Re: [openpgp] OpenPGP encryption block modes (Was: The Argon2 proposal seems incomplete (Draft 6))

Stephen Farrell <stephen.farrell@cs.tcd.ie> Wed, 03 August 2022 12:32 UTC

Return-Path: <stephen.farrell@cs.tcd.ie>
X-Original-To: openpgp@ietfa.amsl.com
Delivered-To: openpgp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3D6F3C157903 for <openpgp@ietfa.amsl.com>; Wed, 3 Aug 2022 05:32:50 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.009
X-Spam-Level:
X-Spam-Status: No, score=-2.009 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, NICE_REPLY_A=-0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=cs.tcd.ie
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id kIauItiYjmat for <openpgp@ietfa.amsl.com>; Wed, 3 Aug 2022 05:32:45 -0700 (PDT)
Received: from EUR05-AM6-obe.outbound.protection.outlook.com (mail-am6eur05on2110.outbound.protection.outlook.com [40.107.22.110]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 79A6FC157902 for <openpgp@ietf.org>; Wed, 3 Aug 2022 05:32:44 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=JkzhIJ5I29v4DlFfVKLGUUP2AjPv9Ue4mo8olCCb8xs+gk7kD99o3UOPhl/1duLfZa+enjenIjskV4nlN/3DV9+Dc2vYsRNTJoLnPIS1P4LQNis7zLsidkgLQJ0gSebA0UZBsG6RkdvGUoX84+n52ZFfRC5COYIY/38IdEFAH77zRp+ATkbv8kG5FhIu1An/pm9Vh50RgeFd8L70oWqaj23e13I+klhov6Cc4FCyL7vYDjSNUkLnSnUokaodSl+H3eCYqHQDk/fS4jwb3KWr5gd6GrKgikVWHHmrbFBwCw4LzjWJINcQfKv0+qpPZRs/h4BxA/jTOPWS2ufNqF4CGQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=Q9yZEzwk69NnA5TvqYeOcXzUDTYgicaCAh+1kiFBWtE=; b=L6MehW2gbS6+wKPTOYpsGfYcZ0IVW1LvvAPvcPIMZTbyvwBglog68ZSg3f8InbM8vGoGUa3HgI1Y0jQ12SOfwOWUUx7JWeaLCi0QOIw7AXYuGHeufpqbNC4rE5Vi4KK460Z9liDAjKyvl9J8ylujysNTFTHBlwFuwvMw3te3zwpeWSEMfgHeovyB4qxTVXhg1kKheytuGJIDbNQ4g6N8z+4GtToLWXgI3DY+LTxk/n03XaaS2iaGakxB0dfH1nbOmhGq2dzcdyQvYgL4UQgUBSBbl0nG0r0OfWDjd7cZ6KifjLNIVfgFwJvnudvyw6MeHtsuAiLwoD9WqC3vB6LvQg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cs.tcd.ie; dmarc=pass action=none header.from=cs.tcd.ie; dkim=pass header.d=cs.tcd.ie; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cs.tcd.ie; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=Q9yZEzwk69NnA5TvqYeOcXzUDTYgicaCAh+1kiFBWtE=; b=hh4Cj+1KojhEhAEX4/zicPy0mmc8aKnql5RP09pUAMdnX3Ei4zJRgYZc7XTBfzdIUWWo5mrW0PjH0HQHCUoPPwV7ctzn3fJMliE5wk5SasHkPC6pnDOdrIHXbTo6YWPV9jqyxWCnw0jO5lcY0CWP8H8iL7MwAO6mzMHWvzYYmfKTdsMxc9YFnaKTiUur2qsZ2HIs42vbKXudszrqNzbMPcFU3FPf+rjFRvZpVc/ee+5d4rRYP/+B2/vbWIuzdDfVD4zLKxUDAwb9XBAqKx2YS0sbooB8fSvC7lEaDRz1E22CjV0XIMpuSE1wAX/okdgU1lruIjxLZSdlsaYUgfXcBQ==
Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=cs.tcd.ie;
Received: from DB7PR02MB5113.eurprd02.prod.outlook.com (2603:10a6:10:77::15) by AM0PR02MB5539.eurprd02.prod.outlook.com (2603:10a6:208:15b::33) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5504.14; Wed, 3 Aug 2022 12:32:38 +0000
