Re: [Pqc] PQC X.509 115 Hackathon

"Vaira, Antonio" <antonio.vaira@siemens.com> Thu, 13 October 2022 11:18 UTC

Return-Path: <antonio.vaira@siemens.com>
X-Original-To: pqc@ietfa.amsl.com
Delivered-To: pqc@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 00F8AC14CE40; Thu, 13 Oct 2022 04:18:45 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.106
X-Spam-Level:
X-Spam-Status: No, score=-2.106 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=siemens.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 6T0pHzC7F4zU; Thu, 13 Oct 2022 04:18:41 -0700 (PDT)
Received: from EUR02-AM5-obe.outbound.protection.outlook.com (mail-eopbgr00055.outbound.protection.outlook.com [40.107.0.55]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id BEA0DC14CE3F; Thu, 13 Oct 2022 04:18:40 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=D2fU8isajsBBRo405Y/WmVJ3m6HgOTF0GHlhq+drwtY70uXsRv7vftdAz8Q9R9LHyXsOKq0nhuwIi1zwWj0CYvlqAwYUfjhHLcxbHs4pa9Agv7KLNDHkd6ZFtt4fYJUeLoQFwyFGV6yHBvTbJqQ3XM/t0QDEJUfVbqqS7mpl9Jeus1Rjx4ZAo4hhs6LfXhhbK/3lyD+mi/UeLcAnNvX9xxw3eymcT7mtxj/NG2mF//pHHPxQhqYfFkVcIUqCVzydQkqzfedaoqwc6y9/n6ZqR34vMKW4heS4HfebMHUjcCkbpZJa1aznG0j6srBh5QqS3d9Twlc7SmbGNl1KxtGhhA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=Iivy+ilmpETA8xcLkgeSqAguPcLReTiVJSK1vIkJZ1Y=; b=BybNturXvsAEPC//2mKVOTuiiU7WVIoIoiM6YKRkrOqoVAzbY2Z/CMBrUA3mzp0J9MkrOTzIVFrxbcPBnIIhmdDzond1jLLGUacIVvawn5Z4h9TQWmcUgD0/+YCLpwAQjFMdTyeXHMk9vyqVF3T2SIwwjZsbPFq8fwEHEhGgVtJvyvqLaSa6VMY03c45pS5KmoHv+oJlT9QB6bN0URtp/gO7CaR6aG96qnd4Mt84Ni5/M0zZgtVJyX8Bw2qtwghslaM8ncS65A2qX8om3V5PSRUws9uV57Q4sWZcOa5i6igBUAjxiKAGo9CCXY4FZnB6zsNQeMp7qoCvYGpNIAS1oQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=siemens.com; dmarc=pass action=none header.from=siemens.com; dkim=pass header.d=siemens.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=siemens.com; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=Iivy+ilmpETA8xcLkgeSqAguPcLReTiVJSK1vIkJZ1Y=; b=vRfZ9e0dkcgh6MYmmNr6gp/CqvRo9YCu7zqt2NsEggS4f9JVrPsTYvi89gAxkLY23tXtodhKhYpbfW69Rj2t02jr6KxOiqMBr6q01Tc1ZgVTD5YPs/Ds56Ft22AtvLZQ8lMlW2eclaUNa81FLgZmJp5bOx935axQPelzUM9LL7sUg8pNABY8c3hQbJ7uDO3gupqouLpaNgkXA/9EEqCVBedogjMFIbDD9LtzrA/XGG8Mnf0KUppUPta0rmT4Dg1R2CDK7jsAi0X0B0SCP3XBTJS72ZM66mgSczRZy2GJuFuiRRcbEThai5Q8Ih+aIRwbE5+yWq3yiYy7uO1dWnX4XQ==
Received: from DU0PR10MB5244.EURPRD10.PROD.OUTLOOK.COM (2603:10a6:10:34c::22) by PAWPR10MB7247.EURPRD10.PROD.OUTLOOK.COM (2603:10a6:102:2ef::7) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5723.26; Thu, 13 Oct 2022 11:18:36 +0000
Received: from DU0PR10MB5244.EURPRD10.PROD.OUTLOOK.COM ([fe80::b79:60bb:a806:948d]) by DU0PR10MB5244.EURPRD10.PROD.OUTLOOK.COM ([fe80::b79:60bb:a806:948d%5]) with mapi id 15.20.5709.021; Thu, 13 Oct 2022 11:18:36 +0000
From: "Vaira, Antonio" <antonio.vaira@siemens.com>
To: "spasm@ietf.org" <spasm@ietf.org>, "pqc@ietf.org" <pqc@ietf.org>
CC: "Railean, Alexander" <alexander.railean@siemens.com>
Thread-Topic: PQC X.509 115 Hackathon
Thread-Index: AdjYVOXE6GpE7MN6R9W+NqLxsx9F5gGna/Pg
Date: Thu, 13 Oct 2022 11:18:36 +0000
Message-ID: <DU0PR10MB52445FEB57834C507228589DE0259@DU0PR10MB5244.EURPRD10.PROD.OUTLOOK.COM>
References: <CH0PR11MB5739E98B69C5AD88745F539E9F5D9@CH0PR11MB5739.namprd11.prod.outlook.com>
In-Reply-To: <CH0PR11MB5739E98B69C5AD88745F539E9F5D9@CH0PR11MB5739.namprd11.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: yes
