Re: [Secdispatch] IETF 114 Session Request - Post Quantum Hybrid Terminology

Florence D <Florence.D@ncsc.gov.uk> Fri, 08 July 2022 10:07 UTC

Return-Path: <Florence.D@ncsc.gov.uk>
X-Original-To: secdispatch@ietfa.amsl.com
Delivered-To: secdispatch@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1DFFCC157B59 for <secdispatch@ietfa.amsl.com>; Fri, 8 Jul 2022 03:07:42 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.53
X-Spam-Level:
X-Spam-Status: No, score=-3.53 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.745, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FROM_GOV_DKIM_AU=-0.677, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=ncsc.gov.uk
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id tuWHun7IOnTZ for <secdispatch@ietfa.amsl.com>; Fri, 8 Jul 2022 03:07:38 -0700 (PDT)
Received: from GBR01-LO2-obe.outbound.protection.outlook.com (mail-lo2gbr01on2126.outbound.protection.outlook.com [40.107.10.126]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4AD8BC14F748 for <secdispatch@ietf.org>; Fri, 8 Jul 2022 03:07:37 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=LKIhc97HQC56JmdqP85uyyEyObO5Q7w4/khmCA067i0IKFgT3IcwdWwg7pxTPdga5pyIOnzOrwstX6S2+7vbGUMMX8Xdm6LwcSax6XwGTTOkmj7L4sAk8wU0h2BVR0kdKJgGMFAMeBZT+OkyQ9araPm3YJlWLWM7mr92dyk3yRca2aI6ydO5lPCzL7x6cp6EhKSfDciRQHUtBzQQ6AP4QyN9Q5M61wEXNyqZRaG0YPiLb4nONRkgr1P/gGv8jsszlGJs2gvKAKYksw4Mz3LlnSmVHvIZWwLNUtJBGCqB1VbKF/uu2e+ZoMYTwIIYsPWHBcEg41/czYumMfoWwNpuJw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=HpF/EKNvRSEO5kvPcaKBAYQLUG+WSxI4EVkbHQwfNMs=; b=Wwh3iCF+rZjG+PDpaMOqOhESwRBt9W1mRbVYmOG4WSO9A6qigw3yz+Rd40DMIczhij8Fw5JyVYp0ujAtwbLzkvRVq1sBedH1Em+25USb6S+GhS20uILz//6aq5WMzK2o/TH2mogM6AHwTUFpssKt0iIX+iaWnrU0t4gr82jVemVZNDsCP+2P+FJ35wyZ/HFA+uHwKfOzjTblGK6+csgefsfy6PBeR/JGQu7e2JYE0PaZsE3XZXtsw9WZoa2YccgrrYxeurOjBeiHC2aD/Z9ekO2TBWSJJHA4ayZXLFAoW6B82tqYYJdJFj+Fmstejx4X0NEY853SVamfOZaM9Bb3Rg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ncsc.gov.uk; dmarc=pass action=none header.from=ncsc.gov.uk; dkim=pass header.d=ncsc.gov.uk; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ncsc.gov.uk; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=HpF/EKNvRSEO5kvPcaKBAYQLUG+WSxI4EVkbHQwfNMs=; b=RYiNQ2qGMz8h6VhdRRnPGaui9LdJVjSVvpP/zIswq+saTge0wPLSZEArCYt5w/Zg20QepyvSplrH3zcFKK2FI5FmieQ5u2k8vESUBUDmbBPuhZcDSL49sEBRgpKPpsZE8o/h7B3r/eLv9QnmtSO3q3VnI472DxrrWDbT9wafP7fc5rRP3C8J5tX0MvwTGoRB3pm5tJxtALkmz6WAAKGqCpcvVv5EOTS58/v+E8lMR2aHrs13+m7sAAhok0NpeS3r2Y4XPkN66iMFJeuMlI5hphSxxBj/2Gg60oWJvEgh8Q18+IT99IgSeaJNYWPaIxZdMBfjmxjz3A7rzMc3g+UzGQ==
Received: from LO0P123MB4041.GBRP123.PROD.OUTLOOK.COM (2603:10a6:600:181::5) by LOYP123MB3214.GBRP123.PROD.OUTLOOK.COM (2603:10a6:600:f1::16) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5417.15; Fri, 8 Jul 2022 10:07:33 +0000
Received: from LO0P123MB4041.GBRP123.PROD.OUTLOOK.COM ([fe80::25dc:3391:48f:952b]) by LO0P123MB4041.GBRP123.PROD.OUTLOOK.COM ([fe80::25dc:3391:48f:952b%7]) with mapi id 15.20.5417.016; Fri, 8 Jul 2022 10:07:33 +0000
From: Florence D <Florence.D@ncsc.gov.uk>
To: "secdispatch@ietf.org" <secdispatch@ietf.org>
CC: "Kathleen.Moriarty.ietf@gmail.com" <Kathleen.Moriarty.ietf@gmail.com>, "mohit@iki.fi" <mohit@iki.fi>, "rlb@ipv.sx" <rlb@ipv.sx>
Thread-Topic: IETF 114 Session Request - Post Quantum Hybrid Terminology
Thread-Index: AdiQq8GEMQbe2AXGTs6gDgqS1Di9ZwCBWfTg
Date: Fri, 08 Jul 2022 10:07:33 +0000
Message-ID: <LO0P123MB40416227BBE00824261CB422D7829@LO0P123MB4041.GBRP123.PROD.OUTLOOK.COM>
References: <LO0P123MB4041A08DB1255E5F3B3E613DD7809@LO0P123MB4041.GBRP123.PROD.OUTLOOK.COM>
In-Reply-To: <LO0P123MB4041A08DB1255E5F3B3E613DD7809@LO0P123MB4041.GBRP123.PROD.OUTLOOK.COM>
