[lamps] Re: WG Last Call: draft-ietf-lamps-pq-composite-sigs-08 (Ends 2025-10-06)
John Mattsson <john.mattsson@ericsson.com> Wed, 24 September 2025 06:15 UTC
Return-Path: <john.mattsson@ericsson.com>
X-Original-To: spasm@mail2.ietf.org
Delivered-To: spasm@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 4F5DC67E2331; Tue, 23 Sep 2025 23:15:16 -0700 (PDT)
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.096
X-Spam-Level:
X-Spam-Status: No, score=-2.096 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_MSPIKE_H2=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, RCVD_IN_VALIDITY_SAFE_BLOCKED=0.001, SPF_NONE=0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=ericsson.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id RGZPS81zM7Wi; Tue, 23 Sep 2025 23:15:15 -0700 (PDT)
Received: from OSPPR02CU001.outbound.protection.outlook.com (mail-norwayeastazon11013054.outbound.protection.outlook.com [40.107.159.54]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-384) server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 1A00C67E22B9; Tue, 23 Sep 2025 23:15:03 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=m0hz7PdS+z7MIqyoc2hjE0LnecHI4c+1QAipKRN7xbxhuttP+hIXFtYWQfj1VBxmLRRiKHIvL4j3XUzRDAdxDRA/v74LffRhZYN1924+BJwD0htE+h9NKfBiYGDGmVJnm52M+cgDoJ4VekqBDOumYeyf+XqAxEim8g261S10CpzhfoLfLms2KVcaU3rHzQ5gsuMYYD0Px12nakcRR8DroCIbMjXaB0oJu4G+Id7Tm/U2O3XCmUSrEpg8/RnExblHrzYd+Hd5qwoDzM39HKkK64qNGq1OqVwH2tpxqYMzKc36fD7IRMK0fWnE9bBBtNQi5v+o6guoP46OOLMxSifQIw==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=jsJ19lY1Wawpha4PDSYkolMAlDgtABNe1QpMAJAtjLw=; b=ilsAdasGp9OskQfuMQAT6ul3oKl8Nm6OU3mjzTIiFXtIHgcuvbPDfWnUS40KBjVHdgbq9KBIcd0DyBrGiHQH8XZIvWeaj44ULI+FcQ2JyNxRJR+OG5gZFdpcM1dRac1SqBkzr8UZnIzTuJvbIPMKgvIqDfEoHGreeUboYdzmzdmgdkOiD3BaocI7ajIpUmJ3STeFXwe/12vlihSAC9BJWEMOG/GuLXeKpgxAFO9XU33GeqUrC6RU1WA8aOtuLIFwNHOSs2wJemIBnmBORmU5ErQqtW8h7OFOcLHIpz9VLbfpMubnP8RYcDuQRGq5o+fitUNHmGy7Sxu9ZYvbJu88XQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=ericsson.com; dmarc=pass action=none header.from=ericsson.com; dkim=pass header.d=ericsson.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=ericsson.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=jsJ19lY1Wawpha4PDSYkolMAlDgtABNe1QpMAJAtjLw=; b=Hfpn4hfVINpu5AswYO1cjftaVAiuUark2rgKtdZx+JMb4QybNeZVbcmtwh2Nv336nJhD/N/zWg03i41WATN4/Ve9lxqhNkNBl/M90RtYFXU/yQZ3MywxppMY9sZRqlliTF6SdIoJyBZqOd3dJhp91so8PiMRpzhcjlmWkESjaLKSaP/CsgqpjDn7hr6WngpS1w987uiYyJm7WzFYOfFHRi1bobZugg4/7ZRLENXcPyyc+fkWwVtqYHhnOoTAE6nI9lDbK2/gsWs2KXcSsek0AyM0niHYHH9K1yHBeR67/YXOrbnyoBJOHPKZvdjuY5uT4YYxCwx4huYu0HoVDjWX4g==
Received: from GVXPR07MB9678.eurprd07.prod.outlook.com (2603:10a6:150:114::10) by AM7PR07MB6851.eurprd07.prod.outlook.com (2603:10a6:20b:1c0::13) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.9137.20; Wed, 24 Sep 2025 06:14:53 +0000
Received: from GVXPR07MB9678.eurprd07.prod.outlook.com ([fe80::bcf3:3f45:888e:a4b8]) by GVXPR07MB9678.eurprd07.prod.outlook.com ([fe80::bcf3:3f45:888e:a4b8%3]) with mapi id 15.20.9137.018; Wed, 24 Sep 2025 06:14:53 +0000
