[Suit] NIST selected PQM algorithms

Koen Zandberg <koen.zandberg@inria.fr> Fri, 08 July 2022 11:25 UTC

Return-Path: <koen.zandberg@inria.fr>
X-Original-To: suit@ietfa.amsl.com
Delivered-To: suit@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A9183C14F732 for <suit@ietfa.amsl.com>; Fri, 8 Jul 2022 04:25:58 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.106
X-Spam-Level:
X-Spam-Status: No, score=-2.106 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=inria.fr
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 3KEhP1qAEfom for <suit@ietfa.amsl.com>; Fri, 8 Jul 2022 04:25:54 -0700 (PDT)
Received: from mail2-relais-roc.national.inria.fr (mail2-relais-roc.national.inria.fr [192.134.164.83]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id D7E27C14F739 for <suit@ietf.org>; Fri, 8 Jul 2022 04:25:52 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=inria.fr; s=dc; h=message-id:date:mime-version:to:from:subject: content-transfer-encoding; bh=rn2ShTAoVdGVXTsmpyEGqYBrUklezR6dBcN0Q+XdZIQ=; b=AyPYf0wulirFLL7HwY9xPcOvA6+YeQkgxIsGiehZE22JvjDvSoStAWse yufU+MTaU0o4jTDejuJ3uC+APm8g2CqdIVuJXRBuTK+R8gkFkcg43elP8 A5K40iwBrEmgLnlm+uhHMF5LqjF0XtoSf5k3fLz3jiA+U2VTo5eTsYQIy Q=;
Authentication-Results: mail2-relais-roc.national.inria.fr; dkim=none (message not signed) header.i=none; spf=SoftFail smtp.mailfrom=koen.zandberg@inria.fr; dmarc=fail (p=none dis=none) d=inria.fr
X-IronPort-AV: E=Sophos;i="5.92,255,1650924000"; d="scan'208";a="44849118"
Received: from 185-227-75-229.dsl.cambrium.nl (HELO [10.1.2.42]) ([185.227.75.229]) by mail2-relais-roc.national.inria.fr with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 08 Jul 2022 13:25:48 +0200
Message-ID: <5ccdaef9-1e28-9d4e-8ab5-28179454b09f@inria.fr>
Date: Fri, 08 Jul 2022 13:25:48 +0200
MIME-Version: 1.0
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:91.0) Gecko/20100101 Thunderbird/91.11.0
Content-Language: en-US
To: suit@ietf.org
From: Koen Zandberg <koen.zandberg@inria.fr>
Content-Type: text/plain; charset="UTF-8"; format="flowed"
Content-Transfer-Encoding: 7bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/suit/IEGvYVZD98oByJeRiVvztTpEbyc>
Subject: [Suit] NIST selected PQM algorithms
X-BeenThere: suit@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: Software Updates for Internet of Things <suit.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/suit>, <mailto:suit-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/suit/>
List-Post: <mailto:suit@ietf.org>
List-Help: <mailto:suit-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/suit>, <mailto:suit-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 08 Jul 2022 11:25:58 -0000

Hi all,

NIST announced the first four quantum resistant cryptographic algorithms 
a few days back. Matching the earlier discussions on this list, NIST 
also selected FALCON for the case where smaller signatures are required. 
>From what I understand of the process there is still a document that 
should be released soon(tm) with the exact parameters that should be 
used for the algorithms. In any case I think this is good news for us as 
one of the selected algorithms matches what was preferred from the SUIT 
side.

To be complete, the other algorithms selected are Dilithium and 
SPHINCS+, where Dilithium has large signatures (2.5 KB) and SPHINCS+ has 
even larger signatures (17 KB).

Best Regards,
Koen Zandberg

[1]: 
https://www.nist.gov/news-events/news/2022/07/nist-announces-first-four-quantum-resistant-cryptographic-algorithms