CMS-12 Error???

Russ Housley <housley@spyrus.com> Wed, 07 April 1999 14:38 UTC

Received: from mail.proper.com (mail.proper.com [206.86.127.224]) by ietf.org (8.9.1a/8.9.1a) with ESMTP id KAA09580 for <smime-archive@odin.ietf.org>; Wed, 7 Apr 1999 10:38:28 -0400 (EDT)
Received: (from majordomo@localhost) by mail.proper.com (8.8.8/8.8.5) id GAA28405 for ietf-smime-bks; Wed, 7 Apr 1999 06:45:34 -0700 (PDT)
Received: from spyrus.com (mail.spyrus.com [207.212.34.30]) by mail.proper.com (8.8.8/8.8.5) with ESMTP id GAA28401 for <ietf-smime@imc.org>; Wed, 7 Apr 1999 06:45:33 -0700 (PDT)
Received: from rhousley_laptop.spyrus.com ([209.172.119.101]) by spyrus.com (8.7.6/8.7.3/arc) with SMTP id GAA02466; Wed, 7 Apr 1999 06:45:19 -0700 (PDT)
Message-Id: <4.1.19990407093601.00a34ec0@mail.spyrus.com>
X-Sender: rhousley@mail.spyrus.com
X-Mailer: QUALCOMM Windows Eudora Pro Version 4.1
Date: Wed, 07 Apr 1999 09:44:56 -0400
To: Dr Stephen Henson <drh@celocom.com>
From: Russ Housley <housley@spyrus.com>
Subject: CMS-12 Error???
Cc: ietf-smime@imc.org
Mime-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Sender: owner-ietf-smime@imc.org
Precedence: bulk
List-Archive: <http://www.imc.org/ietf-smime/mail-archive/>
List-Unsubscribe: <mailto:ietf-smime-request@imc.org?body=unsubscribe>

Steve:

CMS-12, Section 12.3.1 says:
   For key agreement of RC2 key-encryption keys, 128 bits must be
   generated as input to the key expansion process used to compute the
   RC2 effective key [RC2].

X942-07, Section 2.1.3 says:
   ... For RC2-128, which
   requires 128 bits of keying material, the algorithm is run once, with
   a counter value of 1, and the left-most 128 bits are directly con-
   verted to an RC2 key. Similarly, for RC2-40, which requires 40 bits
   of keying material, the algorithm is run once, with a counter value
   of 1, and the leftmost 40 bits are used as the key.

X942-07, Section 2.1.4 says:
   RC2 effective key lengths are equal to RC2 real key lengths.

I think that we are consistent.  CMS-12 is simply mandating that RC2 KEKs
be 128-bit keys, and X942-07 says that the effective key length cannot be
used to weaken the key.

Okay?

Russ

>Return-Path: <owner-ietf-smime@imc.org>
>Date: Wed, 31 Mar 1999 21:24:42 +0000
>From: Dr Stephen Henson <drh@celocom.com>
>Organization: Dr S N Henson
>To: "ietf-smime@imc.org" <ietf-smime@imc.org>
>Subject: RC2 keylength in CMS.
>
>In CMS there are still a couple of references to the RC2 key length
>being always 128 bits. Specifically 12.3.1 and 12.6. 
>
>Whereas X9.42 refelects the change and that RC2 effective and real key
>lengths are equal.
>
>Steve.
>-- 
>Dr Stephen N. Henson.   http://www.drh-consultancy.demon.co.uk/
>Personal Email: shenson@drh-consultancy.demon.co.uk 
>Senior crypto engineer, Celo Communications: http://www.celocom.com/
>Core developer of the   OpenSSL project: http://www.openssl.org/
>Business Email: drh@celocom.com PGP key: via homepage.
>
>