Re: [Pqc] Listing pointers to not-yet-standardized PQC algorithms

Mike Ounsworth <Mike.Ounsworth@entrust.com> Thu, 04 May 2023 18:13 UTC

Return-Path: <Mike.Ounsworth@entrust.com>
X-Original-To: pqc@ietfa.amsl.com
Delivered-To: pqc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 09ED8C16953D for <pqc@ietfa.amsl.com>; Thu, 4 May 2023 11:13:01 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.095
X-Spam-Level:
X-Spam-Status: No, score=-2.095 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=entrust.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 31G2NKJRlrST for <pqc@ietfa.amsl.com>; Thu, 4 May 2023 11:12:56 -0700 (PDT)
Received: from mx08-0015a003.pphosted.com (mx08-0015a003.pphosted.com [185.183.30.227]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 2EA2AC16952D for <pqc@ietf.org>; Thu, 4 May 2023 11:12:55 -0700 (PDT)
Received: from pps.filterd (m0242863.ppops.net [127.0.0.1]) by mx08-0015a003.pphosted.com (8.17.1.19/8.17.1.19) with ESMTP id 344FMEGm001684; Thu, 4 May 2023 13:12:30 -0500
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=entrust.com; h=from : to : subject : date : message-id : references : in-reply-to : content-type : content-transfer-encoding : mime-version; s=mail1; bh=Ob6jJOQLTnzUzEiVwKgH7rNN5K03pMCqwZXrQHpaBjs=; b=L97aoTcp66NadOP3h3PqMw6esgZzKccjwHt8ByzPLwHY8IEWmQgHP3XOaMnyk+f3nIO2 WE5E+aL0hdUxzFPLZRMd6NwumBD5VM28qUJydOf6kU/7ecs3/StBIcucKhxAQzwuYVnP O35dq+T79fgXqCeGmYmT5G2Edyl5fR7N1X2mBfOdDOCTUey5gvBhY4O8NBI/HG9vVlMb Fa8+PaGCfSLEzEFnFiM7M3Qac3irO2F9K7qHD4LnTdL2S9dgB7Bu6JPig7KFMBxHqk+b e1wjf19Zcih6KhMI6WCfmig1VsO4UdpuUCD3P2TuxvT9SxEZwukU2pikKU0MDXS9gDGY EA==
Received: from nam12-mw2-obe.outbound.protection.outlook.com (mail-mw2nam12lp2042.outbound.protection.outlook.com [104.47.66.42]) by mx08-0015a003.pphosted.com (PPS) with ESMTPS id 3q8x7s49rw-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Thu, 04 May 2023 13:12:30 -0500
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=WCKUDz+qotCJlnG1qD6yqiU4MizjQnrPNV/upPqC+sU1cKJWBPDuzf08NBZTyGsDxvJbf2jXOnzLu7LtYiFqE6go2Lh650QtB2oqSnRiIv5nAPgSp2R64YGFAtFpkt/q1WQeJd/AmvVzIEom3SBVlOlhMKKUEKm0J6S0ViNYdUM8MFxuZoBczg8+0mqJqj4ojFRpcv51z/Fv5jo38TbN7Zti/nqvRjCuzt+O+cNag3YvAi0jFWzZrLYUTP/8fehbg9lICUZni8qFUsqU9hmgmZN8cx4pObBfPmh1XS2MhGYx3pLBjW4u+CWcjpV6H9BbtbtfX71ByGP2CzU/+kpqkQ==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=Ob6jJOQLTnzUzEiVwKgH7rNN5K03pMCqwZXrQHpaBjs=; b=MbNd3yc/oDDJVT4GzZ3PPrSpc529wIRA4zp7lSsP+7O5iD1lCH5sWweUxBm5a1oEbXvk6vqwxptEWQvBJ+oFpcQXX9boS1c6vfZviHwYpRYy+ZF0Yng54uQkd/5dr21atpEIxQZeG685szVMCicEaBggVKvFfwpUJdhasET2FZXv3rOPOCuMT0LGf02ntZXhuxA3kCs5YcWxVgfuTKg5oeBJeFUtSJjbEy8qPhJZYbJGJC/VWUpS7xqoUrhARssPlx6QiB6U/bA5LaTguw3gsm8D4g2FmQz6hAbiXA5APNzqBzCTYmPiBVQ451uz/mzstDFJsnnYkSrt6/3OtlyQPw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=entrust.com; dmarc=pass action=none header.from=entrust.com; dkim=pass header.d=entrust.com; arc=none
Received: from CH0PR11MB5739.namprd11.prod.outlook.com (2603:10b6:610:100::20) by MW5PR11MB5809.namprd11.prod.outlook.com (2603:10b6:303:197::6) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6340.30; Thu, 4 May 2023 18:12:27 +0000
Received: from CH0PR11MB5739.namprd11.prod.outlook.com ([fe80::6f08:9ebc:8857:74f7]) by CH0PR11MB5739.namprd11.prod.outlook.com ([fe80::6f08:9ebc:8857:74f7%6]) with mapi id 15.20.6363.026; Thu, 4 May 2023 18:12:27 +0000
