Re: [secdir] secdir review of draft-moonesamy-sshfp-ed25519-01

Stephen Farrell <stephen@tolerantnetworks.com> Fri, 30 May 2014 22:42 UTC

Return-Path: <stephen@tolerantnetworks.com>
X-Original-To: secdir@ietfa.amsl.com
Delivered-To: secdir@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E78B91A0673; Fri, 30 May 2014 15:42:40 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Dve8PUHKguq3; Fri, 30 May 2014 15:42:39 -0700 (PDT)
Received: from mercury.scss.tcd.ie (mercury.scss.tcd.ie [134.226.56.6]) by ietfa.amsl.com (Postfix) with ESMTP id 405B81A024B; Fri, 30 May 2014 15:42:38 -0700 (PDT)
Received: from localhost (localhost [127.0.0.1]) by mercury.scss.tcd.ie (Postfix) with ESMTP id 6C173BED7; Fri, 30 May 2014 23:42:33 +0100 (IST)
X-Virus-Scanned: Debian amavisd-new at scss.tcd.ie
Received: from mercury.scss.tcd.ie ([127.0.0.1]) by localhost (mercury.scss.tcd.ie [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id Yn1gSdwekDXK; Fri, 30 May 2014 23:42:32 +0100 (IST)
Received: from [10.87.48.12] (unknown [86.42.20.19]) by mercury.scss.tcd.ie (Postfix) with ESMTPSA id 1FFEBBED6; Fri, 30 May 2014 23:42:32 +0100 (IST)
Message-ID: <53890957.3090407@tolerantnetworks.com>
Date: Fri, 30 May 2014 23:42:31 +0100
From: Stephen Farrell <stephen@tolerantnetworks.com>
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:24.0) Gecko/20100101 Thunderbird/24.5.0
MIME-Version: 1.0
To: S Moonesamy <sm+ietf@elandsys.com>, "Joseph Salowey (jsalowey)" <jsalowey@cisco.com>
References: <2ACBFFE4-BCEB-4F6D-A2D3-861BADF543DE@cisco.com> <6.2.5.6.2.20140530040300.0bb93070@elandnews.com> <D1342262-144C-4939-B005-5E042CAF7394@cisco.com> <20140530141618.kgnw4u9b4gw80o4s@webmail.mit.edu> <6.2.5.6.2.20140530114625.0c0d1aa8@elandnews.com> <868A3427-6B46-4110-8D4B-45857D260C1D@cisco.com> <6.2.5.6.2.20140530135131.0c7bdba0@elandnews.com>
In-Reply-To: <6.2.5.6.2.20140530135131.0c7bdba0@elandnews.com>
X-Enigmail-Version: 1.6
Content-Type: text/plain; charset=ISO-8859-1
Content-Transfer-Encoding: 7bit
Archived-At: http://mailarchive.ietf.org/arch/msg/secdir/0r-3fEapNkvTxzh8MQPty0k2xEE
X-Mailman-Approved-At: Fri, 30 May 2014 15:44:27 -0700
Cc: iesg@ietf.org, secdir@ietf.org, ietf@ietf.org, draft-moonesamy-sshfp-ed25519.all@tools.ietf.org
Subject: Re: [secdir] secdir review of draft-moonesamy-sshfp-ed25519-01
X-BeenThere: secdir@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: Security Area Directorate <secdir.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdir>, <mailto:secdir-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/secdir/>
List-Post: <mailto:secdir@ietf.org>
List-Help: <mailto:secdir-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdir>, <mailto:secdir-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 30 May 2014 22:42:41 -0000


On 30/05/14 23:22, S Moonesamy wrote:
> Hi Joe,
> At 13:42 30-05-2014, Joseph Salowey (jsalowey) wrote:
>> [Joe] My concern is that there is not enough information in the draft
>> to know what goes into the hash that is the subject of the code point
>> assignment.  Perhaps it is obvious to someone who implemented the SSH
>> code that is not documented in this draft, but it is not obvious to me
>> as a reader of the draft.
> 
> That's a fair point.  I propose adding the following text in Section 2
> as a warning to the reader:
> 
>   The format of the ED25519 public key with SHA-256 fingerprint is
>   not documented in an authoritative specification.

Why? Why not just look at the code and write down what that does
in terms of formatting the input.

If >1 implementation interoperates it can't be that hard.

S.

> 
> Regards,
> S. Moonesamy