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_Enabled=true; MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_SetDate=2022-10-13T11:18:34Z; MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_Method=Standard; MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_Name=restricted; MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_SiteId=38ae3bcd-9579-4fd4-adda-b42e1495d55a; MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_ActionId=4f92ec50-4971-4776-b6ee-eb746fba42b5; MSIP_Label_9d258917-277f-42cd-a3cd-14c4e9ee58bc_ContentBits=0
document_confidentiality: Restricted
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=siemens.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: DU0PR10MB5244:EE_|PAWPR10MB7247:EE_
x-ms-office365-filtering-correlation-id: 315c8a2f-4176-4bd8-b0af-08daad0cac55
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: HiukZKJoHQO9B8GFd/MtBU4+aSLbY7n9P4yPU8W3HjI4aQn1SEDD1z/2/52drzQmP0uhueczYZPLm7XlyNDj/esWMa8TEYE9uLZo604jc6dZJlvEq1bLEmvEKbQCCy6zicYnnSuJoct59gg4NP3WQMQ6FRMk3mOo5K72F0kTUqRKQJQrAQz4pwAYAcFtQUisMjO3+iy38U4530cP89BFJbKIgE3JTWNR8SeTL/UzN34NbIH09fCAPMxmNO9NaoC4vIy/m5ntvscOxuSVaAp47I/Bzze/gjHzAevfBcLF+YYWZA8cWjzNqVRqJ6DuHVf3pBPxJ5RhNNrVF0dl9UKNSPoUgA82LCGPVaxCP+7nrnP+31DT+998UBLtQOWYYEGtgsrA12JWzhBtyil/hdVnrPVtF9lpMrGXTZ0YxMEK+Lx+2vbxvq8qQEnaCAuvqaslWBHWNhmOWaqTtEMIRdGyMshYKFPyTFEf5EGGL1962nD9Rk9acEx4HrD7dnsUeS40cVmQhl1EdreVicSpi9HdFIixbRHgqNaxh4KZ2FTOsvKYUV6WomOpRmOyyi39wpXcN4l6jeknLGpMzvBF6CxR3zz6JqgG2qGd+gkV1nP2Mo9eYIgBtP0HPrGcapTLWgHQBXzkswVwAULRM+cTTvq2h92XHMZ3QgD2vuKA7ZNfRQyxidhheY5JNH2swl6TDazl3p7OQVB8GbbrjTGTIwf7wC5RHyyDME4vNlbuMjGLKsqVCxePT2f8xB6JTbfynPoXqedVoP7pYGEyY/aoTlj3ocWANXG6r7I38R+MUMVsYxA=
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DU0PR10MB5244.EURPRD10.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230022)(4636009)(136003)(376002)(346002)(39860400002)(366004)(396003)(451199015)(110136005)(316002)(478600001)(71200400001)(107886003)(66476007)(4326008)(8676002)(64756008)(66446008)(450100002)(76116006)(66556008)(66946007)(52536014)(9686003)(8936002)(9326002)(26005)(41300700001)(53546011)(186003)(5660300002)(7696005)(6506007)(2906002)(83380400001)(99936003)(122000001)(82960400001)(38070700005)(38100700002)(33656002)(55016003)(86362001); DIR:OUT; SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/related; boundary="_004_DU0PR10MB52445FEB57834C507228589DE0259DU0PR10MB5244EURP_"; type="multipart/alternative"
MIME-Version: 1.0
X-OriginatorOrg: siemens.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DU0PR10MB5244.EURPRD10.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-Network-Message-Id: 315c8a2f-4176-4bd8-b0af-08daad0cac55
X-MS-Exchange-CrossTenant-originalarrivaltime: 13 Oct 2022 11:18:36.8231 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 38ae3bcd-9579-4fd4-adda-b42e1495d55a
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: 6z+MPkcNN6REzPuyf+kdQrwRG13k2XnOhV94eZL35zbTh0SEt0VbVRokAbPXRHbJNPfOunNDfo+hCHUjloNlSUYRBbnCMyj8yCYEEEekc3s=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: PAWPR10MB7247
Archived-At: <https://mailarchive.ietf.org/arch/msg/pqc/x6bPWs_rTZX1D22TNT3ZqKkYAwo>
Subject: Re: [Pqc] PQC X.509 115 Hackathon
X-BeenThere: pqc@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Post Quantum Cryptography discussion list <pqc.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/pqc>, <mailto:pqc-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/pqc/>
List-Post: <mailto:pqc@ietf.org>
List-Help: <mailto:pqc-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/pqc>, <mailto:pqc-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 13 Oct 2022 11:18:45 -0000