From: Mike Ounsworth <Mike.Ounsworth@entrust.com>
To: "Kampanakis, Panos" <kpanos=40amazon.com@dmarc.ietf.org>, Paul Hoffman <paul.hoffman@icann.org>, "pqc@ietf.org" <pqc@ietf.org>
Thread-Topic: [Pqc] Listing pointers to not-yet-standardized PQC algorithms
Thread-Index: AQHZfhKPxSjIgBgV/EqK7LaUAq4eS69JWElAgAESr8A=
Date: Thu, 04 May 2023 18:12:26 +0000
Message-ID: <CH0PR11MB57399E0D4B51F064CE1FDCB79F6D9@CH0PR11MB5739.namprd11.prod.outlook.com>
References: <075469F4-5DC7-4EFC-ADD2-0BC22BA35BE9@icann.org> <84757b5a49094a08839ef8106b29d36b@amazon.com>
In-Reply-To: <84757b5a49094a08839ef8106b29d36b@amazon.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: CH0PR11MB5739:EE_|MW5PR11MB5809:EE_
x-ms-office365-filtering-correlation-id: 572390f0-0eee-4697-79d7-08db4ccb1e1a
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:CH0PR11MB5739.namprd11.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230028)(4636009)(39860400002)(396003)(376002)(366004)(346002)(136003)(451199021)(41300700001)(5660300002)(52536014)(8936002)(8676002)(55016003)(86362001)(83380400001)(38070700005)(2906002)(110136005)(66574015)(66899021)(9686003)(26005)(53546011)(966005)(122000001)(71200400001)(7696005)(6506007)(478600001)(33656002)(76116006)(66946007)(316002)(38100700002)(66556008)(64756008)(66476007)(66446008)(186003); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: entrust.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: CH0PR11MB5739.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: 572390f0-0eee-4697-79d7-08db4ccb1e1a
X-MS-Exchange-CrossTenant-originalarrivaltime: 04 May 2023 18:12:26.9883 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: f46cf439-27ef-4acf-a800-15072bb7ddc1
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: wMdc879OBePWaaHXHtjVJqGJRY1memmDR7B9jnDf5VvG85l2mqduWHtrmBbco/WJpfdWqxapOAP4jpdQav2ah6aLbPYTc4TeUjn4qlkRvyI=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MW5PR11MB5809
X-Proofpoint-ORIG-GUID: 9UY3qomZkqVBW1ar_d3r3HtvH6yfIDr9
X-Proofpoint-GUID: 9UY3qomZkqVBW1ar_d3r3HtvH6yfIDr9
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.254,Aquarius:18.0.942,Hydra:6.0.573,FMLib:17.11.170.22 definitions=2023-05-04_12,2023-05-04_01,2023-02-09_01
X-Proofpoint-Spam-Details: rule=outbound_notspam policy=outbound score=0 impostorscore=0 mlxlogscore=999 lowpriorityscore=0 malwarescore=0 adultscore=0 suspectscore=0 phishscore=0 spamscore=0 priorityscore=1501 clxscore=1011 mlxscore=0 bulkscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.12.0-2303200000 definitions=main-2305040147
Archived-At: <https://mailarchive.ietf.org/arch/msg/pqc/rfEsIg6qO7IfpEw91EARAG--HnM>
Subject: Re: [Pqc] Listing pointers to not-yet-standardized PQC algorithms
X-BeenThere: pqc@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Post Quantum Cryptography discussion list <pqc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/pqc>, <mailto:pqc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/pqc/>
List-Post: <mailto:pqc@ietf.org>
List-Help: <mailto:pqc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/pqc>, <mailto:pqc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 04 May 2023 18:13:01 -0000

I vote no also.

