Re: [quicwg/base-drafts] Change Packet Number Gap to Packet Number Offset (#1307)

MikkelFJ <notifications@github.com> Fri, 20 April 2018 18:43 UTC

Return-Path: <noreply@github.com>
X-Original-To: quic-issues@ietfa.amsl.com
Delivered-To: quic-issues@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1D736127863 for <quic-issues@ietfa.amsl.com>; Fri, 20 Apr 2018 11:43:56 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -8.009
X-Spam-Level:
X-Spam-Status: No, score=-8.009 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_IMAGE_ONLY_32=0.001, HTML_MESSAGE=0.001, MAILING_LIST_MULTI=-1, RCVD_IN_DNSWL_HI=-5, SPF_PASS=-0.001, T_DKIMWL_WL_HIGH=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=github.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id kXxeH_Bul1fC for <quic-issues@ietfa.amsl.com>; Fri, 20 Apr 2018 11:43:54 -0700 (PDT)
Received: from out-5.smtp.github.com (out-5.smtp.github.com [192.30.252.196]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 309D71200F1 for <quic-issues@ietf.org>; Fri, 20 Apr 2018 11:43:54 -0700 (PDT)
Date: Fri, 20 Apr 2018 11:43:53 -0700
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=github.com; s=pf2014; t=1524249833; bh=zFrfD0LbpDyHxbvtdRsh3uFmFF3eQMxs7A9ZUjlaesE=; h=Date:From:Reply-To:To:Cc:In-Reply-To:References:Subject:List-ID: List-Archive:List-Post:List-Unsubscribe:From; b=Wjl79jEOq1Mn+LhCyfdoPkX8UCBDuGWxOiazzZfI3bk7TWZXjUujsXZ7AeZA2ml0k /Ed48IX/am0UBdoPpvpRPx4rprtFexQj/MWW4e7aECuSAx+NmYRsy2r1Q2uggsW3Bz M4Wz0IWEaS0Uuy5X8EBv28FF0wbJwY20kHSAJzF0=
From: MikkelFJ <notifications@github.com>
Reply-To: quicwg/base-drafts <reply+0166e4abfb3c652449ff52965ed4af46c0c8172458e439f992cf0000000116f1f6e992a169ce12d68139@reply.github.com>
To: quicwg/base-drafts <base-drafts@noreply.github.com>
Cc: Subscribed <subscribed@noreply.github.com>
Message-ID: <quicwg/base-drafts/pull/1307/c383187307@github.com>
In-Reply-To: <quicwg/base-drafts/pull/1307@github.com>
References: <quicwg/base-drafts/pull/1307@github.com>
Subject: Re: [quicwg/base-drafts] Change Packet Number Gap to Packet Number Offset (#1307)
Mime-Version: 1.0
Content-Type: multipart/alternative; boundary="--==_mimepart_5ada34e9246b4_38d82ac0e2e2af5425397"; charset="UTF-8"
Content-Transfer-Encoding: 7bit
Precedence: list
X-GitHub-Sender: mikkelfj
X-GitHub-Recipient: quic-issues
X-GitHub-Reason: subscribed
X-Auto-Response-Suppress: All
X-GitHub-Recipient-Address: quic-issues@ietf.org
Archived-At: <https://mailarchive.ietf.org/arch/msg/quic-issues/tXPR2dHnBpka--ceWUkv8VlLw3U>
X-BeenThere: quic-issues@ietf.org
X-Mailman-Version: 2.1.22
List-Id: Notification list for GitHub issues related to the QUIC WG <quic-issues.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/quic-issues>, <mailto:quic-issues-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/quic-issues/>
List-Post: <mailto:quic-issues@ietf.org>
List-Help: <mailto:quic-issues-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/quic-issues>, <mailto:quic-issues-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 20 Apr 2018 18:43:56 -0000

> if you switched keys because you used a new CID to probe, what key do you use back on the original path while you wait for the probe to complete?

I forgot about my own proposal: No, rekeying is not needed for each new CID. The segmented packet number idea means that each CID is given an internal incremental high bit value. So the IV is the CID counter + the visible PN, permutated or not. Hence the AEAD can last much longer than CID's

However, for the sake of privacy, you need to do a a high bit increment for each CID, but that is also very cheap.

-- 
You are receiving this because you are subscribed to this thread.
Reply to this email directly or view it on GitHub:
https://github.com/quicwg/base-drafts/pull/1307#issuecomment-383187307