Hi Mike,

my colleague Alex plans to join IETF 115 hackathon in person, if it shouldn't be possible then at least remotely.
The plan is to bring along a CMP RA and a CMP client, which support the lightweight CMP profile, and try to integrate them with a 3rd party CA. During the hackathon, if others come with CMP clients and CA that support PQ-certificates issuance, over any CMP flavor, we can attempt to update our RA to reach interoperability.

What do you think about our plan? Do you think the needed toolset will be available as well?

Many thanks

Antonio Vaira

Siemens AG
Technology
Research in Digitalization and Automation
Cybersecurity Technology
Security Architecture
T RDA CST SEA-DE
Otto-Hahn-Ring 6
Perlach
81739 Munich, Germany
Mobile: +49 (173) 3808580
mailto:antonio.vaira@siemens.com
www.siemens.com
[cid:image001.gif@01D8DF06.4BFFC200]
Siemens Aktiengesellschaft: Chairman of the Supervisory Board: Jim Hagemann Snabe; Managing Board: Roland Busch, Chairman, President and Chief Executive Officer; Cedrik Neike, Matthias Rebellius, Ralf P. Thomas, Judith Wiese; Registered offices: Berlin and Munich, Germany; Commercial registries: Berlin-Charlottenburg, HRB 12300, Munich, HRB 6684; WEEE-Reg.-No. DE 23691322

From: Spasm <spasm-bounces@ietf.org> On Behalf Of Mike Ounsworth
Sent: 05 October 2022 03:01
To: 'LAMPS' <spasm@ietf.org>; pqc@ietf.org
Subject: [lamps] PQC X.509 115 Hackathon

Hi LAMPS and people interested in PQC!

As suggested at 114, my colleague John Gray and I would like to do a 115 Hackathon on PQ keys and signatures in X.509 / PKIX.

We are suggesting to play with Dilithium, Falcon, Sphincs+, and Composite signing algorithms in Certs, CRLs, CSRs, PKCS#12s, CMS SignedData, maybe OCSP Responses, maybe Timestamping, maybe CMP. We can bring: the Entrust Toolkit (which we can hack at), Bounce Castle, OpenQuantumSafe-openssl, OpenCA (easier if Max Pala is there, but we can probably figure out how to build it).

The point of the hackathon, I think, is going to be OIDs, and public key / private key formats (ex.: the differences between Dilithium and Falcon encodings in draft-uni-qsckeys, and draft-massimo-lamps-pq-sig-certificates).



Question 1: are others interested in joining us at the hackathon? (no point is signing up for a hackathon spot if we're the only ones there)

Question 2: whether or not you're joining, what PQ X.509 / PKIX things would you like to see working with Dilithium, Falcon, Sphincs+, Composite?


---
Mike Ounsworth
Software Security Architect, Entrust

Any email and files/attachments transmitted with it are confidential and are intended solely for the use of the individual or entity to whom they are addressed. If this message has been sent to you in error, you must not copy, distribute or disclose of the information it contains. Please notify Entrust immediately and delete the message from your system.