Received: from DB7PR02MB5113.eurprd02.prod.outlook.com ([fe80::6595:d554:3f4:9069]) by DB7PR02MB5113.eurprd02.prod.outlook.com ([fe80::6595:d554:3f4:9069%7]) with mapi id 15.20.5482.016; Wed, 3 Aug 2022 12:32:37 +0000
Message-ID: <b23496c9-97e4-1fe7-f01e-545b592dfc21@cs.tcd.ie>
Date: Wed, 03 Aug 2022 13:32:35 +0100
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:91.0) Gecko/20100101 Thunderbird/91.11.0
Content-Language: en-US
To: Peter Gutmann <pgut001@cs.auckland.ac.nz>, Bruce Walzer <bwalzer@59.ca>, Werner Koch <wk@gnupg.org>
Cc: Justus Winter <justus@sequoia-pgp.org>, "openpgp@ietf.org" <openpgp@ietf.org>
References: <YuAErZRsF/KbOw1s@watt.59.ca> <87edy7keb6.fsf@thinkbox> <YuFc+w02FiRQmHcg@watt.59.ca> <87bktajjvq.fsf@thinkbox> <YuKpxp0/Dy1DfC19@watt.59.ca> <875yjhjg2c.fsf@thinkbox> <87r124m64c.fsf@wheatstone.g10code.de> <YulX9jI1+wOCwLJq@ohm.59.ca> <SY4PR01MB6251E8D4ED18EF9EB1497DB7EE9C9@SY4PR01MB6251.ausprd01.prod.outlook.com>
From: Stephen Farrell <stephen.farrell@cs.tcd.ie>
In-Reply-To: <SY4PR01MB6251E8D4ED18EF9EB1497DB7EE9C9@SY4PR01MB6251.ausprd01.prod.outlook.com>
Content-Type: multipart/signed; micalg="pgp-sha256"; protocol="application/pgp-signature"; boundary="------------cFBq64ArwxRZ4MFUkg6ytUCD"
X-ClientProxiedBy: DB6P191CA0002.EURP191.PROD.OUTLOOK.COM (2603:10a6:6:28::12) To DB7PR02MB5113.eurprd02.prod.outlook.com (2603:10a6:10:77::15)
MIME-Version: 1.0
X-MS-Exchange-MessageSentRepresentingType: 1
X-MS-PublicTrafficType: Email
X-MS-Office365-Filtering-Correlation-Id: 08d43e3e-4f4c-4144-143b-08da754c3fbb
X-MS-TrafficTypeDiagnostic: AM0PR02MB5539:EE_
X-MS-Exchange-SharedMailbox-RoutingAgent-Processed: True
X-TCD-Routed-via-EOP: Routed via EOP
X-TCD-ROUTED: Passed-Transport-Routing-Rules
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DB7PR02MB5113.eurprd02.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230016)(4636009)(396003)(136003)(376002)(366004)(346002)(39860400002)(186003)(31696002)(2906002)(41300700001)(6512007)(53546011)(21480400003)(2616005)(6506007)(86362001)(38100700002)(33964004)(83380400001)(8936002)(36756003)(235185007)(564344004)(110136005)(54906003)(5660300002)(8676002)(4326008)(66476007)(66556008)(66946007)(6486002)(31686004)(786003)(316002)(45080400002)(478600001)(44832011)(43740500002)(45980500001); DIR:OUT; SFP:1102;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: