Re: [saag] SSH & Ntruprime

Stephen Farrell <stephen.farrell@cs.tcd.ie> Wed, 10 April 2024 15:09 UTC

Return-Path: <stephen.farrell@cs.tcd.ie>
X-Original-To: saag@ietfa.amsl.com
Delivered-To: saag@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7C4B7C14F714 for <saag@ietfa.amsl.com>; Wed, 10 Apr 2024 08:09:41 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.998
X-Spam-Level:
X-Spam-Status: No, score=-1.998 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=cs.tcd.ie
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id fduLYn1A0_uj for <saag@ietfa.amsl.com>; Wed, 10 Apr 2024 08:09:37 -0700 (PDT)
Received: from EUR02-AM0-obe.outbound.protection.outlook.com (mail-am0eur02on2109.outbound.protection.outlook.com [40.107.247.109]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1A986C14F61B for <saag@ietf.org>; Wed, 10 Apr 2024 08:09:36 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=lz/lZpaZmoJcF7GtHQXP7AGrdVFxP+ulT8gys9Wcoy3Xs538GmveXnv1tcsN6yz+9RsDJiotnyMl2Zs+rXf7q7JfLcCHxDWVcerT6s6cNNcSYU6tsy2GWTn3+kemZE4GY64Av+y+LhGq7ejGlZ9BRKERXB6iWkND74C3+efpd7YLmJ78Zaisx3nVR9jZ0fKEHFHZUkhKQSAzMVLsw9Dz0/L6FuQAsqZVWo4nUCIdnJzzqm5KWwjtsNPyAqg2JVvp+AKmQfoZi4mKGpJj8EtwWVtq4Y/F9y6ALz67FgWg0Awi7w1qqpIG4aq4KA6PTq3Hrko4hVpHJ8X8iUfSLYZlgg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=3FEhDJxoBQOp6PlQdthdIx0prTGjowxTDAMpPseF0CU=; b=cKxTkUjPWEceSFdOjJrechCXN4FuniY5C5F3QHrQDFrabFbVrceEnlJ3at0E6F99w8SL0f+k42nTj0vOpSB5B25P6DRuRLPtlym0F+vI74AwKnyxU+TTKRbItNG5b2X8Pp00oL0k4VoO2MTrjl4TPkB0qd47wQAxib0rbUyiYN9CF6QkzUKmw0Xx83TOKyEKa0zF1f08Cx1QPX7v+aApAdsoTwmNS7sSkyPnft8zW2pt4ORu8xoCbrIx5ZHXmrn4eUDYP71HFHE0HDVB7JxGpAQYg7OiOaaRW5fzsp6YEHDt+WlNGMrLmCDB1viuYATyGtGfeT9MJerCCZMXC3PhfQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cs.tcd.ie; dmarc=pass action=none header.from=cs.tcd.ie; dkim=pass header.d=cs.tcd.ie; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cs.tcd.ie; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=3FEhDJxoBQOp6PlQdthdIx0prTGjowxTDAMpPseF0CU=; b=cHvxQ/METoNVsXnQtoeKT4vxxDg/jPKpKPSAGJfNCACJzFbSiJadXzzrX54Ockg/32DAoS+NojGYoc1d3QG/1bPakb1z/E+A2PUVCjaKuv8To1wlR/jqWs2imN4QoixMPM8JLrgUwpPkqxvJtjeZ/i5D4rvKKkz1MiO7kOAoUq2IkjXGz9iEoyORUCiaYCY7PoCOPy1X/HGfSeOOu1L+8f5XSLo4J4WCZZU0k/xZcRY5Bv1SNZ2BXDojQMr5d77Ux9zhEYnb5rz8J8wZsy9x8p2L7MobISb/itjQsDiRRDZ1ycMFtflVNejN2GhYD7Qcy5KdAADcLh3g2ADoPB7RJQ==
Received: from DB7PR02MB5113.eurprd02.prod.outlook.com (2603:10a6:10:77::15) by DBBPR02MB10889.eurprd02.prod.outlook.com (2603:10a6:10:53b::16) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.7409.53; Wed, 10 Apr 2024 15:09:32 +0000
Received: from DB7PR02MB5113.eurprd02.prod.outlook.com ([fe80::4421:1ca6:59b4:20c9]) by DB7PR02MB5113.eurprd02.prod.outlook.com ([fe80::4421:1ca6:59b4:20c9%7]) with mapi id 15.20.7409.053; Wed, 10 Apr 2024 15:09:32 +0000
