Re: draft-baushke-ssh-dh-group-sha2-01 (was Re: DH group exchange)

"Mark D. Baushke" <mdb@juniper.net> Wed, 27 January 2016 17:19 UTC

Return-Path: <bounces-ietf-ssh-owner-secsh-tyoxbijeg7-archive=lists.ietf.org@NetBSD.org>
X-Original-To: ietfarch-secsh-tyoxbijeg7-archive@ietfa.amsl.com
Delivered-To: ietfarch-secsh-tyoxbijeg7-archive@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0C98E1ACE81 for <ietfarch-secsh-tyoxbijeg7-archive@ietfa.amsl.com>; Wed, 27 Jan 2016 09:19:51 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.601
X-Spam-Level:
X-Spam-Status: No, score=-1.601 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, MIME_8BIT_HEADER=0.3, RP_MATCHES_RCVD=-0.001] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id pz5pQ29bFbcs for <ietfarch-secsh-tyoxbijeg7-archive@ietfa.amsl.com>; Wed, 27 Jan 2016 09:19:49 -0800 (PST)
Received: from mail.netbsd.org (mail.NetBSD.org [199.233.217.200]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id F1D521ACE83 for <secsh-tyoxbijeg7-archive@lists.ietf.org>; Wed, 27 Jan 2016 09:19:48 -0800 (PST)
Received: by mail.netbsd.org (Postfix, from userid 605) id 8FF7A85F1C; Wed, 27 Jan 2016 17:19:46 +0000 (UTC)
Delivered-To: ietf-ssh@NetBSD.org
Received: from localhost (localhost [127.0.0.1]) by mail.netbsd.org (Postfix) with ESMTP id 45F1185E9F for <ietf-ssh@NetBSD.org>; Wed, 27 Jan 2016 17:19:43 +0000 (UTC)
X-Virus-Scanned: amavisd-new at netbsd.org
Received: from mail.netbsd.org ([127.0.0.1]) by localhost (mail.netbsd.org [127.0.0.1]) (amavisd-new, port 10025) with ESMTP id BzJf4t7qbrOm for <ietf-ssh@netbsd.org>; Wed, 27 Jan 2016 17:19:42 +0000 (UTC)
Received: from na01-bl2-obe.outbound.protection.outlook.com (mail-bl2on0758.outbound.protection.outlook.com [IPv6:2a01:111:f400:fc09::758]) by mail.netbsd.org (Postfix) with ESMTP id 987CC84CEB for <ietf-ssh@NetBSD.org>; Wed, 27 Jan 2016 17:19:38 +0000 (UTC)
Received: from BY1PR0501CA0016.namprd05.prod.outlook.com (10.162.139.26) by CY1PR0501MB1385.namprd05.prod.outlook.com (10.160.148.139) with Microsoft SMTP Server (TLS) id 15.1.390.13; Wed, 27 Jan 2016 17:19:36 +0000
Received: from BN1AFFO11FD031.protection.gbl (2a01:111:f400:7c10::119) by BY1PR0501CA0016.outlook.office365.com (2a01:111:e400:4821::26) with Microsoft SMTP Server (TLS) id 15.1.390.13 via Frontend Transport; Wed, 27 Jan 2016 17:19:35 +0000
Authentication-Results: spf=softfail (sender IP is 66.129.239.18) smtp.mailfrom=juniper.net; cs.tcd.ie; dkim=none (message not signed) header.d=none;cs.tcd.ie; dmarc=none action=none header.from=juniper.net;
Received-SPF: SoftFail (protection.outlook.com: domain of transitioning juniper.net discourages use of 66.129.239.18 as permitted sender)
Received: from p-emfe01a-sac.jnpr.net (66.129.239.18) by BN1AFFO11FD031.mail.protection.outlook.com (10.58.52.185) with Microsoft SMTP Server (TLS) id 15.1.355.15 via Frontend Transport; Wed, 27 Jan 2016 17:19:34 +0000
