Re: [Secdispatch] [EXTERNAL] Re: IETF117 - Call for topics

Stephen Farrell <stephen.farrell@cs.tcd.ie> Fri, 23 June 2023 12:37 UTC

Return-Path: <stephen.farrell@cs.tcd.ie>
X-Original-To: secdispatch@ietfa.amsl.com
Delivered-To: secdispatch@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 534F0C15106E for <secdispatch@ietfa.amsl.com>; Fri, 23 Jun 2023 05:37:02 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, NICE_REPLY_A=-0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=-0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=cs.tcd.ie
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id v3NpzligxILN for <secdispatch@ietfa.amsl.com>; Fri, 23 Jun 2023 05:36:58 -0700 (PDT)
Received: from EUR02-AM0-obe.outbound.protection.outlook.com (mail-am0eur02on2111.outbound.protection.outlook.com [40.107.247.111]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CD95FC14F693 for <secdispatch@ietf.org>; Fri, 23 Jun 2023 05:36:57 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=Lvb2su6+nL/uBGZLy99Z2kxDSHlbXoOfz52RKz+PVl0SyWaCQyf4qflQRwNEXMjoPBEImfJPUc3+mhH/SBth881y3e8GF571+sw8IOh8HPzPYDjcCNJCDHXbDgaloKcqPWCn4Utducp3GDaYm764NyNii7hMAI1OwMINoSC9AOau9uYeB15kqf3TsEj6mv7D6WA+7aawU1L9n46HLVM9yqNB98OtFpsqeCEHH9qY9hFNs6Mwd4nvuGWAMsum/Y8J7s/txD86IZQD4l6Hz8rbij/YxZTgqcPqbWE0mcNQUbULHFtO59pzR+qw5t/jbnmVaiJpWaoo+R78aPtnQAfv6Q==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=JgDhes2g6boGa8gTRa917xcnoB/hAH0wRMVWW6zmpAE=; b=lraLfqC4NCM6hWGdqaJe91OyVDQuvsWC/op/meKMEvllG4ctVLjnVB0tB0pjmHS0dmvXpyJVURWIbnUgD+NpumzLj9MYVKaW/lzN4uZOsXUA1jg9/YsHDB+MdKAsVCDoh2e/spOCHgomp3r3pF+sLL91SLDxUOUyZSmzPRjNHaOdI48kTcRSFFISO+0MQWG5yutgKVVvY/qLKhJMxQA79O68xQJspT80jk2oCMEM2V258P4JbVld/ud62rxISBSHUYPhhdJIKx45RXZynR+qSFKjgiwPOPerNZgYMzL+EiQ/TIWDtvyCqlTs7B2zH1wg6DWSZq0AnugnxGL/de1NBg==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cs.tcd.ie; dmarc=pass action=none header.from=cs.tcd.ie; dkim=pass header.d=cs.tcd.ie; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cs.tcd.ie; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=JgDhes2g6boGa8gTRa917xcnoB/hAH0wRMVWW6zmpAE=; b=nqDFQipzRIzmRoU/WbqjlXLUr51cFn2btGPwjGvtIXsdB5jEILPaJVeyRo7jIk29L/ssAo8NAwni1PucJ/w9tU2MLJVbJARKtwoYnAjlkmyxH+7EhK+nGgCvOw7PtrYr05mouUMjnzIdabuWrrKObyXHywW5Yx5UdA0T1ZtSZ/82Ls/WE6kQD3XqoP9Z6dEFqbk/r57MagK6i/BjnbdWt3NxAZQ74mHpEuHgIyL7nTjWKzClVBaBhAuC4v9GCF0jhGLnFKksuUaYEhf3+O66zYvLDo4/GYXzmJwL59Lj4mSrwxEX7UKC1+EoeVwaq6rFLmJxvmUZcTA2z4IWsIEtyg==
Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=cs.tcd.ie;
Received: from DB7PR02MB5113.eurprd02.prod.outlook.com (2603:10a6:10:77::15) by DB9PR02MB8203.eurprd02.prod.outlook.com (2603:10a6:10:302::14) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.6500.25; Fri, 23 Jun 2023 12:36:54 +0000
Received: from DB7PR02MB5113.eurprd02.prod.outlook.com ([fe80::71c9:a820:59bc:cef4]) by DB7PR02MB5113.eurprd02.prod.outlook.com ([fe80::71c9:a820:59bc:cef4%5]) with mapi id 15.20.6544.010; Fri, 23 Jun 2023 12:36:54 +0000
Message-ID: <7ab40cf9-e051-3554-cfc6-d715f581b6e1@cs.tcd.ie>
Date: Fri, 23 Jun 2023 13:36:52 +0100
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:102.0) Gecko/20100101 Thunderbird/102.11.0
Content-Language: en-US
To: Yoav Nir <ynir.ietf@gmail.com>
Cc: Mike Ounsworth <Mike.Ounsworth=40entrust.com@dmarc.ietf.org>, Michael Richardson <mcr+ietf@sandelman.ca>, David Woodhouse <dwmw2@infradead.org>, Rifaat Shekh-Yusef <rifaat.s.ietf@gmail.com>, secdispatch <secdispatch@ietf.org>
References: <CADNypP8D_qp6fPvWkWnw7hDRppHSkaxpTSBtMbcRkE+ZpS+WBw@mail.gmail.com> <3A66635D-6087-4D87-901A-A9C936A01C12@gmail.com> <CADNypP9h7TaC+VnmUihkcq3pWmqzuq3U1E9z4x3F_9PA8Vn8Aw@mail.gmail.com> <5b77f2aa7b39fe8add9bb6459db323609e2671e8.camel@infradead.org> <54209.1687443106@dyas> <1943D5A5-71B2-42CC-8FD8-832CC1971E9D@gmail.com> <CH0PR11MB573982AEAC43E1B40B2F4D4C9F22A@CH0PR11MB5739.namprd11.prod.outlook.com> <10b52b08-c102-329e-dfbd-9e993dcc923e@cs.tcd.ie> <F6C70FA2-21F9-4135-AE4C-084104A4140C@gmail.com>
From: Stephen Farrell <stephen.farrell@cs.tcd.ie>
In-Reply-To: <F6C70FA2-21F9-4135-AE4C-084104A4140C@gmail.com>
