0.0 (/)
X-Scan-Signature: 798b2e660f1819ae38035ac1d8d5e3ab

On Fri, 17 Mar 2006 16:01:25 +0100, Ian G said:

>> right answer.  Now that we have actual information about DSA2, perhaps
>> it would be worth revisiting that question.  A new algorithm ID for
>> DSA2 resolves a number of problems in one fell swoop as there is no
>> expectation of interoperability.  SHA-256 is always usable
>> (effectively the default) for DSA2, and there is no problem with
>> knowing when it is possible to use truncation (always).

> Sounds good to me.

I support this too.  The majority of keys are DSA keys q=160 bit.
Having a new algorithm indentifier will help more than harm.



Salam-Shalom,

   Werner