Received: from magenta.juniper.net (172.17.27.123) by p-emfe01a-sac.jnpr.net (172.24.192.21) with Microsoft SMTP Server (TLS) id 14.3.123.3; Wed, 27 Jan 2016 09:19:27 -0800
Received: from eng-mail01.juniper.net (eng-mail01.juniper.net [172.17.28.114]) by magenta.juniper.net (8.11.3/8.11.3) with ESMTP id u0RHJOD36324; Wed, 27 Jan 2016 09:19:24 -0800 (PST) (envelope-from mdb@juniper.net)
Received: from eng-mail01.juniper.net (localhost [127.0.0.1]) by eng-mail01.juniper.net (Postfix) with ESMTP id 3D1C81148F; Wed, 27 Jan 2016 09:19:24 -0800 (PST)
To: ietf-ssh@NetBSD.org, Niels Möller <nisse@lysator.liu.se>, Damien Miller <djm@mindrot.org>, Peter Gutmann <pgut001@cs.auckland.ac.nz>, denis bider <ietf-ssh3@denisbider.com>, Jeffrey Hutzelman <jhutz@cmu.edu>, Stephen Farrell <stephen.farrell@cs.tcd.ie>, Jon Bright <jon@siliconcircus.com>, Simon Tatham <anakin@pobox.com>
Subject: Re: draft-baushke-ssh-dh-group-sha2-01 (was Re: DH group exchange)
In-Reply-To: <95389.1452676866@eng-mail01.juniper.net>
References: <95389.1452676866@eng-mail01.juniper.net>
Comments: In-reply-to: "Mark D. Baushke" <mdb@juniper.net> message dated "Wed, 13 Jan 2016 01:21:06 -0800."
From: "Mark D. Baushke" <mdb@juniper.net>
Date: Wed, 27 Jan 2016 09:19:24 -0800
Message-ID: <96437.1453915164@eng-mail01.juniper.net>
MIME-Version: 1.0
Content-Type: text/plain
X-EOPAttributedMessage: 0
X-Microsoft-Exchange-Diagnostics: 1; BN1AFFO11FD031; 1:pU1b4l7d63h/Bj+mvWxeFBXPzu/lEA8oekgeZ/SyNUGEvsKx8Cyt9IDp4E4mJes4j3ag+ltb5gua68q8rMTYlHDuATIK2dGs4u/++vjZFd3Y1Y3cRV1HHSWOoTQFbolToXvS4o8T1kQt9abxX/brB5wkDDUvztWiXEV3838iIURvFsthfvSmF9BGYdMLvKuH5DxLDVXg7iOgt1Sn2xlK2wqA8EjdEMcbs+BUm3cJqD9QdtP53BzD5HVsuir9j/sLJq1rdUCiomFqcoqtfoEjZWTGoYq6fm3QteP1IkgSl9sBLhlruUOd76OoxNyAmxKeneBLVds0b8Ojhln/rHovkX7i8VN6Duf2s/q416cJrMsrrcgps+qyPq2tLJubWirJnqUGhvHuaJ5sV87Co06cm6CDHvtKeE8sataDAlDQ1K1GSBcm96e45VzSADJn3hjY
X-Forefront-Antispam-Report: CIP:66.129.239.18; CTRY:US; IPV:NLI; EFV:NLI; SFV:NSPM; SFS:(10019020)(6009001)(2980300002)(189002)(199003)(2171001)(53416004)(76506005)(87936001)(230783001)(117636001)(92566002)(2906002)(2810700001)(69596002)(86362001)(48376002)(189998001)(5003940100001)(107886002)(6806005)(11100500001)(5001960100002)(15975445007)(50466002)(54356999)(2950100001)(1220700001)(106466001)(5001770100001)(5003600100002)(19580395003)(3470700001)(81156007)(76176999)(47776003)(50986999)(105596002)(586003)(77096005)(97736004)(1096002)(7059030)(42262002); DIR:OUT; SFP:1102; SCL:1; SRVR:CY1PR0501MB1385; H:p-emfe01a-sac.jnpr.net; FPR:; SPF:SoftFail; PTR:InfoDomainNonexistent; MX:1; A:1; LANG:en;
