[Secdispatch] IETF 114 Session Request - Post Quantum Hybrid Terminology

Florence D <Florence.D@ncsc.gov.uk> Wed, 06 July 2022 08:28 UTC

Return-Path: <Florence.D@ncsc.gov.uk>
X-Original-To: secdispatch@ietfa.amsl.com
Delivered-To: secdispatch@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id EF60DC15C13C for <secdispatch@ietfa.amsl.com>; Wed, 6 Jul 2022 01:28:43 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.531
X-Spam-Level:
X-Spam-Status: No, score=-3.531 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.745, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FROM_GOV_DKIM_AU=-0.677, RCVD_IN_MSPIKE_H2=-0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=ncsc.gov.uk
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id sYgRk7Gvi5UC for <secdispatch@ietfa.amsl.com>; Wed, 6 Jul 2022 01:28:40 -0700 (PDT)
Received: from GBR01-LO2-obe.outbound.protection.outlook.com (mail-lo2gbr01on2119.outbound.protection.outlook.com [40.107.10.119]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 10E7CC15C12C for <secdispatch@ietf.org>; Wed, 6 Jul 2022 01:28:38 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector9901; d=microsoft.com; cv=none; b=hnSzG1JQ9pgCxT61eFFta7HO7+yIcG3Frway8QZ1E5RUZSqSZXscQ9iv+FEpGHngW5yPWDrkgdGiF4OM3A7NoqduYmIcpFGqhTkPlnzUx5Pf9K3pDtGfOx+KvPX3gMm6Ruoc2ytL4nUjercLTVCQW+XrKgaq7bjpDYL/jSEt8v7COwbCg/ZEUVoVLm8ja2uaiVabayvbQ9lvbAWWdkxLk8hJvOCbIftmMMA11oKQMcj9qimyHALa9y30LdXkELtQH3uKEV4tbl5JtoEctTl4R2DnAVP7PbujYyzFeQ4Xml0QIPcT/HOHk9MMybMkL3jG8I14oOiA13x4BqLhVeQ12w==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector9901; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=afSF4kPLlkXGd7jLFEP9X7q39WoGzf5iQxFloI5n9Dk=; b=KmoNypVnmBcUUK7qzsLOuXJMkX4X/i4dTxbjc2BGw2c0yWifEvW9jHBv33BI/4RkE+pM8Z8GptQaffK5J2dbRGJ67oBzkChdOPW5NB+2MwMa0dv2B6RaNxvdfzQpu8NhIdxVJm3pWou7AH9Kpm2mT9TbPfyHOa21kbggqrv5yIDaRd2UweSrvSYKGgzCbyrILcqvkXFVHooBj9MMJbWLwbBWCVrk8umBccg6/9ibj5xdUqSEII6rL88cnIGlhokHc8btr9mTv/xyVwo1r7Pb4DbXsMzqjD9w5lrG0AH30IEOwKIDLFrOuoqcCYv9tpUIlCYungZ3zEOPC+G9sv5/2Q==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ncsc.gov.uk; dmarc=pass action=none header.from=ncsc.gov.uk; dkim=pass header.d=ncsc.gov.uk; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ncsc.gov.uk; s=selector2; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=afSF4kPLlkXGd7jLFEP9X7q39WoGzf5iQxFloI5n9Dk=; b=E2fqEyx9KKVHyXcTXAEM61T4W7/DliMeSw7XTs1F37MPtgfZy7j64lM+8cdRKktBjLcEuwzKn2VHMdvSUsZi8hsFHrQ6sPgPp+Q9M2juS2dRWfSY6KpOMQNvuVrffqvX+9vGTYCGe5oZxSrd8knf8izBlCsKM2qnu6R5h3o65TJGbP8wy0exO6vWBwQD68rGDUXDxe+qhx6sBRmvNex3FcjD480jLwkdesztuIJ/mWCq/qH5q3TSTXZfM8ebI0WJ2H7QxQnVkQTCRd1opRATl539lVN/nzRc6ahV9bNKU9p5xaLh00sNjg0NqGMAPC96MrGmIyYpx7+dqBwrhV8uwg==
Received: from LO0P123MB4041.GBRP123.PROD.OUTLOOK.COM (2603:10a6:600:181::5) by CWLP123MB3426.GBRP123.PROD.OUTLOOK.COM (2603:10a6:400:66::15) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.5395.15; Wed, 6 Jul 2022 08:28:34 +0000
Received: from LO0P123MB4041.GBRP123.PROD.OUTLOOK.COM ([fe80::25dc:3391:48f:952b]) by LO0P123MB4041.GBRP123.PROD.OUTLOOK.COM ([fe80::25dc:3391:48f:952b%8]) with mapi id 15.20.5395.021; Wed, 6 Jul 2022 08:28:34 +0000
From: Florence D <Florence.D@ncsc.gov.uk>
To: "secdispatch@ietf.org" <secdispatch@ietf.org>
CC: "Kathleen.Moriarty.ietf@gmail.com" <Kathleen.Moriarty.ietf@gmail.com>, "mohit@iki.fi" <mohit@iki.fi>, "rlb@ipv.sx" <rlb@ipv.sx>
Thread-Topic: IETF 114 Session Request - Post Quantum Hybrid Terminology
Thread-Index: AdiQq8GEMQbe2AXGTs6gDgqS1Di9Zw==
Date: Wed, 06 Jul 2022 08:28:34 +0000
Message-ID: <LO0P123MB4041A08DB1255E5F3B3E613DD7809@LO0P123MB4041.GBRP123.PROD.OUTLOOK.COM>
Accept-Language: en-GB, en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=ncsc.gov.uk;
x-ms-publictraffictype: Email
x-ms-office365-filtering-correlation-id: e74df722-8f98-482a-a05b-08da5f298417
x-ms-traffictypediagnostic: CWLP123MB3426:EE_
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255; CTRY:; LANG:en; SCL:1; SRV:; IPV:NLI; SFV:NSPM; H:LO0P123MB4041.GBRP123.PROD.OUTLOOK.COM; PTR:; CAT:NONE; SFS:(13230016)(4636009)(366004)(39860400002)(396003)(346002)(376002)(136003)(52536014)(76116006)(8936002)(5660300002)(54906003)(66476007)(66556008)(66946007)(4326008)(41300700001)(86362001)(6916009)(66446008)(71200400001)(316002)(64756008)(186003)(38070700005)(26005)(7696005)(9686003)(6506007)(82960400001)(2906002)(38100700002)(122000001)(55016003)(8676002)(966005)(33656002)(83380400001)(478600001); DIR:OUT; SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: text/plain; charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-OriginatorOrg: ncsc.gov.uk
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: LO0P123MB4041.GBRP123.PROD.OUTLOOK.COM
X-MS-Exchange-CrossTenant-Network-Message-Id: e74df722-8f98-482a-a05b-08da5f298417
X-MS-Exchange-CrossTenant-originalarrivaltime: 06 Jul 2022 08:28:34.0629 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 14aa5744-ece1-474e-a2d7-34f46dda64a1
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: /XkOWJ9JJDM4lMmFAt4yOHdFbrF1sXu2ksnsnDs0IFXWd98nyUCJgCQ166SNzE69Ny0iDkctwjnXMtTKCMoXEn+Jp9D+1nENxygNWBKR1cw=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: CWLP123MB3426
Archived-At: <https://mailarchive.ietf.org/arch/msg/secdispatch/jyRxnLuRj5xpFUU6LG1jnbdTJj0>
Subject: [Secdispatch] IETF 114 Session Request - Post Quantum Hybrid Terminology
X-BeenThere: secdispatch@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Security Dispatch <secdispatch.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/secdispatch>, <mailto:secdispatch-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/secdispatch/>
List-Post: <mailto:secdispatch@ietf.org>
List-Help: <mailto:secdispatch-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/secdispatch>, <mailto:secdispatch-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 06 Jul 2022 08:28:44 -0000