Message-ID: <d2bd2378-4de4-4426-b2f4-fbcff6de5d2a@cs.tcd.ie>
Date: Wed, 10 Apr 2024 16:09:30 +0100
User-Agent: Mozilla Thunderbird
To: Eric Rescorla <ekr@rtfm.com>, Simon Josefsson <simon=40josefsson.org@dmarc.ietf.org>
Cc: Paul Wouters <paul.wouters=40aiven.io@dmarc.ietf.org>, saag@ietf.org
References: <05D73B77-ECFB-43E9-A2A8-00D46F63FC32@aiven.io> <20240405162821.1801419.qmail@cr.yp.to> <CAGL5yWaJXRDyiQ=w2XJcoFhCQ3JDriqO+jAcOKz7J4kW2PY=uw@mail.gmail.com> <87o7ahzi8c.fsf@kaka.sjd.se> <CABcZeBO-_k3pTsLAqOm3c5F8Cnbnd1mtdpuaoQicoCRBLPZLLg@mail.gmail.com>
Content-Language: en-US
From: Stephen Farrell <stephen.farrell@cs.tcd.ie>
Autocrypt: addr=stephen.farrell@cs.tcd.ie; keydata= xjMEY9GzphYJKwYBBAHaRw8BAQdAo6JvjmSbxHdQWPZdvciQYsHhM1NxQBU398Mmimoy4p7N M1N0ZXBoZW4gRmFycmVsbCAoMjU1MTkpIDxzdGVwaGVuLmZhcnJlbGxAY3MudGNkLmllPsKQ BBMWCAA4FiEEMG54R8tZDyZFrDOn5Njp+ZeoM90FAmPRs6YCGwMFCwkIBwIGFQoJCAsCBBYC AwECHgECF4AACgkQ5Njp+ZeoM93bogEA25ElRyX0wwg+kGEN1AoL60MoZfvQZ/VtmXY6IC5j +csBAIBpkL5ySuzJK2zLNZn9qQGht8IaUcA7cvDcLvS2uHUEzjgEY9GzphIKKwYBBAGXVQEF AQEHQILCPWOwW36e8D3pY8GmvvtItIT+A5uV80ist+WokVsQAwEIB8J4BBgWCAAgFiEEMG54 R8tZDyZFrDOn5Njp+ZeoM90FAmPRs6YCGwwACgkQ5Njp+ZeoM92bcAEA8R+8cpqRUIS+SoAN iO05xE6O/wEx8/e88BqzAYki3SoBAOQdwiPX+MQrAxkWD8xxOsdMOAtxYKpkD1n8aPJUw6QJ
In-Reply-To: <CABcZeBO-_k3pTsLAqOm3c5F8Cnbnd1mtdpuaoQicoCRBLPZLLg@mail.gmail.com>
Content-Type: multipart/signed; micalg="pgp-sha256"; protocol="application/pgp-signature"; boundary="------------fdZhYvtpNQdBlkESCcKVc0T8"
X-ClientProxiedBy: DUZP191CA0056.EURP191.PROD.OUTLOOK.COM (2603:10a6:10:4fa::14) To DB7PR02MB5113.eurprd02.prod.outlook.com (2603:10a6:10:77::15)
MIME-Version: 1.0
X-MS-Exchange-MessageSentRepresentingType: 1
X-MS-PublicTrafficType: Email
X-MS-TrafficTypeDiagnostic: DB7PR02MB5113:EE_|DBBPR02MB10889:EE_
X-MS-Exchange-SharedMailbox-RoutingAgent-Processed: True
X-TCD-Routed-via-EOP: Routed via EOP
X-TCD-ROUTED: Passed-Transport-Routing-Rules
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DB7PR02MB5113.eurprd02.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230031)(376005)(366007)(1800799015); DIR:OUT; SFP:1102;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: haJ54uw9/sTS3ENvssqerGVqu3lx/qts6S3Ky6fASnrNt68GRCsU1AmbRL9yDPgAK+o4h5DbOootZas6rZmxQ+Ca+qJuy8/fbY/Dd2gBtYj4JQtTuJcctQDiaI487yIsPreoUYMoZF7PyNSBiik5fpKfoFJOnbpR1oMA0uOPljYHJyLpQaem8+MxzG2LOcg83TJav+Rhf5IER23AyK7z47qfCrSdehce+jsPh1oiuasDHtUT3NpzFhccUYG03bShtnR7IJ3URgZE5Km7fqyH/ySjGDTTZEKSzKyLF6s73LnRc7n/l9krzWFeyIAY63Sq5bR1sq3WGDeWJngATm2BHBWIf63K87lt41qCZlAGAbszGwge7yRx1hMV+7j1VChstqxbtya84IKMPDZu4JpnUE1KSzXqlKFNhWVTh8Rp7Wh+yRRvFoeN1MsUIuTibYkaB8WxKy9aWwjVGGgbUdqDyQbLaE980q1U8uBwp6e6zgdKAXC/w+97kkrkMywIScbswcFNZ8sACluPyGN4TuJKhQdkqDhTFG2510depOeQITjX79xF2MFe/2cZOu/LJghQyE9LGXzuQRGlMSGu+cD+TNl7df3MlWzqjFhlPU6W4aDJfYXmLkH7KYwexA0mRDW/EPYlgCZ4Mdpbt/uPRp7efZU5UUYS2/xNxy5VRFNnTXrYD2v1qeTYavAmwEgBd86aVV00vPm/kk8/ZfKH3cMCQtYHkVk0HwxT32PW+aP6axzvoVAhtb8lgJROzsukLNMZlQut0ajYGXL/M+Ns+ly62F9r/FIW+dguqRaPJyF0lcjySm4v6UwVFmnnFyKimJRppxc7BQjzb6C42fheSBZ720moHSj0PcXgTyF67vEDM3Yc81YvNURiVVPIImwIbgd2jE1BI8U2Gq58ID6Fg3i4Yus15uPGCZqQVYleW0Jwimo6sCna30f8BfHlZvKLRrxtoaSV/Uwe1DjN6wu5jmXu2HFCJCObNKagaqpQtsWnuaer4mcQo5HwiUmbnBb9gL9WZI3bZWpg4Frk0H/lHWWuloZX3dhv1JHJfFAHZoExJFNo52nTKuDPkSvdguOyn3GlA66gHSEdVPwiWGP2+iWsspxM4un4vfVUfnTFRAAh6QcEDeCLYJYtQuBRgFXdY0M2silsJeNpzQf0N1ydsE0v2QMEqrqN0ifuHbUZ9GqaEeeWtpA/gpw30dbF7Ti4mB8Sf8Gu9FRCdjc/P5fWAp6Ko68mBmJ6gOpfa68euEOizH2bgr+r4mDF6BHbmo2mSXDwo4N0kkD+M9mbq6v4IUox2lFPwD21eZHBCjesQRuaF64zi/nCKV6LQppNXB/hYZ3kMOzp/+b8iAcS+E/cjPOg5f7bSdKMXFeWAmO1Pu/+aHlRG0B3KoR8Fjm8T8zcvxXyjRU8fvJWIVqghYQV5nJQH5eewVOFH+I39ASHm9bQz2rvj+ySFajQiA2mozb17NV+x6HUXzwG3rpGOoPkJLmGn+MqD2/g1jO4azWmcsZdj+0TO6tsotoFIJ02VoZAmQcoCWYc3/ODH2PBmq564Veiz7xB34egxqjb4JF+NQ/kxv3R2DKseBKpn/dnkZl+Jf2J
X-OriginatorOrg: cs.tcd.ie
X-MS-Exchange-CrossTenant-Network-Message-Id: 5a8cc706-ae0b-4b5c-956d-08dc59703a08
X-MS-Exchange-CrossTenant-AuthSource: DB7PR02MB5113.eurprd02.prod.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 10 Apr 2024 15:09:32.6175 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: d595be8d-b306-45f4-8064-9e5b82fbe52b
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: FFoLqqtaTsZ21aEwldtSeQr39BUmV1KsTzbPXt0/MBvICbHWa1636IzIrgzUJAvW
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DBBPR02MB10889
Archived-At: <https://mailarchive.ietf.org/arch/msg/saag/Xwokizjj1bHzXiwI-mLPszBDvC4>
Subject: Re: [saag] SSH & Ntruprime
X-BeenThere: saag@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Security Area Advisory Group <saag.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/saag>, <mailto:saag-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/saag/>
List-Post: <mailto:saag@ietf.org>
List-Help: <mailto:saag-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 10 Apr 2024 15:09:41 -0000

Hiya,

On 10/04/2024 14:36, Eric Rescorla wrote:
> I think perhaps this is the source of our difference of opinion; the IETF's
> job is not to*document*  protocols but to develop and standardize them.

That may well capture the reason for different opinions,
but, in this case, SSH is an important Internet protocol
that has previously been documented in RFCs and that has
had an IETF WG, so I think we'd be pretty unwise to push
away people who'd like to document changes to that protocol,
esp when the whole pq thing is in such flux.

S.