[saag] SSH & Ntruprime

Loganaden Velvindron <loganaden@gmail.com> Fri, 22 March 2024 11:32 UTC

Return-Path: <loganaden@gmail.com>
X-Original-To: saag@ietfa.amsl.com
Delivered-To: saag@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 70D9CC1DFD2B for <saag@ietfa.amsl.com>; Fri, 22 Mar 2024 04:32:37 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.608
X-Spam-Level:
X-Spam-Status: No, score=-3.608 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SHORT_SHORTNER=1.999, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, TONOM_EQ_TOLOC_SHRT_SHRTNER=1.499, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id RsX1NyTXSUXT for <saag@ietfa.amsl.com>; Fri, 22 Mar 2024 04:32:33 -0700 (PDT)
Received: from mail-lj1-x22c.google.com (mail-lj1-x22c.google.com [IPv6:2a00:1450:4864:20::22c]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 9C9FFC19ECBC for <saag@ietf.org>; Fri, 22 Mar 2024 04:32:33 -0700 (PDT)
Received: by mail-lj1-x22c.google.com with SMTP id 38308e7fff4ca-2d28051376eso39887341fa.0 for <saag@ietf.org>; Fri, 22 Mar 2024 04:32:33 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1711107151; x=1711711951; darn=ietf.org; h=to:subject:message-id:date:from:mime-version:from:to:cc:subject :date:message-id:reply-to; bh=fYsB/u59DIS2djamDfSJHpVReqpmZgWVHawKjP2fiXc=; b=kSCWaTAh5Lxdht7FVsXXU/tiaKp++qoos9A7m6v8oIWHqR/s7KTXrpZonPY9V6ZG0v I2NDVkiHJYlp4fVt+pCE4z+GPqnwHQqBli8Uh4xzq19eFPKz6fcnhMdBDCQuRjmqAqy2 8KhKRoJp2wWp2r6aKF13TgveAd+gwwhnnKHfbnbAJJtZzDYDvpr29gddfXdxNMf0drQb pvCDEsPfzj9TndKgWBiErbPqEnWtFpjyDHqbyO06tJIVCcoeX/3M2vVCRpmPcyvBW0k5 qFrkQt3Odj9hEzNQsYtyG6EW1rvRab4a+/mM2q5AR18eE4zCfLdLrl2WpKU3VJNFfEcj 0+RQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1711107151; x=1711711951; h=to:subject:message-id:date:from:mime-version:x-gm-message-state :from:to:cc:subject:date:message-id:reply-to; bh=fYsB/u59DIS2djamDfSJHpVReqpmZgWVHawKjP2fiXc=; b=X2tag+dQE2YTndXJhxI+X3YDVFRK0azqCZjM+H+dOwt8yXdnxEDC3TBn0Kyn6PR+X2 Vm4oL6USbhCIiZGN8bJD6o9oA6Rv0S7Y+I8sRnsFoVvmdY4ZV2zLgMw0X/NkSRbRayqM ojkqMTCNJqTHRMwqPmToRZrWFDl38kSDIPrz1Ns9w/+dNMypciCZNhvh7D0SAGwjPqtc 6vDqocrfm0krg9kGmcPnn2gtpRGVbu0C8UBpC7TtQd159qGgF6dks7p9rgqexPFinkxi TAFGCB4dcinmVm00bgpHviN/58c+oK1a2XAkx/85Is3ZqUpm3jTN5ksNlkQs8UFaUei9 98dQ==
X-Gm-Message-State: AOJu0YwqnZ6HWOY9xSFjHYFhtO43wpispv+zJnO0hpvNn3TP3hx6Jm+1 3BFvCLCFmTZOUFkc4gOTalo/sIZCwz/wOiRDmitZvI9ghJ5DC0nvbicvUxyDUTCGWM3yn4yW5Fw Bb+LI3tyKfRayVpNgX2bE62OsplACUW7IJ5GleA==
X-Google-Smtp-Source: AGHT+IHU1vYpiyWtetCVC2MtL6ChuW/PyFhanTyPQTVYdGT2ugUjdD8JSXWwW3ajixYBXFRPHRgpA/NRG1vFx5vO9cU=
X-Received: by 2002:a2e:7e12:0:b0:2d4:94eb:e9fe with SMTP id z18-20020a2e7e12000000b002d494ebe9femr2053652ljc.21.1711107150385; Fri, 22 Mar 2024 04:32:30 -0700 (PDT)
MIME-Version: 1.0
From: Loganaden Velvindron <loganaden@gmail.com>
Date: Fri, 22 Mar 2024 15:32:17 +0400
Message-ID: <CAOp4FwTpJD4GmgcPU1N-JccSZvhSTVd4x3TkZHXRpXdrM37iQA@mail.gmail.com>
To: saag <saag@ietf.org>
Content-Type: text/plain; charset="UTF-8"
Archived-At: <https://mailarchive.ietf.org/arch/msg/saag/WTPLc60EOamzg9HHSqEDiLmaz5c>
Subject: [saag] SSH & Ntruprime
X-BeenThere: saag@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Security Area Advisory Group <saag.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/saag>, <mailto:saag-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/saag/>
List-Post: <mailto:saag@ietf.org>
List-Help: <mailto:saag-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 22 Mar 2024 11:32:37 -0000

Hi All,

I went through SAAG minutes, and I noticed that the crypto panel
decided that this should not be standardized.

https://datatracker.ietf.org/doc/draft-josefsson-ntruprime-ssh/

OpenSSH publicly stated that they will keep offering
curve25519+sntrup761 even after ml-kem is standardized.

Several SSH implementations also support this. Is it a good idea that
de-facto widespread adoption is not at least documented in a RFC ?

Saag youtube video:
https://youtu.be/pTUvyVxPGYw?t=1474