X-Microsoft-Exchange-Diagnostics: 1; CY1PR0501MB1385; 2:B89gUmH5yoA6btiLi6kQ4UD1prPTVhYlJ8LgTaJ6vPEoF8QybuElwcWNtV7eDphYdXi1rr3cAk2PjQe+/YBQ5Rcdyb7NikmBZ/aFS8DF44JNwmNac09kZX9BtuhzCKtqGVfAYN6HVM2Zv4xjJn/X9A==; 3:daESavPLVELP1yEZLodTN9+oEaaluSdm9jGqfkSx41rxlmYTkGmq3p1Pec40BjUxdBi+nhvouA0Duc4STfw+BmwEtlRCh5p1243Aqrvb2tsYlnSrUOIjJ2p+xm6sqhsBZdCe5bP6wPL8e054BsRJvF0gUzfqnm8loUngzR6605ypWxZbxq+dPa8qXwH8k458g386Qugkn53i6HPwUTiV/000dLE/r88W79yTE0RZZDE=; 25:3txc75yNx0SKfJfH/M+t5iCrUdVDtJjA1w1UKa848B65d8IOuUfMqrmFDHy7jEaoJrqngdHcpp473JuVtAwMEIeBaHiK+Ppr8MrwmwubihyabQrLcpitbPU9PjCB5ODTdfT8aXHdF9c9OZEG9nrsGxBLfx4f0X/fE0lZ/02hd2gHyVgg5vg28GSawCA51rh3QEbTILtpdpuwshrAKsjh/Hac/SXK6NcQf/Ef2OtlD00kc6W5U5XzHdZI/4TkSHsp
X-Microsoft-Antispam: UriScan:;BCL:0;PCL:0;RULEID:;SRVR:CY1PR0501MB1385;
X-MS-Office365-Filtering-Correlation-Id: 6a416671-b7a7-4184-9644-08d3273e06d7
X-Microsoft-Exchange-Diagnostics: 1; CY1PR0501MB1385; 20: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
X-Microsoft-Antispam-PRVS: <CY1PR0501MB138594BAFB32AF83B27B3699BFD90@CY1PR0501MB1385.namprd05.prod.outlook.com>
X-Exchange-Antispam-Report-Test: UriScan:;
X-Exchange-Antispam-Report-CFA-Test: BCL:0; PCL:0; RULEID:(601004)(2401047)(8121501046)(5005006)(13023025)(13024025)(13015025)(13017025)(13018025)(10201501046)(3002001); SRVR:CY1PR0501MB1385; BCL:0; PCL:0; RULEID:; SRVR:CY1PR0501MB1385;
X-Microsoft-Exchange-Diagnostics: 1; CY1PR0501MB1385; 4:IkbTZMPkPE29L4hl2rfXoLQ90e5Jp+HOkFSanuMXd59pvcAJWwEmwI+VaLoHJ/9zq4kPP6YNrq5gOkDMftc69EmZLXqch+/BevTrSAVVlSUA8QtWJYx8DtLMuu4kq7hpg5thKHBk7AJqwW/QZbeigbN4IFA05gPJlg6twQ/BvuN8IdM62MUD9cB1KNI1S11C/Vht3rPFOjC+v00rGJbU1/jllYQIcJCQSraO2wCzKpF4KijSTjpAMwCPrzGpF+/W8puRp7w0+lcyHXqMoWkTa4JQaK3xdBqIrZLAOfEPa2RlZrmlBfuQPgWF2Xv9NR/UUIxtir1D0C+E4heA9jgxNDi5GSfGauebSAAnoRMKFWIvy2NHhMB78efrWAgHSXPP/9l7fCXhs6vBie83tAn0hpf0mY099t05PSFYMIjxenUf/cRquxwLdp0lXtG4YO0qy6YjCsHrrI24MM6pV8N5ZA==
X-Forefront-PRVS: 0834BAF534
X-Microsoft-Exchange-Diagnostics: 1; CY1PR0501MB1385; 23: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
X-Microsoft-Exchange-Diagnostics: 1; CY1PR0501MB1385; 5:BSJy5eHfMmg1Fw6U9f/QNi4nWvfbGf9fQM1kWQf1dstW13xMEqax++cylvbdh20LCLKmqJpZPu/JUxr8KumdLtrV94g7xmYYFWamHjMtW6j+SHyBo1XsfacvO6tIL1X30nUfw7hMZLM1JTiAUtEqYQ==; 24:9mxDolv3yLoF3Ij5HLlDFhg/RthC77jxNukyF4TX+6/QxCerBqM6R7wPnGuTnUCtSdYpe5FrcGqY9Bp1TwwhgEDcrH0m7/r066W/BIDmNWo=
SpamDiagnosticOutput: 1:23
SpamDiagnosticMetadata: NSPM
X-OriginatorOrg: juniper.net
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 27 Jan 2016 17:19:34.2031 (UTC)
X-MS-Exchange-CrossTenant-Id: bea78b3c-4cdb-4130-854a-1d193232e5f4
X-MS-Exchange-CrossTenant-OriginalAttributedTenantConnectingIp: TenantId=bea78b3c-4cdb-4130-854a-1d193232e5f4; Ip=[66.129.239.18]; Helo=[p-emfe01a-sac.jnpr.net]
X-MS-Exchange-CrossTenant-FromEntityHeader: HybridOnPrem
X-MS-Exchange-Transport-CrossTenantHeadersStamped: CY1PR0501MB1385
Sender: ietf-ssh-owner@NetBSD.org
List-Id: ietf-ssh.NetBSD.org
Precedence: list

