[openpgp] Fw: New Version Notification for draft-ietf-openpgp-persistent-symmetric-keys-04.txt

Daniel Huigens <d.huigens@protonmail.com> Tue, 15 September 2026 11:52 UTC

Received: from mail-10628.protonmail.ch (mail-10628.protonmail.ch [79.135.106.28]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange x25519 server-signature ECDSA (prime256v1) server-digest SHA256) (No client certificate requested) by mx.ietf.org (Postfix) with ESMTPS id 9CB363F for <openpgp@ietf.org>; Tue, 15 Sep 2026 11:52:20 +0000 (UTC)
Authentication-Results: mx.ietf.org; dkim=pass header.d=protonmail.com header.s=protonmail3 header.b=hF9iKLSS; dmarc=pass (policy=quarantine) header.from=protonmail.com; spf=pass (mx.ietf.org: domain of d.huigens@protonmail.com designates 79.135.106.28 as permitted sender) smtp.mailfrom=d.huigens@protonmail.com
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=protonmail.com; s=protonmail3; t=1789473133; x=1789732333; bh=O39nuVN05mkbpqm2WCoNcOJvwNtEvCn1x7lZbmzjJuU=; h=Date:To:From:Subject:Message-ID:In-Reply-To:References: Feedback-ID:From:To:Cc:Date:Subject:Reply-To:Feedback-ID: Message-ID:BIMI-Selector; b=hF9iKLSSlCfsbdowsmFa6gPIsjWg0vnGZ4CBPWKrwbPD0hJi+KBv+slTSzmnGcSVH 2Q/wGgowFhIuQPJR//THKxx7I75gMPJ7EbOUE0GwYxi0JAwQtyXy7P8DhUVcyImc8B +r5R7cNPm9pmfUNL1Q1Mo5IPIAs03EcDMqxP7nJo/0Fm06cgaUwkXzg78/ISyPVHHF WlDaA1WOey4R9NT5hF8UWD+09zKU75qjA+L3QDFNUVx4atf+JS/WBYdwE7MERW7pvr taXWP942T8OUSNRRQoiLQxdoAl7eIr3Nn/85tytEsU6AUb0LZ2oRL+hIDvuqCeHZa+ LN3b35cNb5mvg==
Date: Tue, 15 Sep 2026 11:52:09 +0000
To: IETF OpenPGP WG <openpgp@ietf.org>
From: Daniel Huigens <d.huigens@protonmail.com>
Message-ID: <Th1ehC2hZ8b-Oj2ZCfZq0m7benosgackDGigBi7ZT2Wz7CvYpXOfprF7GuKezFkTiYmskX-gHbuOtpNam6I0HLwMPZ9B0xrYPx_z7hkZ8rU=@protonmail.com>
In-Reply-To: <178947283617.853291.8675017053514752027@dt-datatracker-597c8c8754-4t7c8>
References: <178947283617.853291.8675017053514752027@dt-datatracker-597c8c8754-4t7c8>
Feedback-ID: 2934448:user:proton
X-Pm-Message-ID: 0d6b6b15bdbb526298c4494ac135246c08ff04bb
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: quoted-printable
X-Spamd-Bar: -
Message-ID-Hash: FMIEVBR36KCL47KM7NJ6IJQOGQDTBTUL
X-Message-ID-Hash: FMIEVBR36KCL47KM7NJ6IJQOGQDTBTUL
X-MailFrom: d.huigens@protonmail.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; loop; banned-address; header-match-openpgp.ietf.org-0; emergency; member-moderation; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.10
Precedence: list
Subject: [openpgp] Fw: New Version Notification for draft-ietf-openpgp-persistent-symmetric-keys-04.txt
List-Id: "Ongoing discussion of OpenPGP issues." <openpgp.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/openpgp/jWYbAyJpkOJT8lA_rNKebbPCTdI>
List-Archive: <https://mailarchive.ietf.org/arch/browse/openpgp>
List-Help: <mailto:openpgp-request@ietf.org?subject=help>
List-Owner: <mailto:openpgp-owner@ietf.org>
List-Post: <mailto:openpgp@ietf.org>
List-Subscribe: <mailto:openpgp-join@ietf.org>
List-Unsubscribe: <mailto:openpgp-leave@ietf.org>

Hi all,

I've minted a new version of draft-ietf-openpgp-persistent-symmetric-keys,
since it had been a while and the last one expired.

It has one substantive change: creating or using persistent symmetric
keys with an algorithm weaker than AES-128 is now disallowed.
(Doing so was obviously a bad idea anyway but it seemed like a good
idea to spell that out.)

Additionally, it contains a number of editorial improvements and
clarifications, thanks to dkg and Heiko.

It does not yet address the question of how to deal with certifications
and revocations, raised on the list and in the issue tracker. Thanks to
everyone who weighed in on that already, I will also do so (without
editor hat on) after this, and then I hope we can discuss and perhaps
make a decision at the interim meeting.

In the meantime, please also let me know whether the editorial points
seem sufficiently resolved or if any further clarifications are needed.

Thanks!

Best,
Daniel


------- Forwarded Message -------
From: internet-drafts@ietf.org <internet-drafts@ietf.org>
Date: On Tuesday, September 15th, 2026 at 13:47
Subject: New Version Notification for draft-ietf-openpgp-persistent-symmetric-keys-04.txt
To: Daniel Huigens <d.huigens@protonmail.com>

> A new version of Internet-Draft
> draft-ietf-openpgp-persistent-symmetric-keys-04.txt has been successfully
> submitted by Daniel Huigens and posted to the
> IETF repository.
> 
> Name:     draft-ietf-openpgp-persistent-symmetric-keys
> Revision: 04
> Title:    Persistent Symmetric Keys in OpenPGP
> Date:     2026-09-15
> Group:    openpgp
> Pages:    11
> URL:      https://www.ietf.org/archive/id/draft-ietf-openpgp-persistent-symmetric-keys-04.txt
> Status:   https://datatracker.ietf.org/doc/draft-ietf-openpgp-persistent-symmetric-keys/
> HTMLized: https://datatracker.ietf.org/doc/html/draft-ietf-openpgp-persistent-symmetric-keys
> Diff:     https://author-tools.ietf.org/iddiff?url2=draft-ietf-openpgp-persistent-symmetric-keys-04
> 
> Abstract:
> 
>    This document defines a new packet and algorithm for the OpenPGP
>    standard (RFC 9580) to support persistent symmetric keys, for message
>    encryption using authenticated encryption with additional data (AEAD)
>    and for message authentication using AEAD authentication tags.  This
>    enables the use of symmetric cryptography for data storage (and other
>    contexts that do not require asymmetric cryptography), for improved
>    performance, smaller keys, and improved resistance to quantum
>    computing.
> 
> The IETF Secretariat