TUTeoWx+SS/5yV2p5BYlG7WJ5W4a1MEwRZ87bfP9VfHaglFN45aVCxmwLmPnVKgmAfFWIycq6rXxWQp3mud9wQLK1/oro9Y0Z3Y02LAFsyFbh8NaOIkSVHzO81dlyVHO5IvgYwJGO0ACiOr2ztMdYKKTPhjZgqOc1jLV5aD98s+kJs9tQnpqJ+DQxdGN84mcpKLj8rbk4ZK12ey0al6nIP8xeRRJ4RK7Pcw2GywpFLmfYLeWGhsAO/vJ7Vocoqn+fRJdcxg5mLliOYRb6NK8woc1s+npoi5qlndK8XkGxApSxpyEY9OgBE5FacVTJZe+l0hRmvOXAVP8dUZ9mnm6cFZ4XPdXeoAUOyL5VAKKIYX97vd9pG8c+hxlDpUlirrSxDtaFCb0l/SkPwhABavmbVuJXHMvirrc+b+REG0IRrv7Xfp5fKzouhoSgCSwYwUwxJBwGLQToupQp3T6CrnLtC+hGr0jxHaECM/iwxY2m7UzEkQm77UF+ab9s9T5zWQoFTtx2eyz8bUfYc23SV6VqFnYtPlKZgEtJWB/vCzt/GS/Kwz7g5jP4kA3hxkVJUskuc82UFLPy5AMJ8rjdZH7XFPaCALdXAw1jA2yGJUiboSj50W7xn07pW0C5e8CF7Qnk0ykZ7jqpp9Nbn7TNUgK6XTyMXbQ2iNdFF4kEhfTsuALz66aZ67QI4MJ9k+2HNnSpHdWIGencqsyi/dRg5b+PTGhUD1qj8Fj9h62EzDcKmaIW+AlyPXmWK/YE8ZVI0W6a3NPPEgs+3dz6hff8R5QB+qmEFOa/cEB+GmXbmGLAXi7MO0T8a8d+CnnOMdQpdikvLgIbbVDn4nA0W6hbCm0w27nbyrLdSHnka09WWDvrob1ikgfXTtAuPJMp28h8DP6drmiE6RZUNXDzxG+XgUK5hl53ERhprcM4jnNAE5NRlJfu91gl50Tx1AoRedWeVDCtYrVKWfQPpNxmZyo/9EemVvXcLpgoRhLAwc9VLObQcEAcWOoUpBOm9Yo4JfZC9lHTYPIHxqwcZ+fpiYMz/etd1cmyi2h6RMrBL83aUxq448hHFQXirurgNPvLkpR3NezHZtJxVCShVTSemefXQl9g9jHSSoKcOMqJc4emnj7sKxD743RJnmL362DqWXpXPBKgIHBako24u0fNGoEObwvAjXFJucf6DXp7o8nfrJL9SVH0TYp0WTvsSwLeMvLR/eqhupihW/EBd2WsoaZD8J3BPj6HG299xjonprW5M1jjMzlHYK7lU73GZC13+X+B2YKITpXoT74g1DvN9jj10T/ox4haPsTt2ECaByaspXefp2LezR2sYAEHPW+QZalYRj3rjL6hYZiiLtsrlcx1Py3NdlgFeg6loo7Wr25oRqfNqzWY5gehv1ffHFVJUHo15iI2QxIQykKsIr0CwoXYxlxZ93pR44qfyfIohNV/e3UPaLs8TuYsfG+pF1oKPAKKQhqPCAQOMvqByAhzkECeYE9WqFg6hKkR1shIbHslLHGAnWffBcUZMxXSE4rKUG8Rntyxa+6Bnxw471VNbfJCBCeVCKWfZWBJczmSWhTbkik6PB6cEJKQPb3BvPqBGEBNaI5+8h4vQuvCaSwOLnsYLQvCijy6KxEkN1SNrPm0oY/VHIw7AYVtPYZIoXg5T4CSOAI
X-OriginatorOrg: cs.tcd.ie
X-MS-Exchange-CrossTenant-Network-Message-Id: 08d43e3e-4f4c-4144-143b-08da754c3fbb
X-MS-Exchange-CrossTenant-AuthSource: DB7PR02MB5113.eurprd02.prod.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 03 Aug 2022 12:32:37.8535 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: d595be8d-b306-45f4-8064-9e5b82fbe52b
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: J6/Ir0G+tSx0UH82k6BPxSOgvTLmRTRosIIFKetJJr/mkGsaBrNFAQxCMzC9JSD/
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM0PR02MB5539
Archived-At: <https://mailarchive.ietf.org/arch/msg/openpgp/eRMt-PwegJhSxs9owNzDc84j2oc>
Subject: Re: [openpgp] OpenPGP encryption block modes (Was: The Argon2 proposal seems incomplete (Draft 6))
X-BeenThere: openpgp@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "Ongoing discussion of OpenPGP issues." <openpgp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/openpgp>, <mailto:openpgp-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/openpgp/>
List-Post: <mailto:openpgp@ietf.org>
List-Help: <mailto:openpgp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/openpgp>, <mailto:openpgp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 03 Aug 2022 12:32:50 -0000

Hiya,

On 03/08/2022 06:54, Peter Gutmann wrote:
> there's no reason to prefer the
> incredibly brittle and significantly less efficient GCM (or CCM) over OCB

For clarity. The current draft prefers OCB by making
it a MUST implement, over GCM which is a MAY implement.

S.