Re: [openpgp] AEAD Chunk Size

Peter Gutmann <pgut001@cs.auckland.ac.nz> Fri, 29 March 2019 12:53 UTC

Return-Path: <pgut001@cs.auckland.ac.nz>
X-Original-To: openpgp@ietfa.amsl.com
Delivered-To: openpgp@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D216F1202B1 for <openpgp@ietfa.amsl.com>; Fri, 29 Mar 2019 05:53:52 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.199
X-Spam-Level:
X-Spam-Status: No, score=-4.199 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, RCVD_IN_DNSWL_MED=-2.3, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=auckland.ac.nz
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Hrp8WD3hH7Xf for <openpgp@ietfa.amsl.com>; Fri, 29 Mar 2019 05:53:50 -0700 (PDT)
Received: from mx4-int.auckland.ac.nz (mx4-int.auckland.ac.nz [130.216.125.246]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D68A51202A1 for <openpgp@ietf.org>; Fri, 29 Mar 2019 05:53:49 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=auckland.ac.nz; i=@auckland.ac.nz; q=dns/txt; s=mail; t=1553864030; x=1585400030; h=from:to:cc:subject:date:message-id:references: in-reply-to:content-transfer-encoding:mime-version; bh=TGOrZjhKFuDxwSIRv2GRWR6XaJi4I3dDrqMl193Vw1g=; b=BvjjxtFaptn1Xs2oSTUgzBFS2Ui8bfaUcK17K/zKJoA8KAc3Wi42lgdg xLDQj+O7HhN1AFxnHIEPy6l5UzU9RhMWBUdbTQLk54lrgJ/HSaEyg5Drj 5N6Kg9TxNcQ/OhFgrJm2b3u9izdqRq1DOJkPPBJywrijnRyxw5815LBu/ o45nyNra4p2EBNPKEEVzALqvoS5b86oFW4mfiKYpHAoK56uldqRH0f4dK OS/wNnTlgTcE06qBfwxwWNh+GIyzXLq/u+7HP83O70qNngg7+nTjwdVoQ QU30FzznEwMWl8sO1gccjLZ2nE6o3qvmk08dni6MnUZaitVe4Y2veXmB3 w==;
X-IronPort-AV: E=Sophos;i="5.60,284,1549882800"; d="scan'208";a="53654432"
X-Ironport-HAT: MAIL-SERVERS - $RELAYED
X-Ironport-Source: 10.6.3.9 - Outgoing - Outgoing
Received: from uxcn13-tdc-e.uoa.auckland.ac.nz ([10.6.3.9]) by mx4-int.auckland.ac.nz with ESMTP/TLS/AES256-SHA; 30 Mar 2019 01:53:43 +1300
Received: from uxcn13-ogg-d.UoA.auckland.ac.nz (10.6.2.5) by uxcn13-tdc-e.UoA.auckland.ac.nz (10.6.3.9) with Microsoft SMTP Server (TLS) id 15.0.1395.4; Sat, 30 Mar 2019 01:53:43 +1300
Received: from uxcn13-ogg-d.UoA.auckland.ac.nz ([10.6.2.5]) by uxcn13-ogg-d.UoA.auckland.ac.nz ([10.6.2.5]) with mapi id 15.00.1395.000; Sat, 30 Mar 2019 01:53:43 +1300
From: Peter Gutmann <pgut001@cs.auckland.ac.nz>
To: "Neal H. Walfield" <neal@walfield.org>
CC: Jon Callas <joncallas=40icloud.com@dmarc.ietf.org>, "openpgp@ietf.org" <openpgp@ietf.org>, Justus Winter <justuswinter@gmail.com>, Jon Callas <joncallas@icloud.com>
Thread-Topic: [openpgp] AEAD Chunk Size
Thread-Index: AQHU5WH/TXThz2b5WUWEfgPFCGcCuqYgtWOAgAAKeQCAATDsKP//jKeAgAEUouc=
Date: Fri, 29 Mar 2019 12:53:42 +0000
Message-ID: <1553864014737.31739@cs.auckland.ac.nz>
References: <87mumh33nc.wl-neal@walfield.org> <878swzp4fb.fsf@europa.jade-hamburg.de> <E65F6E9D-8B0B-466D-936B-E8852F26E1FF@icloud.com>, <87ef6qghkg.wl-neal@walfield.org>
In-Reply-To: <87ef6qghkg.wl-neal@walfield.org>
Accept-Language: en-NZ, en-GB, en-US
Content-Language: en-NZ
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [130.216.158.4]
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
Archived-At: <https://mailarchive.ietf.org/arch/msg/openpgp/vB5yKH72jFjf7z-DuHJ0OcQhKrQ>
Subject: Re: [openpgp] AEAD Chunk Size
X-BeenThere: openpgp@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: "Ongoing discussion of OpenPGP issues." <openpgp.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/openpgp>, <mailto:openpgp-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/openpgp/>
List-Post: <mailto:openpgp@ietf.org>
List-Help: <mailto:openpgp-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/openpgp>, <mailto:openpgp-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 29 Mar 2019 12:53:53 -0000

Neal H. Walfield <neal@walfield.org> writes:

>I'm having trouble imagining why a larger chunk size would ever be better in
>either of these cases.
>
>  - File encryption: smaller chunk size means finding errors faster

See my followup messages, for data at rest you probably don't care about
errors at all, and if you really do then having the report at the whole-file
level is fine.  What's the benefit gained from knowing that the 64kB block at
offset xyz is corrupt?

As I mentioned earlier, we really need some data on real-world use cases
rather than hypothesising problematic corner cases that will rarely, if ever,
occur.

Peter.