Content-Type: multipart/signed; micalg="pgp-sha256"; protocol="application/pgp-signature"; boundary="------------spTkUw1m4mQDT0lhauqU9c0X"
X-ClientProxiedBy: DBBPR09CA0032.eurprd09.prod.outlook.com (2603:10a6:10:d4::20) To DB7PR02MB5113.eurprd02.prod.outlook.com (2603:10a6:10:77::15)
MIME-Version: 1.0
X-MS-Exchange-MessageSentRepresentingType: 1
X-MS-PublicTrafficType: Email
X-MS-TrafficTypeDiagnostic: DB7PR02MB5113:EE_|DB9PR02MB8203:EE_
X-MS-Office365-Filtering-Correlation-Id: 979361ff-3d66-4561-a71c-08db73e6866d
X-MS-Exchange-SharedMailbox-RoutingAgent-Processed: True
X-TCD-Routed-via-EOP: Routed via EOP
X-TCD-ROUTED: Passed-Transport-Routing-Rules
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:DB7PR02MB5113.eurprd02.prod.outlook.com; PTR:; CAT:NONE; SFS:(13230028)(4636009)(396003)(366004)(376002)(136003)(39860400002)(346002)(451199021)(38100700002)(36756003)(54906003)(31686004)(66556008)(4326008)(41300700001)(86362001)(66476007)(6916009)(33964004)(786003)(316002)(8936002)(8676002)(31696002)(66946007)(6486002)(45080400002)(6512007)(44832011)(235185007)(186003)(478600001)(5660300002)(83380400001)(2906002)(6506007)(21480400003)(53546011)(2616005)(45980500001)(43740500002); DIR:OUT; SFP:1102;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: mki4lPIlHG/lwO772RBE17OThzhOTlgYS5mhLRytdwSIQqLnklzBZX2t0N1mg+LE/aIRZ+vUhEYPJ1xEd8Q2grvLOlXO8TbWX3fK+ivxx8fOT47f6xkpDQ4wszIlfBawMJtYjdESnmMApYw+PF3RsnZ1/i24ONZ7LueP+SZF78OFB+InqW2r6E2AqtlBp3rQHEZely4aDnQsTD8BtAcsKRqh5P12P9dCzuEiz36WqObH7T0g72UmRIkCEhuGIFeqDzXHq9jyLsRKsK97flmwZaVQ5bogRtcikx2cGqiR+zdxoqH8itV60pUh6QUevzWmSaiA3b4JOv0ta8KTozV0e925y5872bTiP1GgJqBc5sm1xpRPx4237/LeGYMsjltcgWKJMAl+QPn3oF9OF0O65udoPScv2AS2tygSq7a18c/bheSrG9mOQWC7FWdgCAwHc3/n9SzAdLS7cYHkim3VVbSjr2QP3l+2H2cQx399z++db9MyIPD9BFwT5F1Js5Ne7gavEpCC6gSdfCnItGD1acOjCpddq2BdQKy3YqHoQj2WLZ8YwfWLrNL5pwrUYRbS+jzd4QEnrIss3Ahlc7nKwg61JyyVa1ON5bHHZEy9G0AL2EmD291f29gdjanCZBhLwHVAKqclNgJ018TDKC94OJ8CNwQDi2JQWABDMFnSM8UsXs96lJdhbPsVtRJHl3BIuQY0YoyFqn41oHNKQIPDa7p//3YhCiuioQZlhUpu01Rf/an7V09Z+Wm9Fr1mO8J6OLlPQQ5xxXPVRHBoG0t6iMbkFd4eN9G1HM8EYM02HY8t/y9vAFrJoVa8a/2YqiEAsOPJhre6BIaX+bpRDmXTFuXFrZSeCMyb8JyPRj0uthdRD+ttEhmKcTFSPguOT8w0yrOHi0Pk8gkn/sPcbTVmdYndTJKydK3Di56KoWUAujKBMaT0m/02l+c9fkpiTAUx/IbfH3ORBg0U8WTl3nKRKGWOb28Ql4C+iaAVOK47N/E9qI+26efiU7PtO0n/CmgasaXJmK8XU8gRT6Fz5pPpNppCfxdcF59Dh+1SJJFQvxInK/0tCwkCOoHqS9e0VX8YsBJWzBiCCUnwDH54wvxPGPidUWG7zy+DDNvGCNGO8ep7cxc31CZmkJP3SzAJNY1I9WG/MFGC+eIdtP5BVNvcucEQzzdjC5sOz6yaMVJOJb0U3tkT+y4u8uY2bD//4MNzW+yq6C3TzsgY4Syxf0rkE9m2jaTjlNLMjx9+47pEO2742Gql6reeum9+baXD3woCnBKbaEyOjRD3N2A/P62etYtA6xu8LEuOYkUqyOOmXUcu7XL/CNqOSiTEfRy4Le26dH7xb1e9VexMkNVyL+vD332hlhoiOeH2XBxQnk2nkYdmvXvlhTJOMb4kV8E+Z+nr58XeX9zxVm9ZmTdFJTo0eN5OcdHQLBFodvfnARFDKHfj7idtS73ftIJAqfGz5CFYRCTIbsdIXWPHgqtUnWZFXHOGCG140+sKljIlIOcMQyOcTTLqkz08s3hLUu5iQnhqgSjewQzAOrgrcPAEem2lLmmlLHGH1cVF8hc3BWNIicFRCcCK58yG48Oy2okBZm7giZGRZL0epa33B6T2735RxXg9plrUDwtEgl+EPQ5lxLERnJ4yeYLUhEZ9YfilnIZx
X-OriginatorOrg: cs.tcd.ie
X-MS-Exchange-CrossTenant-Network-Message-Id: 979361ff-3d66-4561-a71c-08db73e6866d
X-MS-Exchange-CrossTenant-AuthSource: DB7PR02MB5113.eurprd02.prod.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 23 Jun 2023 12:36:53.9158 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: d595be8d-b306-45f4-8064-9e5b82fbe52b
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: H7SQZITrHN4YeWd6L3yXqIl7PsFI7YphyO+/r1Ee2BjidKeRuNNqZP882kYyjNLm
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DB9PR02MB8203
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdispatch/e2Df7WvWfGN9ZL1BPWO7yPPbttg>
Subject: Re: [Secdispatch] [EXTERNAL] Re: IETF117 - Call for topics
X-BeenThere: secdispatch@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Security Dispatch <secdispatch.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdispatch>, <mailto:secdispatch-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdispatch/>
List-Post: <mailto:secdispatch@ietf.org>
List-Help: <mailto:secdispatch-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdispatch>, <mailto:secdispatch-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 23 Jun 2023 12:37:02 -0000

