RE: [Curdle] Call for Adoption

Daniel Migault <daniel.migault@ericsson.com> Wed, 13 January 2016 18:33 UTC

Return-Path: <bounces-ietf-ssh-owner-secsh-tyoxbijeg7-archive=lists.ietf.org@NetBSD.org>
X-Original-To: ietfarch-secsh-tyoxbijeg7-archive@ietfa.amsl.com
Delivered-To: ietfarch-secsh-tyoxbijeg7-archive@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 3F0EA1B3085 for <ietfarch-secsh-tyoxbijeg7-archive@ietfa.amsl.com>; Wed, 13 Jan 2016 10:33:10 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.901
X-Spam-Level:
X-Spam-Status: No, score=-1.901 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RP_MATCHES_RCVD=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id CxbZBR5STRJQ for <ietfarch-secsh-tyoxbijeg7-archive@ietfa.amsl.com>; Wed, 13 Jan 2016 10:33:08 -0800 (PST)
Received: from mail.netbsd.org (mail.NetBSD.org [IPv6:2001:470:a085:999::25]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C174C1B3034 for <secsh-tyoxbijeg7-archive@lists.ietf.org>; Wed, 13 Jan 2016 10:33:08 -0800 (PST)
Received: by mail.netbsd.org (Postfix, from userid 605) id 75A9685F03; Wed, 13 Jan 2016 18:33:08 +0000 (UTC)
Delivered-To: ietf-ssh@netbsd.org
Received: by mail.netbsd.org (Postfix, from userid 1347) id 109EC85EC3; Wed, 13 Jan 2016 18:33:08 +0000 (UTC)
Received: from localhost (localhost [127.0.0.1]) by mail.netbsd.org (Postfix) with ESMTP id 8EF1685EF1 for <ietf-ssh@NetBSD.org>; Wed, 13 Jan 2016 18:16:45 +0000 (UTC)
X-Virus-Scanned: amavisd-new at netbsd.org
Received: from mail.netbsd.org ([IPv6:::1]) by localhost (mail.netbsd.org [IPv6:::1]) (amavisd-new, port 10025) with ESMTP id JIg-FSsMTByp for <ietf-ssh@netbsd.org>; Wed, 13 Jan 2016 18:16:45 +0000 (UTC)
Received: from usplmg21.ericsson.net (usplmg21.ericsson.net [198.24.6.65]) (using TLSv1 with cipher DHE-RSA-AES256-SHA (256/256 bits)) (No client certificate requested) by mail.netbsd.org (Postfix) with ESMTPS id C1A3C85EAB for <ietf-ssh@NetBSD.org>; Wed, 13 Jan 2016 18:16:44 +0000 (UTC)
X-AuditID: c6180641-f799c6d000007d66-71-56967bdd56fd
Received: from EUSAAHC002.ericsson.se (Unknown_Domain [147.117.188.78]) by usplmg21.ericsson.net (Symantec Mail Security) with SMTP id 8B.86.32102.DDB76965; Wed, 13 Jan 2016 17:31:26 +0100 (CET)
Received: from EUSAAMB107.ericsson.se ([147.117.188.124]) by EUSAAHC002.ericsson.se ([147.117.188.78]) with mapi id 14.03.0248.002; Wed, 13 Jan 2016 11:31:39 -0500
From: Daniel Migault <daniel.migault@ericsson.com>
To: "mdb@juniper.net" <mdb@juniper.net>, Curdle Chairs <curdle-chairs@ietf.org>
CC: Curdle <curdle@ietf.org>, "ietf-ssh@NetBSD.org" <ietf-ssh@NetBSD.org>
Subject: RE: [Curdle] Call for Adoption
Thread-Topic: [Curdle] Call for Adoption
Thread-Index: AdFNc6BKA7QqyhDWQwqHeDdW5x3T6gApQ/zDAAHIjwA=
Date: Wed, 13 Jan 2016 16:31:39 +0000
Message-ID: <2DD56D786E600F45AC6BDE7DA4E8A8C1121B1924@eusaamb107.ericsson.se>
References: <2DD56D786E600F45AC6BDE7DA4E8A8C1121B1409@eusaamb107.ericsson.se> <65770.1452699581@eng-mail01.juniper.net>
In-Reply-To: <65770.1452699581@eng-mail01.juniper.net>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-originating-ip: [147.117.188.10]
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
MIME-Version: 1.0
X-Brightmail-Tracker: H4sIAAAAAAAAA+NgFupkkeLIzCtJLcpLzFFi42KZXLrHT/de9bQwg91feSxm9mxgtti6cBaz xYd7j9ksuu5cZ3Ng8Viy5CeTx/Wmq+weCx/2MAYwR3HZpKTmZJalFunbJXBlXJ+8kbnglGjF gg/L2BoY1wp2MXJwSAiYSEzfltnFyAlkiklcuLeerYuRi0NI4AijxMtZF1ggnOWMEnsXHWMG qWITMJJoO9TPDmKLCARKXHl7CSzOLOApce7TKiYQW1hAQ2L74z9MEDWaEpNOPWeDsK0kJv/7 yAJiswioSky4uZMRxOYV8JXoW3wRzBYSqJTYvbOLDeQ4TgEzib/vIkDCjEDHfT+1hglilbjE rSfzmSCOFpBYsuc8M4QtKvHy8T9WCFtJYtLSc6wQ9ToSC3Z/YoOwtSWWLXzNDLFWUOLkzCcs ExjFZiEZOwtJyywkLbOQtCxgZFnFyFFaXJCTm25kuIkRGEHHJNgcdzDu7fU8xCjAwajEw7th 79QwIdbEsuLK3EOMEhzMSiK8MRXTwoR4UxIrq1KL8uOLSnNSiw8xSnOwKInzJso0hgkJpCeW pGanphakFsFkmTg4pRoYjdI+TAjcd3Ka3bVeKxbOXal+rZZ3j7p8SLm8UOHPiZef2fcVK72N 85z6qPr/ppk3Tjlc3P5s0pG7nBof9E9t2a/8iV1WTyCXz3xbfn42098J3Iea7r1lKUqfIZv9 JcTY48Dd5CsNe6UkJj+oi7ydWyImxl1n7NlySy9le2bflpANXWHSM+ZsUGIpzkg01GIuKk4E AMjc3EKcAgAA
Sender: ietf-ssh-owner@NetBSD.org
List-Id: ietf-ssh.NetBSD.org
Precedence: list