From: John Mattsson <john.mattsson@ericsson.com>
To: Russ Housley <housley@vigilsec.com>, "spasm@ietf.org" <spasm@ietf.org>
Thread-Topic: [lamps] Re: WG Last Call: draft-ietf-lamps-pq-composite-sigs-08 (Ends 2025-10-06)
Thread-Index: AQHcK9j9k8aePNDQCUSkgFnl2TxfVbSh1i+S
Date: Wed, 24 Sep 2025 06:14:53 +0000
Message-ID: <GVXPR07MB967883F2848EEFE8CE113E97891CA@GVXPR07MB9678.eurprd07.prod.outlook.com>
References: <175855620751.648048.16646357165291761730@dt-datatracker-6c6cdf7f94-h6rnn> <88B43AFC-A176-4125-93D0-2A724D6603C4@vigilsec.com>
In-Reply-To: <88B43AFC-A176-4125-93D0-2A724D6603C4@vigilsec.com>
Accept-Language: en-US
Content-Language: en-GB
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-reactions: allow
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=ericsson.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: GVXPR07MB9678:EE_|AM7PR07MB6851:EE_
x-ms-office365-filtering-correlation-id: f2d32ba4-b389-4011-7231-08ddfb31ad2a
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;ARA:13230040|376014|1800799024|366016|13003099007|8096899003|38070700021;
x-microsoft-antispam-message-info: dvwxs1Ej42Ik2mn1PEcy2TuOzyxrQFBaToY17Uc8XuEWTUW+vqwBDi3WdUOwF+q2N9G9aYIOm0qU5twMmFmzaPj/XIuRuv8Tx5aguc0JpTH4YQVa3mkZZZVzr6eePo+rb9PA+9Xg8poXNil6Gsh9kTucpR8A3l3U6NSuPd90fswfXmgJVjlBxJI89uaxQnDu4+e9nTzROafJuD9gNx2I43+IUBwU/m8ToPGKvo8Y77jGlbSj57WfXkpB0KZkPHpQmKdt0d3P93wAE2tRu3c3NOdk9mFkzCTpjBvzvzDCEVch4YTtjXUSGW1ObGgkNTOf1oTZynHQePfu8KMcP9D7sWmOmCcrqZaR5US7tMQwPiwQUWZsD23cs/MQbTEty6eSMkCeQEeiEcwatyq2q9YbcxgAnoNhcdrd7CRKE55y7hTvon4ZD4E3+LoIBxp1ykk+SL07wN9R0grmZqHP2O5qGv5o23WIhLiAaRXNENLIdp1Q5aOxnFCim2YsPDTFu2pMIPPMhPjR5+z1ptQXG6+qCf6xyV+bQcBWT2tZEosNxk1C0id1xJ3i+8ECM6po5jLw+a7jpBq6Z9xGezMsyFIWSqw3w5WHx8wxmaOkyM/ECxWMnfS1rDm1XSksSZ8nMtAowEYmJd9B8QCb4X7AEJEOr1UczaUnP7b78opngjje5XaWgHb2xFWcmYS0KPRqdgRPe+KcCsXReK0lsNFFw/wo2iMy82Oh9vkkBxTRpAV2ujSNsj4xBF/MYJSEqBVuAoKerlR/NYjJwKyzbx0MhlFvE4zWWAOlgVbTN5U5GPh475AfZ9Sd7y81mSYbcbs9lMafHjzDlOkTJZ3Km2A2wsyVD8tovdIoQSgfqrjfyAa8KJH8LLIJsHsPF584NDdN+36JLA8WilXpw3pCE1aDZzYNNZ3iSN0gXSzO7TeoHhzA4q/glPQJruX43281zhtkZRbgU+v1N5YaN1fiXVcJJ1SN1fb+OX++IJZ6W8ZaFtmMG2VCaKmCZKYA3c1Om+mPyUBgDHbEN1hIR8rsb/h4ERZnx4G/+ZHVQbIhJpWK+Ox0CAyzk55e37Ipn6N6TpQev5fLI5jnx8kYl75aNKWj6KMKjN9NSVA+8uR6ABei28tC30kviDOa7UeOaIKlfvqiiN9aWm70Owa1ZGS7Q3PY+qu/Uu7OiMlikW8Oce74Uud8SNZtF7zihUhkH8FYWaipgsha6aEvrWJovJp5GOD0fhXWyEtyuYBqDYdeVK/AH0+taZBhOiTxM0A2kecNrEONrRpiYCKKs3M3kKy8sS//Gg/RCDxCM5MwE3COmYCHqu/3jy+/0m9NWYqql/le2TlMjsbytJeK6WVVAsY89zIgSBwTVlJ+EOaUyoAbNSKNTKk3iEt8Ct4dkdV+h2vnSr+YtW4dy80OnbVUt6CyDCXL55MmhnaYcJfVfdSBWVnMOfsBm/k=
x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:GVXPR07MB9678.eurprd07.prod.outlook.com;PTR:;CAT:NONE;SFS:(13230040)(376014)(1800799024)(366016)(13003099007)(8096899003)(38070700021);DIR:OUT;SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_GVXPR07MB967883F2848EEFE8CE113E97891CAGVXPR07MB9678eurp_"
MIME-Version: 1.0
X-OriginatorOrg: ericsson.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: GVXPR07MB9678.eurprd07.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: f2d32ba4-b389-4011-7231-08ddfb31ad2a