Accept-Language: en-GB, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=ncsc.gov.uk;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: 657525ce-4afd-4bd1-d07c-08da60c9ad21
x-ms-traffictypediagnostic: LOYP123MB3214:EE_
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:LO0P123MB4041.GBRP123.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230016)(4636009)(376002)(396003)(136003)(346002)(39860400002)(366004)(41300700001)(6506007)(54906003)(9686003)(76116006)(53546011)(38100700002)(2906002)(6916009)(55016003)(316002)(7696005)(8676002)(66946007)(122000001)(478600001)(86362001)(66446008)(52536014)(5660300002)(4326008)(71200400001)(66476007)(64756008)(83380400001)(26005)(38070700005)(966005)(8936002)(33656002)(66556008)(186003)(82960400001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: mUkAUQh/W5sK1zshIvosQoQDtjPOaIYMBirnMJ67Upk8X9shjhqUGyOEu+f6WFXPY70T7eV98lubs86pQKoJszdbkhRfPW1+gwsBleDAmwCAwqXfWMibchE3TNCQ5NZ5Q6w5ki1kLD9wAu08+rNvQu+YamiskTA3IJb23kB7yVQ9HBD7PPtRS9cWnYJjbMK1JCCrtCxoUpxKgyTjgcFPKH65T6qlnw8btY0F9N7t6MY9HKzc1fC+cpfLZ/Dh3V9wmMLo7fltF++DsG2KexvcTL4/TeR3CqCC+ibi5DjAoM7wigsE9g+tzxk/otKhuIZDlUkJf+Ne/dogTztNAD1TJbheRKYgV9I2WZAbowR8cvZp/PQFY5u/z7BmSv5B4TcSxU5hugLC0UO0M0RYuoy10GB+WA7lmVfpjV8ePuJfBGp6Zb1FKsSXnTu9txqklC3TLNuQ6jNsOQspynj+EdVGSW0xJtKksLfr8IiD6UHpyHKFsRq5GViEnUbnr1JKe45VBKEJHgKillJQbCeFQaaIBcDr6KWvErTBs/oba3Wt52pSETwroT00Jcofi4lYuv/UKIKDwlZc86QvX6I89ZfcH1vZIMiKm5ovCebulH3qg2DAODxULSo52gwE8tHWMvV2/6CSSEPwFUoBqH80shnyslZsg+4ITKGOaUKnDPm3aFtZErRznc1xQCckpsH7J4OgLt7re2nLN+rbrPt0JR9QKFmPLadys/bepcvqeBUMCArahOLu/p8NhGpZ0zPkWztZ8NMaAf0RKv00sJ80w80L0QJOa2+n6tF4S7n+uNkpj2nkeIciYV/y+F3FMaFxvf45Q9asrC7LBdcGD+vhG166rYSbF1yS6TLtIu1uT1N+wZRq27QXJGUefA0bnDMvgR5CMEJVDYSPMkJM9teS9FD2qO9S/DnQOw+d0wtSjJx30+i6gd7r9gGg4ctNjaHCK0vG/hE5PIhsZ/JKb6gsv1Rpg8XkeqTclE8mezsZkC0jaTTr0CgmxWXpZ1NaxgUX/o3tJ7k5R71F6tzuCe60CiTvq8b/4VfkXOHsxTyn7iAXinN2jaJfnkMvLfc1n39e834+H4oNhgiQZ8rcEVJHituwN1g/VZAnEBLTNSTI3NIvYUEnqP8VmPKjUGGqsQ18NREbfYY+Zl3XnfD8hGdmvMXQA88+7Btqd9uzXwZ+tldVWCFOTlu0mHxIK7NySYaH6pA0ZgP/1UFavR3aHH15w5yMIws4M8TwrmRkiKpBjv4fJTkwygsX1UkiXKXrepTi98Qny1GFtnnPNSk2eGCkpV3h5Zb/L6AOHtNcVkuIuG79wGdjhe58UTppAPywLC0+Lp6TwX3+ppzVP+cOhtI4R82L6s0ZovzHe7sk8y+oath1wH09FCU33FtmOtaaK6XuMsdmb8sY9ncfMSCw46d8Djft2FkMZnROi3Hi3+ZQ6beEGR83g4R3H5nL6ryF+D5bPj3LL2BJC1Ke8JMKXzssXWLp/XjB2gigvuu157E6mkqBVcsfuVvOz3YNezF4bbDVPjgIzJ2u4rIAFR+SlOKgEFl5FvTsfzz1WIE8qX9Au7IOq0jtdcnxzcSCfuNt0VO883O3
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: ncsc.gov.uk
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: LO0P123MB4041.GBRP123.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-Network-Message-Id: 657525ce-4afd-4bd1-d07c-08da60c9ad21
X-MS-Exchange-CrossTenant-originalarrivaltime: 08 Jul 2022 10:07:33.5245 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 14aa5744-ece1-474e-a2d7-34f46dda64a1
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: FWZ2dNiKm2NKdvt/OrRYaHemdo+AHPRZD4f6lWdfdt0vSDYWhFvuAryqOAdIoN1GT4TWmEo8Kna+oTqE4H+8pNKvnPfwntxoGZBjBKrdj3s=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: LOYP123MB3214
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdispatch/J_ENbmSxrTQrzxSA6dtu3eU1L6U>
Subject: Re: [Secdispatch] IETF 114 Session Request - Post Quantum Hybrid Terminology
X-BeenThere: secdispatch@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Security Dispatch <secdispatch.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdispatch>, <mailto:secdispatch-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdispatch/>
List-Post: <mailto:secdispatch@ietf.org>
List-Help: <mailto:secdispatch-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdispatch>, <mailto:secdispatch-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 08 Jul 2022 10:07:42 -0000