 Hi,
 
 Thanks for the suggestion. I think it falls into the scope of the WG.
 
 The question I would have is whether it would make sense to extend the 
 document to the crypto suites others than DH - i.e. encryption mac.  
 This would result in a document providing cryptographic 
 recommendations for SSH and have this document regularly updated as 
 crypto evolves. Any opinion ?
 
 BR,
 Daniel

-----Original Message-----
From: mdb@juniper.net [mailto:mdb@juniper.net] 
Sent: Wednesday, January 13, 2016 10:40 AM
To: Curdle Chairs
Cc: Curdle; ietf-ssh@NetBSD.org
Subject: Re: [Curdle] Call for Adoption 

Hi,

Over on the ietf-ssh@NetBSD.org list, Stephen Farrell suggested that I see if I could add

  https://datatracker.ietf.org/doc/draft-baushke-ssh-dh-group-sha2 

under the curdle charter. 

The draft deprecates a Secure Shell (SSH) key exchange algorithm (Diffie-Hellman group1 - a 768-bit MODP group) and recommends replacement with stronger Diffie-Hellman MODP groups (groups 14, 15, 16).

The draft does have two interoperable implementations that have implemented it.

Does it fit well enough into the curdle charter to be added here?

	Thank you,
	-- Mark

 ------- forwarded message -------
From: Stephen Farrell <stephen.farrell@cs.tcd.ie>
Date: Wed, 13 Jan 2016 10:34:05 +0000
Subject: Re: draft-baushke-ssh-dh-group-sha2-01 (was Re: DH group exchange)

Hiya,

On 13/01/16 09:21, Mark D. Baushke wrote:
> Hi,
> 
> URL: https://datatracker.ietf.org/doc/draft-baushke-ssh-dh-group-sha2
> 
> I believe that OpenSSH and Dropbear SSH have both implemented 
> interoperable versions using the current 01 version at this point in time