X-MS-Exchange-CrossTenant-originalarrivaltime: 24 Sep 2025 06:14:53.3234 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 92e84ceb-fbfd-47ab-be52-080c6b87953f
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: qa9ZyH/VHDvwB9BN/oV47iTPhjhB1M8vaUurloMK+l13K4PCIaA13Ag+6jkBEJHKfqgr/gotUNbOpRwERJJbRmhubE4Ook7YQWwaz3l607M=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: AM7PR07MB6851
Message-ID-Hash: FLAOCAGXDOOLDDHUEQIWKPHKSBFR2F6U
X-Message-ID-Hash: FLAOCAGXDOOLDDHUEQIWKPHKSBFR2F6U
X-MailFrom: john.mattsson@ericsson.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-spasm.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: "draft-ietf-lamps-pq-composite-sigs@ietf.org" <draft-ietf-lamps-pq-composite-sigs@ietf.org>, "lamps-chairs@ietf.org" <lamps-chairs@ietf.org>
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [lamps] Re: WG Last Call: draft-ietf-lamps-pq-composite-sigs-08 (Ends 2025-10-06)
List-Id: This is the mail list for the LAMPS Working Group <spasm.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/spasm/8-S68UybQoSfi9T4Xp1SboZWp7Y>
List-Archive: <https://mailarchive.ietf.org/arch/browse/spasm>
List-Help: <mailto:spasm-request@ietf.org?subject=help>
List-Owner: <mailto:spasm-owner@ietf.org>
List-Post: <mailto:spasm@ietf.org>
List-Subscribe: <mailto:spasm-join@ietf.org>
List-Unsubscribe: <mailto:spasm-leave@ietf.org>
Hi,
I quickly looked at what the current document says about SUF-CMA. I don't think my previous comments about SUF-CMA has been addressed. So based on that not ready.
1. ML-DSA as standardized by NIST in FIPS 204 provides SUF-CMA security. If any of the combinations lower the security of ML-DSA to just EUF-CMA this need to be stated clearly already in the abstract and in Section 7, not hidden away in the security considerations. The current abstract says that Composite ML-DSA is best practice and provides extra protection. But SUF-CMA _is_ best practice (EdDSA, ML-DSA, SLH-DSA). It was ages ago since anybody standardized an EUF-CMA only signature algorithm and lowering ML-DSA from SUF-CMA to EUF-CMA cannot be described as just "extra protection".
2. "Composite ML-DSA only achieves SUF security if both components are SUF secure, which is not a useful property"
- I do not understand what is meant with this. I suggest removing "which is not a useful property". SUF-CMA is useful. We know that users and protocol designers typically assume that all signatures are SUF-CMA. EUF-CMA signatures has led to practical vulnerabilities. I think IETF should follow similar guidelines as NIST [1] “Standards and guidelines should be chosen to minimize the demands on users and implementers as well as the adverse consequences of human mistakes and equipment failures.”
- Also I don't think this is true if both components are randomized or hedged. This needs to be clearly explained. My understanding is that there are deployments of hedged EdDSA and in the future people might register new Composite ML-DSA algorithms.
