[saag] Update (-01) on Key Synchronization Protocol (KeySync)

Bernie Hoeneisen <bernie@ietf.hoeneisen.ch> Thu, 31 October 2019 21:11 UTC

Return-Path: <bernie@ietf.hoeneisen.ch>
X-Original-To: saag@ietfa.amsl.com
Delivered-To: saag@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 80B8312081B for <saag@ietfa.amsl.com>; Thu, 31 Oct 2019 14:11:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.897
X-Spam-Level:
X-Spam-Status: No, score=-1.897 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_NONE=0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id u-dUGCfeBiOT for <saag@ietfa.amsl.com>; Thu, 31 Oct 2019 14:11:13 -0700 (PDT)
Received: from softronics.hoeneisen.ch (softronics.hoeneisen.ch [62.2.86.178]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 359DE120090 for <saag@ietf.org>; Thu, 31 Oct 2019 14:11:13 -0700 (PDT)
Received: from localhost ([127.0.0.1]) by softronics.hoeneisen.ch with esmtp (Exim 4.86_2) (envelope-from <bernie@ietf.hoeneisen.ch>) id 1iQHip-0001yV-0s for saag@ietf.org; Thu, 31 Oct 2019 22:11:11 +0100
Date: Thu, 31 Oct 2019 22:11:11 +0100
From: Bernie Hoeneisen <bernie@ietf.hoeneisen.ch>
X-X-Sender: bhoeneis@softronics.hoeneisen.ch
To: saag@ietf.org
Message-ID: <alpine.DEB.2.20.1910312147090.25390@softronics.hoeneisen.ch>
User-Agent: Alpine 2.20 (DEB 67 2015-01-07)
MIME-Version: 1.0
Content-Type: text/plain; charset="US-ASCII"; format="flowed"
X-SA-Exim-Connect-IP: 127.0.0.1
X-SA-Exim-Mail-From: bernie@ietf.hoeneisen.ch
X-SA-Exim-Scanned: No (on softronics.hoeneisen.ch); SAEximRunCond expanded to false
Archived-At: <https://mailarchive.ietf.org/arch/msg/saag/sqm02wn4UUJWR0mtKDg65321U68>
Subject: [saag] Update (-01) on Key Synchronization Protocol (KeySync)
X-BeenThere: saag@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Area Advisory Group <saag.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/saag>, <mailto:saag-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/saag/>
List-Post: <mailto:saag@ietf.org>
List-Help: <mailto:saag-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/saag>, <mailto:saag-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 31 Oct 2019 21:11:16 -0000

Dear SAAG List

Please be informed that we have just submitted an update of the I-D on Key 
Synchronization Protocol (KeySync).

    This document describes the pEp KeySync protocol, which is designed
    to perform secure peer-to-peer synchronization of private keys across
    devices belonging to the same user.

https://tools.ietf.org/html/draft-hoeneisen-pep-keysync-01

The document is discussed on the medup@ietf.org list.

The topic of "Private Key Synchronization among different devices of a 
user" has drawn quite some interest among the security experts in the 
IETF. If considered useful, we could offer a short presentation on the 
KeySync protocol incl. a screencast of our running code, e.g. in the SAAG 
WG. We have not requested a slot with the chairs (yet), but would do, if 
several people expressed their interest within the next few days.


All the best
  Bernie

---------- Forwarded message ----------

[...]
A new version of I-D, draft-hoeneisen-pep-keysync-01.txt
has been successfully submitted by Bernie Hoeneisen and posted to the
IETF repository.

Name:		draft-hoeneisen-pep-keysync
Revision:	01
Title:		pretty Easy privacy (pEp): Key Synchronization Protocol 
(KeySync)
Document date:	2019-10-31
Group:		Individual Submission
Pages:		55
URL: 
https://www.ietf.org/internet-drafts/draft-hoeneisen-pep-keysync-01.txt
Status:         https://datatracker.ietf.org/doc/draft-hoeneisen-pep-keysync/
Htmlized:       https://tools.ietf.org/html/draft-hoeneisen-pep-keysync-01
Htmlized: 
https://datatracker.ietf.org/doc/html/draft-hoeneisen-pep-keysync
Diff: 
https://www.ietf.org/rfcdiff?url2=draft-hoeneisen-pep-keysync-01

Abstract:
    This document describes the pEp KeySync protocol, which is designed
    to perform secure peer-to-peer synchronization of private keys across
    devices belonging to the same user.

    Modern users of messaging systems typically have multiple devices for
    communicating, and attempting to use encryption on all of these
    devices often leads to situations where messages cannot be decrypted
    on a given device due to missing private key data.  Current
    approaches to resolve key synchronicity issues are cumbersome and
    potentially unsecure.  The pEp KeySync protocol is designed to
    facilitate this personal key synchronization in a user-friendly
    manner.