Re: [openpgp] Pull request for AEAD encrypted data packet with GCM

Jon Callas <> Tue, 14 February 2017 01:32 UTC

Return-Path: <>
Received: from localhost (localhost []) by (Postfix) with ESMTP id 1E43D12951F for <>; Mon, 13 Feb 2017 17:32:50 -0800 (PST)
X-Virus-Scanned: amavisd-new at
X-Spam-Flag: NO
X-Spam-Score: -2.701
X-Spam-Status: No, score=-2.701 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: (amavisd-new); dkim=pass (2048-bit key)
Received: from ([]) by localhost ( []) (amavisd-new, port 10024) with ESMTP id KmolBZAMvdNb for <>; Mon, 13 Feb 2017 17:32:49 -0800 (PST)
Received: from ( []) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by (Postfix) with ESMTPS id 42A99129462 for <>; Mon, 13 Feb 2017 17:32:49 -0800 (PST)
Received: from by (Oracle Communications Messaging Server 64bit (built Feb 26 2016)) id <> for; Tue, 14 Feb 2017 01:32:48 +0000 (GMT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed;; s=4d515a; t=1487035968; bh=PZLTmodfUkT5ZxYSOK5CJhUJR3OsecRv9X1QCBCghF4=; h=Content-type:MIME-version:Subject:From:Date:Message-id:To; b=kS/re5dVFQARg1yzhFD2SbMGZxCZwpKZkPkq8luDqqzswa7FZPt8UomEOouc/h2B6 k+OtvNfYBCYb/ZSfwikmoo4SxjNdYeC40pEvfdtmFQ3nt2fe8EBatQTtzCLo3gtukh KmzdOn8+OAfZNPpIhYGwCnKypMCvgwgIYuvieZwRRB3NfbAa/KuzZYIeid6VacNkYV e/T0IqtBZiJ3dkfoVNUv9cmbZC5tSXKYoSKlOYIGf4SVQMGOHe8iAkWPHSBtEQIz8C OvxPw6oVLxZQLb3Qkre8+sEuanBvHfk9uA4UNewj4tNWwimt1/UUNeAWNxb0ZQmvCE 6YlqAuPIVWxFg==
Received: from ([]) by (Oracle Communications Messaging Server 64bit (built Feb 26 2016)) with ESMTPSA id <>; Tue, 14 Feb 2017 01:32:48 +0000 (GMT)
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10432:,, definitions=2017-02-14_01:,, signatures=0
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 spamscore=0 clxscore=1034 suspectscore=0 malwarescore=0 phishscore=0 adultscore=0 bulkscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.0.1-1603290000 definitions=main-1702140014
Content-type: text/plain; charset=us-ascii
MIME-version: 1.0 (Mac OS X Mail 10.2 \(3259\))
From: Jon Callas <>
In-reply-to: <>
Date: Mon, 13 Feb 2017 17:32:45 -0800
Content-transfer-encoding: quoted-printable
Message-id: <>
References: <> <> <>
To: Stephen Farrell <>
X-Mailer: Apple Mail (2.3259)
Archived-At: <>
Cc:, "brian m. carlson" <>, Jon Callas <>
Subject: Re: [openpgp] Pull request for AEAD encrypted data packet with GCM
X-Mailman-Version: 2.1.17
Precedence: list
List-Id: "Ongoing discussion of OpenPGP issues." <>
List-Unsubscribe: <>, <>
List-Archive: <>
List-Post: <>
List-Help: <>
List-Subscribe: <>, <>
X-List-Received-Date: Tue, 14 Feb 2017 01:32:50 -0000

> On Feb 13, 2017, at 5:24 PM, Stephen Farrell <> wrote:
> A recurring issue with OCB in other contexts has been that it
> it not only Rogaway's IPR that is at issue. Despite (what I
> think is) his very flexible and reasonable way of handling his
> own IPR, and even his efforts to get others to play ball, there
> are multiple other parties involved, not all of whom are IIUC
> equally reasonable (according to my personal view of what's
> reasonable).
> I don't know that that situation has resolved itself favourably
> in any case to date. I'd be happy if it had though, so please
> do follow up this with good news, if such exists.
> This issue was discussed on both the CFRG and TLS lists, maybe
> a year or two ago, so interested folks would benefit from
> checking those archives for OCB related threads.
> Cheers,
> S.
> PS: Note that I'm not stating any opinion pro- or contra- GCM
> nor any other AEAD construct here.

I have no disagreement with this. I am constantly pained that this is a mess, because OCB *is* what we all really want to use.