Re: [lamps] Current efforts in the direction of draft-truskovsky-lamps-pq-hybrid-x509?

Carl Wallace <carl@redhoundsoftware.com> Tue, 18 July 2023 11:26 UTC

Return-Path: <carl@redhoundsoftware.com>
X-Original-To: spasm@ietfa.amsl.com
Delivered-To: spasm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id D028EC151531 for <spasm@ietfa.amsl.com>; Tue, 18 Jul 2023 04:26:28 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -7.096
X-Spam-Level:
X-Spam-Status: No, score=-7.096 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, MIME_QP_LONG_LINE=0.001, RCVD_IN_DNSWL_HI=-5, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=redhoundsoftware.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id e9p7PUzLKnHs for <spasm@ietfa.amsl.com>; Tue, 18 Jul 2023 04:26:24 -0700 (PDT)
Received: from mail-qt1-x82d.google.com (mail-qt1-x82d.google.com [IPv6:2607:f8b0:4864:20::82d]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C7D30C15109D for <spasm@ietf.org>; Tue, 18 Jul 2023 04:26:24 -0700 (PDT)
Received: by mail-qt1-x82d.google.com with SMTP id d75a77b69052e-40292285362so39858181cf.3 for <spasm@ietf.org>; Tue, 18 Jul 2023 04:26:24 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=redhoundsoftware.com; s=google; t=1689679583; x=1692271583; h=content-transfer-encoding:mime-version:in-reply-to:references :thread-topic:message-id:to:from:subject:date:user-agent:from:to:cc :subject:date:message-id:reply-to; bh=hQF5V/omlEE9yKbOpmPKJ8T+QuXvjAk/9nysjQyuIss=; b=j3o5vM5CLmTml0cWRhU0aAZUAmGouIvePJV8UmCcMtYBAvaNl+Cl+c+8hAHwXOZM+e BywZoOjVJDNXySbS4xDjt4stwUqu5lc80kbEiNbztcIQqXC/GKFfbFfYTPRdrwnNIOBw g/CCEAx2cQa5lz0USqy+tTfSE4okcdKmbUC68=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20221208; t=1689679583; x=1692271583; h=content-transfer-encoding:mime-version:in-reply-to:references :thread-topic:message-id:to:from:subject:date:user-agent :x-gm-message-state:from:to:cc:subject:date:message-id:reply-to; bh=hQF5V/omlEE9yKbOpmPKJ8T+QuXvjAk/9nysjQyuIss=; b=aGXiZMcp1UAqz0regjmjhmJReRuUXljf+zeKUw13TwQcQJSdd5bXMfNv98kixq8lb+ v18QP0NKtynUDU11IXpuUFgNYOAiGpV29t7FnOgxdRrir28U+aYT8ANv56gZvhFwi/gE Ju8HMzttYi5Ao+KJD0YCIENHhDRj37mlgzTy602pYysPP7HW1OGyJKNSieq5EPRFezpp Wiy9jA57GQMX+RHrhrwctTaa/cq1xnCr+lPd1G6W4ow7HhYNhlqS8ohyxp5gXwtP5RcE 0Cwnvd4s7uddR4hi6Oc5lXtDHDk0pabZz78R+8fY6QZvwOn7KE+WxdzofEgyHWPnNQO3 hNYA==
X-Gm-Message-State: ABy/qLa7cqlACyx4jV1t6DqUhkr9riGT2xenje7oyH3MFutRLhtN1BHS AT3VJKPDGnUueNgkaU09LIa0kc8Itm+dPskkDNg=
X-Google-Smtp-Source: APBJJlGK6JNgq2CGZ55aGfGmL+uHIG7TQCqysdCOoAikVzNwcSCuMTOor06+Uyp8JiGVERlv42AXzQ==
X-Received: by 2002:a05:622a:199b:b0:403:b8b6:4f50 with SMTP id u27-20020a05622a199b00b00403b8b64f50mr18050078qtc.37.1689679583698; Tue, 18 Jul 2023 04:26:23 -0700 (PDT)
Received: from [192.168.2.16] (pool-96-255-232-167.washdc.fios.verizon.net. [96.255.232.167]) by smtp.gmail.com with ESMTPSA id c2-20020ac85182000000b00403fcd4ea59sm168843qtn.10.2023.07.18.04.26.22 (version=TLS1_2 cipher=ECDHE-ECDSA-AES128-GCM-SHA256 bits=128/128); Tue, 18 Jul 2023 04:26:22 -0700 (PDT)
User-Agent: Microsoft-MacOutlook/16.75.23070901
Date: Tue, 18 Jul 2023 07:26:22 -0400
From: Carl Wallace <carl@redhoundsoftware.com>
To: Tim Hollebeek <tim.hollebeek=40digicert.com@dmarc.ietf.org>, Iyán Méndez Veiga <imendez@ethz.ch>, "spasm@ietf.org" <spasm@ietf.org>
Message-ID: <9F3C6BB7-6F4C-4B69-B77A-A7BE14DBB5AC@redhoundsoftware.com>
Thread-Topic: [lamps] Current efforts in the direction of draft-truskovsky-lamps-pq-hybrid-x509?
References: <7857448.9X9Kdy9spX@thinkpad> <SN7PR14MB6492131663B6004B89B4E525832DA@SN7PR14MB6492.namprd14.prod.outlook.com>
In-Reply-To: <SN7PR14MB6492131663B6004B89B4E525832DA@SN7PR14MB6492.namprd14.prod.outlook.com>
Mime-version: 1.0
Content-type: text/plain; charset="UTF-8"
Content-transfer-encoding: quoted-printable
Archived-At: <https://mailarchive.ietf.org/arch/msg/spasm/pJeImSV8q98YRzZHFC2FUWPfvoI>
Subject: Re: [lamps] Current efforts in the direction of draft-truskovsky-lamps-pq-hybrid-x509?
X-BeenThere: spasm@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "This is a venue for discussion of doing Some Pkix And SMime \(spasm\) work." <spasm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/spasm>, <mailto:spasm-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/spasm/>
List-Post: <mailto:spasm@ietf.org>
List-Help: <mailto:spasm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/spasm>, <mailto:spasm-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 18 Jul 2023 11:26:28 -0000

Inline...

On 7/7/23, 1:57 PM, "Spasm on behalf of Tim Hollebeek" <spasm-bounces@ietf.org <mailto:spasm-bounces@ietf.org> on behalf of tim.hollebeek=40digicert.com@dmarc.ietf.org <mailto:40digicert.com@dmarc.ietf.org>> wrote:


<large snip>
Using chameleon certs is a clever idea that allows a single certificate to be
managed, but allows each component of the pair to be used individually.

[CW] There are still two certificates to manage (at least from the CA perspective), it's just that one of certs has been dehydrated (for lack of a better word) and placed inside of another one.