Hi Folks,

> URL: https://datatracker.ietf.org/doc/draft-baushke-ssh-dh-group-sha2

I just noticed that the Information Assurance Directorate at the NSA has
a new article on 'CNSA Suite and Quantum Computing FAQ' ... their URL is

https://www.iad.gov/iad/library/ia-guidance/ia-solutions-for-classified/algorithm-guidance/cnsa-suite-and-quantum-computing-faq.cfm

Reading the document, they are mandating that NSS no longer use
Diffie-Hellman with 2048-bit keys instead they are suggesting
IETF RFC 3526 (Groups 15-18).

They are also no longer interested in using SHA-256 wanting SHA-384.

For folks interested in compliance with the CNSA Suite, does it make
sense for the baushke-ssh-dh-gorup-sha2 ID to be updated to specify
either SHA-384 (or possibly SHA-512)?

That is change from this:

   Key Exchange Method Name          Note
   diffie-hellman-group1-sha1        NOT RECOMMENDED
   diffie-hellman-group14-sha256     RECOMMENDED
   diffie-hellman-group15-sha256     RECOMMENDED
   diffie-hellman-group16-sha256     OPTIONAL

to this:

   Key Exchange Method Name          Note
   diffie-hellman-group1-sha1        NOT RECOMMENDED
   diffie-hellman-group14-sha256     RECOMMENDED
   diffie-hellman-group15-sha384     RECOMMENDED
   diffie-hellman-group16-sha384     OPTIONAL
   diffie-hellman-group17-sha512     OPTIONAL
   diffie-hellman-group18-sha512     OPTIONAL

I am suggesting sha512 for group17 and group18 as a minor bit of
future-proffing and/or performance trade-off for sha512 hardware
acceleration that may exist.

Comments please?

	-- Mark