3. [2] "applications that require SUF security to be maintained even in the event that ML-DSA is broken SHOULD use it in composite with Ed25519 or Ed448."
I am quite sure Composite ML-DSA does not provides SUF-CMA in the event ML-DSA is broken.
----
The following section:
mldsaSeed = Random(32)
(mldsaPK, mldsaSK) = ML-DSA.KeyGen(mldsaSeed)
should mandate that FIPS 204 is followed. Random() cannot be any random function, according to FIPS 204 it MUST be an NIST approved RBG. Also, ML-DSA.KeyGen() does not take seed as an input, ML-DSA.KeyGen_internal (𝜉) does, this need to somehow be changed/explained.
---
[1] NIST Cryptographic Standards and Guidelines Development Process
https://nvlpubs.nist.gov/nistpubs/ir/2016/NIST.IR.7977.pdf
Cheers,
John
From: Russ Housley <housley@vigilsec.com>
Date: Monday, 22 September 2025 at 17:53
To: spasm@ietf.org <spasm@ietf.org>
Cc: draft-ietf-lamps-pq-composite-sigs@ietf.org <draft-ietf-lamps-pq-composite-sigs@ietf.org>, lamps-chairs@ietf.org <lamps-chairs@ietf.org>
Subject: [lamps] Re: WG Last Call: draft-ietf-lamps-pq-composite-sigs-08 (Ends 2025-10-06)
As part of this WG Last Call, be aware that this IPR disclosure was submitted four years ago:
https://datatracker.ietf.org/ipr/4761/
Russ
On Sep 22, 2025, at 11:50 AM, Russ Housley via Datatracker <noreply@ietf.org> wrote:
Subject: WG Last Call: draft-ietf-lamps-pq-composite-sigs-08 (Ends 2025-10-06)
This message starts a 2-week WG Last Call for this document.
Abstract:
This document defines combinations of ML-DSA [FIPS.204] in hybrid
with traditional algorithms RSASSA-PKCS1-v1.5, RSASSA-PSS, ECDSA,
Ed25519, and Ed448. These combinations are tailored to meet security
best practices and regulatory guidelines. Composite ML-DSA is
applicable in any application that uses X.509 or PKIX data structures
that accept ML-DSA, but where the operator wants extra protection
against breaks or catastrophic bugs in ML-DSA.
File can be retrieved from:
https://datatracker.ietf.org/doc/draft-ietf-lamps-pq-composite-sigs/
Please review and indicate your support or objection to proceed with the
publication of this document by replying to this email keeping spasm@ietf.org
in copy. Objections should be motivated and suggestions to resolve them are
highly appreciated.
Authors, and WG participants in general, are reminded again of the
Intellectual Property Rights (IPR) disclosure obligations described in BCP 79
[1]. Appropriate IPR disclosures required for full conformance with the
provisions of BCP 78 [1] and BCP 79 [2] must be filed, if you are aware of
any. Sanctions available for application to violators of IETF IPR Policy can
be found at [3].
Thank you.
[1] https://datatracker.ietf.org/doc/bcp78/
[2] https://datatracker.ietf.org/doc/bcp79/
[3] https://datatracker.ietf.org/doc/rfc6701/
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Russ Housley
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… John Mattsson
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… tirumal reddy
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… tirumal reddy
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Peter C
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Peter C
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Russ Housley
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Salz, Rich
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Russ Housley
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Peter C
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Corey Bonnell
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Russ Housley
- [lamps] Re: [EXTERNAL] Re: WG Last Call: draft-ie… John Gray
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Ilari Liusvaara
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Salz, Rich
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Pala, Max
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Falko Strenzke
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Salz, Rich
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Bas Westerbaan
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Falko Strenzke
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Falko Strenzke
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Russ Housley
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Ilari Liusvaara
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Bas Westerbaan
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Falko Strenzke
- [lamps] WG Last Call: draft-ietf-lamps-pq-composi… Russ Housley via Datatracker
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… John Mattsson
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Scott Fluhrer (sfluhrer)
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Peter C
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Corey Bonnell
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Falko Strenzke
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Falko Strenzke
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Mike Ounsworth
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Falko Strenzke
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Mike Ounsworth
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Scott Fluhrer (sfluhrer)
- [lamps] Re: [EXTERNAL] Re: WG Last Call: draft-ie… Mike Ounsworth
