Re: [Secdispatch] Problem statement for post-quantum multi-algorithm PKI

Ira McDonald <blueroofmusic@gmail.com> Sun, 15 September 2019 14:29 UTC

Return-Path: <blueroofmusic@gmail.com>
X-Original-To: secdispatch@ietfa.amsl.com
Delivered-To: secdispatch@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4C49912011C for <secdispatch@ietfa.amsl.com>; Sun, 15 Sep 2019 07:29:49 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.997
X-Spam-Level:
X-Spam-Status: No, score=-1.997 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id vIIuFRMeJ6XE for <secdispatch@ietfa.amsl.com>; Sun, 15 Sep 2019 07:29:47 -0700 (PDT)
Received: from mail-vk1-xa2b.google.com (mail-vk1-xa2b.google.com [IPv6:2607:f8b0:4864:20::a2b]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C311612011B for <secdispatch@ietf.org>; Sun, 15 Sep 2019 07:29:46 -0700 (PDT)
Received: by mail-vk1-xa2b.google.com with SMTP id b17so2824841vkn.11 for <secdispatch@ietf.org>; Sun, 15 Sep 2019 07:29:46 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=GMe3DxqClx8NhBs8d8zIum+sQVsD7jqsGne12+QqDag=; b=QNCjrjTWJ5Lqlm0LSyGYTYfGASZCkQRgjAIWqwig4xwGxqoZtEDQRD9GdUbhB8s5P+ 9AegQhy95MI0kXsW6PmuCZC2d+Ok1mp1+CG9YruWhqbg6KdGoyGpAqNFnQopa4HIDu1o JLI/sh+ubLv0eUlwzHV/fvmd1/U6LW3oVp4CzZ4oAREx3Fm0gkb8VrdKPXIyb384N9so Uil1cPnE72IWvp2oQa3sUrPOot4Tegw3OKdISr02BCiZtqXIHyqMk5TudkMlrqD5sNVo CgXH0GWgMzvM6/9dm006mLt1msNXRQDzrLLVOxpyuQiKSM+v/bQkfqI2whjO1mJptTPy KDtA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=GMe3DxqClx8NhBs8d8zIum+sQVsD7jqsGne12+QqDag=; b=n1vvnPKDjEOx978CXIwaXzs7KPttwUQdXuW6KnNCY15pqrlpekPmJkss/RPkBXZLjQ 286wcLZ6uoJwexDMIwZablJU5oGLIBwqlxBMI/SqTJlpTxiN0cEsidrIhq1ftpvjgagC 9t/2snlsi4PicAzSumlAR1TW1bziAOqs8dWDSDUOaL3NjEakGwoBAojOPJNE6ndQb1vr N81pZuX4uRhhbn4KXxe+GsjYeTQgxPR4Z9GRXiM9HGvaFAEvVbTjAedfNVWgPtZ9Lfdt WXBAiioXR+aENvqoZ3Js51XsTTCUlgrByZ/fKu2y1yt0qadFyidsk6LsjJKgHDI8a9jN IdVw==
X-Gm-Message-State: APjAAAXgcknDQ0cnt+OAY1hs0gvMLNrkxN55B7ndQWnDNWBxPzMWxb7H G3gbuAQMqTyum5QThDNcgX2L6UJFkYQkxYvfh+s=
X-Google-Smtp-Source: APXvYqymC60tHbhTHZxBROiBcVy6T/mNZA5KXa9c1YpsU0h1KCqRdNZ0+az30d46hFgBNBSgH+6HO1DJ/bMWCzmIfr0=
X-Received: by 2002:a1f:df84:: with SMTP id w126mr548792vkg.63.1568557785759; Sun, 15 Sep 2019 07:29:45 -0700 (PDT)
MIME-Version: 1.0
References: <a2e32c33-8589-f3fb-97e5-c5977dfc64b4@openca.org> <BL0PR11MB317285DF599EC58CCF26FD5EC1B00@BL0PR11MB3172.namprd11.prod.outlook.com> <28224.1568427573@dooku.sandelman.ca> <cf1a301c-47d6-7565-ddc7-69048e3c08f3@cs.tcd.ie> <5F8D32EB-CE27-4ECD-997F-D0AAE4B798B5@akamai.com> <2b87f695-314c-5aed-14a4-9877fe254161@ericsson.com>
In-Reply-To: <2b87f695-314c-5aed-14a4-9877fe254161@ericsson.com>
From: Ira McDonald <blueroofmusic@gmail.com>
Date: Sun, 15 Sep 2019 10:29:34 -0400
Message-ID: <CAN40gStdbJ0TNoeL0VFU4Tx1F5ubtAdJnz+QJXYFFAP7W2OV7w@mail.gmail.com>
To: Mohit Sethi M <mohit.m.sethi=40ericsson.com@dmarc.ietf.org>, Ira McDonald <blueroofmusic@gmail.com>
Cc: "Salz, Rich" <rsalz@akamai.com>, Stephen Farrell <stephen.farrell@cs.tcd.ie>, Michael Richardson <mcr+ietf@sandelman.ca>, "secdispatch@ietf.org" <secdispatch@ietf.org>
Content-Type: multipart/alternative; boundary="000000000000a145a90592985115"
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdispatch/8xaGaN5SYASQWGkQm7MfJN0PAPU>
Subject: Re: [Secdispatch] Problem statement for post-quantum multi-algorithm PKI
X-BeenThere: secdispatch@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: Security Dispatch <secdispatch.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdispatch>, <mailto:secdispatch-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdispatch/>
List-Post: <mailto:secdispatch@ietf.org>
List-Help: <mailto:secdispatch-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdispatch>, <mailto:secdispatch-request@ietf.org?subject=subscribe>
X-List-Received-Date: Sun, 15 Sep 2019 14:29:49 -0000

