Re: [Pqc] Mapping the state of PQC and IETF - ssh

Behcet Sarikaya <sarikaya2012@gmail.com> Wed, 01 March 2023 16:26 UTC

Return-Path: <sarikaya2012@gmail.com>
X-Original-To: pqc@ietfa.amsl.com
Delivered-To: pqc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4E0E8C151AE4 for <pqc@ietfa.amsl.com>; Wed, 1 Mar 2023 08:26:58 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.844
X-Spam-Level:
X-Spam-Status: No, score=-6.844 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_ENVFROM_END_DIGIT=0.25, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id xEPQfB9Op4-Q for <pqc@ietfa.amsl.com>; Wed, 1 Mar 2023 08:26:54 -0800 (PST)
Received: from mail-ua1-x931.google.com (mail-ua1-x931.google.com [IPv6:2607:f8b0:4864:20::931]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8330DC14CE30 for <pqc@ietf.org>; Wed, 1 Mar 2023 08:26:54 -0800 (PST)
Received: by mail-ua1-x931.google.com with SMTP id s23so1420165uae.5 for <pqc@ietf.org>; Wed, 01 Mar 2023 08:26:54 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20210112; t=1677688013; h=cc:to:subject:message-id:date:from:reply-to:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=tuQ0AADEEsDCxn3M59aF9oYnfklwSlRpRBLDUID3EY0=; b=fFYsi0qbgmOTwwUTQJx5O7VteZRyNsT3TrPnMZLWuOlVG/0QtyAAccKlDQuf9lZ9uB ZGuNvpdHTlm/jrfsFSg3sCUXfnnUFVoGf5WpGxfNwBMy5VZky6BgoXP8cMdIfPiQIxJA H+jamYif5R6bw2KiMuumR7+qBOYsmfxlNoBwz4E3el5e5kBM4/4SWvkxiKeM5FhjDU5m gcIig0lHVm92eYWHX9oTzYo/IbaGSGXJRugZh5f47YYTnkHxtC1z6Z+PAy+ndXqmBHHm ivSF22DcNKaPsjfjwofpeZOtzSN8m3r3VZwSrxHYKzaa+Zymja+AJFPUKeRE3ahyMK2k sXQQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; t=1677688013; h=cc:to:subject:message-id:date:from:reply-to:in-reply-to:references :mime-version:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=tuQ0AADEEsDCxn3M59aF9oYnfklwSlRpRBLDUID3EY0=; b=qJsE3wm7VEpgdl5ackUKIpZ6WS3vaWlIAQb+JSJG+lz73X/Fwfr64gRPIQCE7vDc70 7mR0/LsGMpNfxP7EsR8eWTcanc+/63lxTpElCZuAsIYRJtmxtcIH6xbqdueuRkP/sfHK LDya4gMJF3PSQuJGWp+ne06w+d5dxJCgCHduO+YRvVDN+8LKmM214zn4ZiX3KzFhDE0N mPbCmDts/dDGQzhZcJIqM1pBOnvSadubUSv0Q3bYzXjx4x6kbeztTopq6Wy8xMN0/Ane gJPIq2oKtAEesK+eV+6ouPlVPv6lB2l1Np3gVQirFecHCf7/QXX1ojaz7hmT9JVVjzz0 pm7w==
X-Gm-Message-State: AO0yUKXrpp5hw7k9x1eJQSSZ69x916qwfxB4DtoydLKE53WywoZhNc3r bL6nDDUIeW8rBbg9RTUxyBH4tG1Eu1w+HGe5HXGHNxwXU98=
X-Google-Smtp-Source: AK7set+THq/0ACFj1Xv7JOhwt1TwtDNvlqgl0sVUmD6dIxjuynUWMu1skktbCSzpFsW8aDSkCWpWv+TzeZhxTFk670M=
X-Received: by 2002:a05:6122:e68:b0:401:4daf:d581 with SMTP id bj40-20020a0561220e6800b004014dafd581mr3819525vkb.0.1677688013472; Wed, 01 Mar 2023 08:26:53 -0800 (PST)
MIME-Version: 1.0
References: <667bd090-1a3e-82d0-f663-8950fcd6dd38@riseup.net> <CH0PR11MB5739F3AA7FB5C3E808B1699A9FAC9@CH0PR11MB5739.namprd11.prod.outlook.com> <CH0PR11MB5739D19B472801B58D70900B9FAC9@CH0PR11MB5739.namprd11.prod.outlook.com> <dcbfda5a-3bda-ce06-129e-93b9a164bd86@gmail.com> <28c503bff662497381ac87063106ce96@amazon.com> <CAMjbhoWT2Xf_+FCE8cPsHT80+D=AzFgWXLJUanQuuJYuMPqD_A@mail.gmail.com> <0001a8f270d044788a84bae1e31c6262@amazon.com>
In-Reply-To: <0001a8f270d044788a84bae1e31c6262@amazon.com>
Reply-To: sarikaya@ieee.org
From: Behcet Sarikaya <sarikaya2012@gmail.com>
Date: Wed, 01 Mar 2023 10:26:41 -0600
Message-ID: <CAC8QAcd6TtTF1_3BZmrtvuDK7gCgQBVhwQRsxA1hB+Fi03PoLA@mail.gmail.com>
To: "Kampanakis, Panos" <kpanos=40amazon.com@dmarc.ietf.org>
Cc: Bas Westerbaan <bas=40cloudflare.com@dmarc.ietf.org>, "pqc@ietf.org" <pqc@ietf.org>
Content-Type: multipart/alternative; boundary="000000000000164cbb05f5d92e3b"
Archived-At: <https://mailarchive.ietf.org/arch/msg/pqc/30qGXGA26FiCzDhAs_ZkBf1rj7M>
Subject: Re: [Pqc] Mapping the state of PQC and IETF - ssh
X-BeenThere: pqc@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Post Quantum Cryptography discussion list <pqc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/pqc>, <mailto:pqc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/pqc/>
List-Post: <mailto:pqc@ietf.org>
List-Help: <mailto:pqc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/pqc>, <mailto:pqc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 01 Mar 2023 16:26:58 -0000

On Wed, Mar 1, 2023 at 10:25 AM Kampanakis, Panos <kpanos=
40amazon.com@dmarc.ietf.org> wrote:

> Hi Bas,
>
> True, but we need a few years until a module will be able to validate its
> Kyber implementation. Someone needing quantum-safe FIPS compliance today
> could just do P256+Kyber.
>
>
>



What is Kyber?


Behcet

> *From:* Pqc <pqc-bounces@ietf.org> *On Behalf Of * Bas Westerbaan
> *Sent:* Wednesday, March 1, 2023 10:17 AM
> *To:* Kampanakis, Panos <kpanos=40amazon.com@dmarc.ietf.org>
> *Cc:* Alexandre Petrescu <alexandre.petrescu@gmail.com>; pqc@ietf.org
> *Subject:* RE: [EXTERNAL][Pqc] Mapping the state of PQC and IETF - ssh
>
>
>
> *CAUTION*: This email originated from outside of the organization. Do not
> click links or open attachments unless you can confirm the sender and know
> the content is safe.
>
>
>
>
>
> OpenSSH currently does not support ECDH+PQ for "quantum-safe FIPS"
> compliance.
>
>
>
> Once NIST puts the bow on Kyber, Kyber+Anything, eg, Kyber+x25519 will be
> FIPS.
>
>
>
> Best,
>
>
>
>  Bas
> --
> Pqc mailing list
> Pqc@ietf.org
> https://www.ietf.org/mailman/listinfo/pqc
>