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Peter C
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Mike Ounsworth
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Mike Ounsworth
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… John Mattsson
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Mike Ounsworth
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… John Mattsson
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Mike Ounsworth
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Scott Fluhrer (sfluhrer)
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Mike Ounsworth
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Peter C
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Mike Ounsworth
- [lamps] Re: [EXTERNAL] Re: WG Last Call: draft-ie… Mike Ounsworth
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Ilari Liusvaara
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… John Mattsson
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Ilari Liusvaara
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Mike Ounsworth
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Tim Hudson
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… David Hook
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Dennis Jackson
- [lamps] Re: [EXTERNAL] Re: WG Last Call: draft-ie… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Sophie Schmieg
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Popis Piotr
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Jean-Pierre Fiset
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Bas Westerbaan
- [lamps] Re: [EXT] Re: WG Last Call: draft-ietf-la… Blumenthal, Uri - 0553 - MITLL
- [lamps] Re: [EXT] Re: WG Last Call: draft-ietf-la… David Benjamin
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Dennis Jackson
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: [EXT] Re: WG Last Call: draft-ietf-la… Blumenthal, Uri - 0553 - MITLL
- [lamps] Re: [EXT] Re: WG Last Call: draft-ietf-la… Mike Ounsworth
- [lamps] Re: [EXT] Re: WG Last Call: draft-ietf-la… Blumenthal, Uri - 0553 - MITLL
- [lamps] Re: [EXT] Re: WG Last Call: draft-ietf-la… Viktor Dukhovni
- [lamps] Re: [EXT] Re: WG Last Call: draft-ietf-la… Watson Ladd
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… David Hook
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Dennis Jackson
- [lamps] Re: [EXT] Re: WG Last Call: draft-ietf-la… Viktor Dukhovni
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… David Hook
- [lamps] Re: [EXT] Re: WG Last Call: draft-ietf-la… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Dennis Jackson
- [lamps] Re: [EXTERNAL] Re: [EXT] Re: WG Last Call… John Gray
- [lamps] Re: [EXTERNAL] Re: [EXT] Re: WG Last Call… Mike Ounsworth
- [lamps] Re: [EXTERNAL] Re: [EXT] Re: WG Last Call… Dennis Jackson
- [lamps] Re: [EXTERNAL] Re: [EXT] Re: WG Last Call… Mike Ounsworth
- [lamps] Re: [EXTERNAL] Re: [EXT] Re: WG Last Call… Mike Ounsworth
- [lamps] Re: [EXTERNAL] Re: [EXT] Re: WG Last Call… Dennis Jackson
- [lamps] Re: [EXTERNAL] Re: [EXT] Re: WG Last Call… Viktor Dukhovni
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Russ Housley
- [lamps] Re: [EXTERNAL] Re: [EXT] Re: WG Last Call… Viktor Dukhovni
- [lamps] Re: [EXT] Re: WG Last Call: draft-ietf-la… Ilari Liusvaara
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Daniel Van Geest
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Daniel Van Geest
- [lamps] Re: [EXT] Re: WG Last Call: draft-ietf-la… Daniel Van Geest
- [lamps] Re: [EXT] Re: WG Last Call: draft-ietf-la… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Michael Richardson
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: [EXT] Re: WG Last Call: draft-ietf-la… Wei-Jun Wang
- [lamps] Re: [EXT] Re: WG Last Call: draft-ietf-la… Mike Ounsworth
- [lamps] Re: [EXTERNAL] Re: WG Last Call: draft-ie… Carl Wallace
- [lamps] Re: [EXTERNAL] Re: Re: WG Last Call: draf… John Mattsson
- [lamps] Re: [EXT] Re: WG Last Call: draft-ietf-la… Richard Kettlewell
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… D. J. Bernstein
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Russ Housley
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Russ Housley
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… David Hook
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… John Mattsson
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Tim Hudson
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Russ Housley
- [lamps] Re: [EXTERNAL] Re: WG Last Call: draft-ie… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Tomas Gustavsson
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Russ Housley
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Watson Ladd
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Kris Kwiatkowski
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Carl Wallace
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… David Hook
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… David Hook
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Mike Ounsworth
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Daniel Van Geest
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Daniel Van Geest
- [lamps] Re: [EXTERNAL] Re: WG Last Call: draft-ie… John Gray
- [lamps] Re: WG Last Call: draft-ietf-lamps-pq-com… Russ Housley