Hi,

The draft is now available at https://datatracker.ietf.org/doc/draft-driscoll-pqt-hybrid-terminology/.

I look forward to feedback and discussion.
Flo

-----Original Message-----
From: Secdispatch <secdispatch-bounces@ietf.org> On Behalf Of Florence D
Sent: 06 July 2022 09:29
To: secdispatch@ietf.org
Cc: Kathleen.Moriarty.ietf@gmail.com; mohit@iki.fi; rlb@ipv.sx
Subject: [Secdispatch] IETF 114 Session Request - Post Quantum Hybrid Terminology

Hi All,

I'd like to request some time (15-20 minutes) to present and discuss a draft on Terminology for Post-Quantum Hybrids during secdispatch at IETF 114.  This work is inspired by comments and conversations in LAMPS [1][2] and TLS [3], but is not protocol specific, so secdispatch seemed like the right place to bring it.

By Post-Quantum Hybrids I mean schemes which incorporate both post-quantum and traditional asymmetric algorithms.  Examples of ongoing work in this space include [4], [5] and [6].

A terminology document for this topic would be useful for a few different reasons:
1. Consistency in language across IETF WGs.
2. Clarity on different types of hybrid solutions (e.g. composite/non-composite) 3. The word "hybrid" is overloaded (e.g. with RFC 9180 [7]), which means its use in this context is potentially confusing.  We need to either agree on a different word or be honest about the overloading and move on.

I'm hopeful that if this is dispatched it can be the beginning of a conversation between the authors of various hybrid drafts, along with others, to settle discussions of language and agree on a shared understanding.

I'll update here when I've uploaded the -00 draft (end of this week), but I'm very happy to answer questions in the meantime.

Flo
UK National Cyber Security Centre

[1] https://datatracker.ietf.org/meeting/113/materials/slides-113-lamps-composite-keys-01.pdf (Slide 12)
[2] https://datatracker.ietf.org/meeting/112/materials/slides-112-lamps-hybrid-non-composite-multi-certificate-00 (Slide 4)
[3] https://mailarchive.ietf.org/arch/msg/tls/yGex9g3gXoZhikyFgsz2lerpi8U/
[4] https://datatracker.ietf.org/doc/draft-ietf-tls-hybrid-design/
[5] https://datatracker.ietf.org/doc/draft-ounsworth-pq-explicit-composite-keys
[6] https://datatracker.ietf.org/doc/draft-becker-guthrie-noncomposite-hybrid-auth/
[7] https://datatracker.ietf.org/doc/rfc9180/
This information is exempt under the Freedom of Information Act 2000 (FOIA) and may be exempt under other UK information legislation. Refer any FOIA queries to ncscinfoleg@ncsc.gov.uk. All material is UK Crown Copyright (c)