Hiya,

On 23/06/2023 10:29, Yoav Nir wrote:
> 
> 
>> On 22 Jun 2023, at 21:06, Stephen Farrell
>> <stephen.farrell@cs.tcd.ie> wrote:
>> On 22/06/2023 19:01, Mike Ounsworth wrote:
>>> I also support a BoF about hybrid signatures.
>> 
>> FWIW: I would not support the above. The BoF I think we need would
>> address evolving PKI in the face of a CRQC.
>> 
>> Discussion of hybrid signatures would be a part of that, but just a
>> part.
> 
> That’s not going to happen. If everything’s in scope then the BoF
> will discuss everything all at once, and take forever and not reach
> any conclusions.

Of course, an ocean-boiling BoF is always possible, but
I don't think one on how to evolve PKI in the face of a
possible CRQC is likely to be that.

> I think a BoF about hybrid signatures is appropriate as long as one
> of the topics is “do we really need them?”

So one of the problems with that is it'd be about a
specific mechanism that may or may not form part of
a sensible response to the possibility of a CRQC but
it'd omit consideration of the systemic impacts of
adopting such signatures, esp. in PKI and in other
protocols that make use of PKI. We'd also be passing
up the very rare opportunity to consider significant
changes to PKI that might actually get deployed, which
I think would be fairly unwise of us.

Cheers,
S.

> 
> Yoav
> 
> 
> 
>