I see this list / github page as an index of *IETF* PQC work. Trying to document the PQC work in general beyond the IETF seems it is both not the IETF's responsibility, as well as a never-ending task.

---
Mike Ounsworth

-----Original Message-----
From: Pqc <pqc-bounces@ietf.org> On Behalf Of Kampanakis, Panos
Sent: Wednesday, May 3, 2023 8:58 PM
To: Paul Hoffman <paul.hoffman@icann.org>; pqc@ietf.org
Subject: [EXTERNAL] Re: [Pqc] Listing pointers to not-yet-standardized PQC algorithms

WARNING: This email originated outside of Entrust.
DO NOT CLICK links or attachments unless you trust the sender and know the content is safe.

______________________________________________________________________
I would vote no to both.

1. Crypto developers are following NIST's work and there are plenty of resources that explain what these algorithms are. I don't see a benefit in encyclopedically documenting something that have been documented many times before.

2. Frodo is in the LWE family. It is not RLWE or MLWE, so as a primitive it has less structure and could be assumed to be more conservatively secure, but it is in the lattice family like Kyber. The Frodo public key and ciphertext are pretty big. NIST's schemes offer better size-performance balance and math primitive family diversity. IETF should only go with primitives that make sense for use in its WGs. I am not sure I would pick Frodo over Kyber or BIKE in any use-cases. Personally, I expect and hope that European regulatory bodies will endorse NIST's primitives in the long run as well.



-----Original Message-----
From: Pqc <pqc-bounces@ietf.org> On Behalf Of Paul Hoffman
Sent: Wednesday, May 3, 2023 6:57 PM
To: pqc@ietf.org
Subject: [EXTERNAL] [Pqc] Listing pointers to not-yet-standardized PQC algorithms

CAUTION: This email originated from outside of the organization. Do not click links or open attachments unless you can confirm the sender and know the content is safe.



Greetings again. The grand list of pointers at <https://urldefense.com/v3/__https://github.com/ietf-wg-pquip/state-of-protocols-and-pqc__;!!FJ-Y8qCqXTj2!ZIRdEHgW2t4iPCMG1WwqGfi7XfFSSJA-XHtPiDAvekvmrUjKPca5jNo7729Pg7MdVdjIAsnpOsrJV60gByKQ6FAyyqPXQlbvY916$ > primarily lists Internet Drafts and RFCs.

We know that the protocols themselves are being developed elsewhere, primarily (but not exclusively) at NIST. NIST has said that it will publish standards for CRYSTALS-Kyber, CRYSTALs-Dilithium, Falcon, and SPHINX+ next year, and has more informally said that it will publish standards for other KEM finalists (Classic McEliece, BIKE, and HQC). Should this WG help let IETF developers know about these algorithms and their status at NIST; if so, how?

Those of us following the European PQC world know that there is still a lot of interest in some non-NIST algorithms, particularly FrodoKEM. FrodoKEM is being standardized in ISO. Should this WG let IETF developers know about these algorithms? If so, how do we bound this list to prevent us from promoting MyMostlyUnreviewedKEM without enough context?

--Paul Hoffman

--
Pqc mailing list
Pqc@ietf.org
https://urldefense.com/v3/__https://www.ietf.org/mailman/listinfo/pqc__;!!FJ-Y8qCqXTj2!ZIRdEHgW2t4iPCMG1WwqGfi7XfFSSJA-XHtPiDAvekvmrUjKPca5jNo7729Pg7MdVdjIAsnpOsrJV60gByKQ6FAyyqPXQj4jUzt_$

--
Pqc mailing list
Pqc@ietf.org
https://urldefense.com/v3/__https://www.ietf.org/mailman/listinfo/pqc__;!!FJ-Y8qCqXTj2!ZIRdEHgW2t4iPCMG1WwqGfi7XfFSSJA-XHtPiDAvekvmrUjKPca5jNo7729Pg7MdVdjIAsnpOsrJV60gByKQ6FAyyqPXQj4jUzt_$
Any email and files/attachments transmitted with it are confidential and are intended solely for the use of the individual or entity to whom they are addressed. If this message has been sent to you in error, you must not copy, distribute or disclose of the information it contains. Please notify Entrust immediately and delete the message from your system.