Hi,

Thanks for the link to Kenny's talk.

Stephen - The hard problem for automotive vehicles is that, even if
Quantum Computing never comes to pass, algorithms and various
implementations go on having new weaknesses found over time.
But decent performance requires hardware assist, in many cases.
But automotive ECUs are very unlikely to start have large FPGAs
added soon.  Replacing 100s of expensive ECUs in fielded vehicles
to allow practical algorithm agility is not going to happen.  This issue
that Michael Richardson mentioned is at the top of the list for the
automotive cybersecurity community.

Cheers,
- Ira

Ira McDonald (Musician / Software Architect)
Co-Chair - TCG Trusted Mobility Solutions WG
Co-Chair - TCG Metadata Access Protocol SG
Chair - Linux Foundation Open Printing WG
Secretary - IEEE-ISTO Printer Working Group
Co-Chair - IEEE-ISTO PWG Internet Printing Protocol WG
IETF Designated Expert - IPP & Printer MIB
Blue Roof Music / High North Inc
http://sites.google.com/site/blueroofmusic
http://sites.google.com/site/highnorthinc
mailto: blueroofmusic@gmail.com
PO Box 221  Grand Marais, MI 49839  906-494-2434



On Sun, Sep 15, 2019 at 8:43 AM Mohit Sethi M <mohit.m.sethi=
40ericsson.com@dmarc.ietf.org> wrote:

> Indeed. I found Kenny's talk on this topic from IETF 99 very
> informative. Here is the link:
>
> https://youtu.be/abmd1n5WUvc?t=1445
>
> --Mohit
>
> On 9/14/19 5:33 AM, Salz, Rich wrote:
> >      > Long-lived devices (such as automobiles) are being designed
> today, for
> >      > production in mid-2020s, and many will be on the road until 2040.
> >
> >>     Count me unconvinced.
> >
> > Me too.
> >
> > Someone should dig up and post the video link to Kenny Paterson's talk.
> Key take-away:  wait for NIST, it's always "two years away."
> >
> >
> >
> > _______________________________________________
> > Secdispatch mailing list
> > Secdispatch@ietf.org
> > https://www.ietf.org/mailman/listinfo/secdispatch
> _______________________________________________
> Secdispatch mailing list
> Secdispatch@ietf.org
> https://www.ietf.org/mailman/listinfo/secdispatch
>