Re: [Spasm] Fwd: New Version Notification for draft-wconner-blake2sigs-00.txt

Jim Schaad <ietf@augustcellars.com> Fri, 28 April 2017 18:29 UTC

Return-Path: <ietf@augustcellars.com>
X-Original-To: spasm@ietfa.amsl.com
Delivered-To: spasm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 0CCF71243F6 for <spasm@ietfa.amsl.com>; Fri, 28 Apr 2017 11:29:33 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.001
X-Spam-Level:
X-Spam-Status: No, score=-2.001 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HTML_MESSAGE=0.001, RP_MATCHES_RCVD=-0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=augustcellars.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id LuPgEiZvy6rj for <spasm@ietfa.amsl.com>; Fri, 28 Apr 2017 11:29:30 -0700 (PDT)
Received: from mail4.augustcellars.com (augustcellars.com [50.45.239.150]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 20250126BF7 for <spasm@ietf.org>; Fri, 28 Apr 2017 11:29:29 -0700 (PDT)
Content-Type: multipart/alternative; boundary="----=_NextPart_000_0001_01D2C05E.09F22A50"
Content-Language: en-us
DKIM-Signature: v=1; a=rsa-sha256; d=augustcellars.com; s=winery; c=simple/simple; t=1493404157; h=from:subject:to:date:message-id; bh=ZnitWBJfG/M5voXGBo/wjtUd146aSWEFKqbqKSOZUtc=; b=KF3drJ6pLnaW6F1LxMX+Y24L9DLyk1MiaN5CeECWsifbyeZUK+9IHbDKqU3yblcI+Tr0GCvLwZN lucDOsVDrR30Bz1+bozgQst9I9b6vPrwDB3M1EZC96wfQuaUAAyeGH35VB65CH6YB3eccFiH2YbSp CF8UxoHVLkge9GlXiqDH0uIc6J4angCXhwAqUNSEyPRXmkYxaMXMf1bqqagj1L0odkbwb056Y7f7M 5wLCP/z70JdS2IrXrhmKtOEmeQuyEKDeEQADhsJvTLSyWHVrlPdOIXHAxd5H0pADtO+VavD0KLvCt WYLrvgUDH/c7PKhIYV4aCGP9zf7yOo7KgEqw==
Received: from mail2.augustcellars.com (192.168.1.201) by mail4.augustcellars.com (192.168.1.153) with Microsoft SMTP Server (TLS) id 15.0.1263.5; Fri, 28 Apr 2017 11:29:17 -0700
Received: from Hebrews (193.253.56.155) by mail2.augustcellars.com (192.168.0.56) with Microsoft SMTP Server (TLS) id 15.0.1263.5; Fri, 28 Apr 2017 11:29:11 -0700
From: Jim Schaad <ietf@augustcellars.com>
To: 'William Conner' <wconner@google.com>, spasm@ietf.org
References: <149218146333.15800.10260233763572420696.idtracker@ietfa.amsl.com> <CAFTQxQtMSzVNr8oae1U6Nbu_YjkYbTDxk6FJ2FkA4yH9vGnZ0g@mail.gmail.com>
In-Reply-To: <CAFTQxQtMSzVNr8oae1U6Nbu_YjkYbTDxk6FJ2FkA4yH9vGnZ0g@mail.gmail.com>
Date: Fri, 28 Apr 2017 20:28:42 +0200
Message-ID: <000001d2c04d$46673770$d335a650$@augustcellars.com>
MIME-Version: 1.0
X-Mailer: Microsoft Outlook 16.0
Thread-Index: AQDDZz1qAuXyhgyMEs+1C58pozIThAKEdXKIo+WnNHA=
X-Originating-IP: [193.253.56.155]
Archived-At: <https://mailarchive.ietf.org/arch/msg/spasm/vJvthxH_GF3bcS83X2qjYH6NDAs>
Subject: Re: [Spasm] Fwd: New Version Notification for draft-wconner-blake2sigs-00.txt
X-BeenThere: spasm@ietf.org
X-Mailman-Version: 2.1.22
Precedence: list
List-Id: "This is a venue for discussion of doing Some Pkix And SMime \(spasm\) work." <spasm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/spasm>, <mailto:spasm-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/spasm/>
List-Post: <mailto:spasm@ietf.org>
List-Help: <mailto:spasm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/spasm>, <mailto:spasm-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 28 Apr 2017 18:29:33 -0000

Just some really fast first impressions.

 

1.	What is the opinion of CFRG for Blake?   I note that the algorithm definition is published as an Independent stream document and I don’t remember getting any CFRG review at the time.
2.	Please don’t do PKCS v1.5 signatures.  We need to make these go away.
3.	This seems to have a lot of TBD work that is not marked as such.

 

Jim

 

From: Spasm [mailto:spasm-bounces@ietf.org] On Behalf Of William Conner
Sent: Friday, April 28, 2017 6:41 PM
To: spasm@ietf.org
Subject: [Spasm] Fwd: New Version Notification for draft-wconner-blake2sigs-00.txt

 

I believe that this submission is relevant to this working group.  Feedback welcome.

 

Thanks,

William

 

---------- Forwarded message ----------
From: <internet-drafts@ietf.org <mailto:internet-drafts@ietf.org> >
Date: Fri, Apr 14, 2017 at 9:51 AM
Subject: New Version Notification for draft-wconner-blake2sigs-00.txt
To: Adam Langley <agl@google.com <mailto:agl@google.com> >, William Conner <wconner@google.com <mailto:wconner@google.com> >, Andrei Popov <Andrei.Popov@microsoft.com <mailto:Andrei.Popov@microsoft.com> >, Andrei Popov <andrei.popov@microsoft.com <mailto:andrei.popov@microsoft.com> >, Ryan Sleevi <sleevi@google.com <mailto:sleevi@google.com> >



A new version of I-D, draft-wconner-blake2sigs-00.txt
has been successfully submitted by William Conner and posted to the
IETF repository.

Name:           draft-wconner-blake2sigs
Revision:       00
Title:          BLAKE2 Algorithms and Identifiers for use in the Internet X.509 Public Key Infrastructure Certificate and Certificate Revocation List (CRL) Profile
Document date:  2017-04-14
Group:          Individual Submission
Pages:          6
URL:            https://www.ietf.org/internet-drafts/draft-wconner-blake2sigs-00.txt
Status:         https://datatracker.ietf.org/doc/draft-wconner-blake2sigs/
Htmlized:       https://tools.ietf.org/html/draft-wconner-blake2sigs-00
Htmlized:       https://datatracker.ietf.org/doc/html/draft-wconner-blake2sigs-00


Abstract:
   This document describes the conventions for using the BLAKE2b-512
   hash function with each of the following signature algorithms: RSA
   Public-Key Cryptography Standards #1 version 1.5 (RSA PKCS#1 v1.5),
   RSA Probabilistic Signature Scheme (RSASSA-PSS), RSA Encryption
   Scheme - Optimal Asymmetric Encryption Padding (RSAES-OAEP), Elliptic
   Curve Digital Signature Algorithm (ECDSA), and Edwards-curve Digital
   Signature Algorithm (EdDSA).  This specification applies to the
   Internet X.509 Public Key Infrastructure (PKI) when digital
   signatures are used to sign certificates and certificate revocation
   lists (CRLs).  This document also specifies the object identifiers
   (OIDs) for the combinations of the BLAKE2b-512 hash function with the
   aforementioned signature algorithms.




Please note that it may take a couple of minutes from the time of submission
until the htmlized version and diff are available at tools.ietf.org <http://tools.ietf.org> .

The IETF Secretariat