Hi All,

I'd like to request some time (15-20 minutes) to present and discuss a draft on Terminology for Post-Quantum Hybrids during secdispatch at IETF 114.  This work is inspired by comments and conversations in LAMPS [1][2] and TLS [3], but is not protocol specific, so secdispatch seemed like the right place to bring it.

By Post-Quantum Hybrids I mean schemes which incorporate both post-quantum and traditional asymmetric algorithms.  Examples of ongoing work in this space include [4], [5] and [6].

A terminology document for this topic would be useful for a few different reasons:
1. Consistency in language across IETF WGs.
2. Clarity on different types of hybrid solutions (e.g. composite/non-composite)
3. The word "hybrid" is overloaded (e.g. with RFC 9180 [7]), which means its use in this context is potentially confusing.  We need to either agree on a different word or be honest about the overloading and move on.

I'm hopeful that if this is dispatched it can be the beginning of a conversation between the authors of various hybrid drafts, along with others, to settle discussions of language and agree on a shared understanding.

I'll update here when I've uploaded the -00 draft (end of this week), but I'm very happy to answer questions in the meantime.

Flo
UK National Cyber Security Centre

[1] https://datatracker.ietf.org/meeting/113/materials/slides-113-lamps-composite-keys-01.pdf (Slide 12)
[2] https://datatracker.ietf.org/meeting/112/materials/slides-112-lamps-hybrid-non-composite-multi-certificate-00 (Slide 4)
[3] https://mailarchive.ietf.org/arch/msg/tls/yGex9g3gXoZhikyFgsz2lerpi8U/
[4] https://datatracker.ietf.org/doc/draft-ietf-tls-hybrid-design/
[5] https://datatracker.ietf.org/doc/draft-ounsworth-pq-explicit-composite-keys
[6] https://datatracker.ietf.org/doc/draft-becker-guthrie-noncomposite-hybrid-auth/
[7] https://datatracker.ietf.org/doc/rfc9180/
This information is exempt under the Freedom of Information Act 2000 (FOIA) and may be exempt under other UK information legislation. Refer any FOIA queries to ncscinfoleg@ncsc.gov.uk. All material is UK Crown Copyright ©