[tcpm] Minimum nonce length in draft-touch-tcpm-experimental-options

"SCHARF, Michael" <Michael.Scharf@alcatel-lucent.com> Mon, 20 February 2012 11:34 UTC

Return-Path: <Michael.Scharf@alcatel-lucent.com>
X-Original-To: tcpm@ietfa.amsl.com
Delivered-To: tcpm@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id E4EA621F8769 for <tcpm@ietfa.amsl.com>; Mon, 20 Feb 2012 03:34:52 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -6.177
X-Spam-Level:
X-Spam-Status: No, score=-6.177 tagged_above=-999 required=5 tests=[AWL=0.072, BAYES_00=-2.599, HELO_EQ_DE=0.35, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id tR57IUTiLbw9 for <tcpm@ietfa.amsl.com>; Mon, 20 Feb 2012 03:34:51 -0800 (PST)
Received: from mailrelay2.alcatel.de (mailrelay2.alcatel.de [194.113.59.96]) by ietfa.amsl.com (Postfix) with ESMTP id 18C7F21F8741 for <tcpm@ietf.org>; Mon, 20 Feb 2012 03:34:50 -0800 (PST)
Received: from SLFSNX.rcs.alcatel-research.de (slfsn1.rcs.de.alcatel-lucent.com [149.204.60.98]) by mailrelay2.alcatel.de (8.14.3/8.14.3/ICT) with ESMTP id q1KBYmiJ001346; Mon, 20 Feb 2012 12:34:48 +0100
X-MimeOLE: Produced By Microsoft Exchange V6.5
Content-class: urn:content-classes:message
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Transfer-Encoding: quoted-printable
Date: Mon, 20 Feb 2012 12:34:45 +0100
Message-ID: <133D9897FB9C5E4E9DF2779DC91E947C06C80E75@SLFSNX.rcs.alcatel-research.de>
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
Thread-Topic: Minimum nonce length in draft-touch-tcpm-experimental-options
Thread-Index: Aczvw6TixopfpLhxSFeITUcMr0+rJA==
From: "SCHARF, Michael" <Michael.Scharf@alcatel-lucent.com>
To: Joe Touch <touch@isi.edu>
X-Scanned-By: MIMEDefang 2.69 on 149.204.45.73
Cc: tcpm@ietf.org
Subject: [tcpm] Minimum nonce length in draft-touch-tcpm-experimental-options
X-BeenThere: tcpm@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: TCP Maintenance and Minor Extensions Working Group <tcpm.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tcpm>, <mailto:tcpm-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/tcpm>
List-Post: <mailto:tcpm@ietf.org>
List-Help: <mailto:tcpm-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tcpm>, <mailto:tcpm-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 20 Feb 2012 11:34:53 -0000

Joe,

The wording on the nonce length in draft-touch-tcpm-experimental-options
may be a little bit unclear ("it MAY be as few as 16 bits if desired").

Does that statement intend to say something like "MUST NOT be shorter
than 16 bits long"? Or shall even a nonce of length 0 be allowed,
provided that there are additional security mechanism such as checksums
or digital signatures? In the latter case, existing use of the
codepoints without nonce could be compliant to the recommendation,
provided that there are other means to detect false positives.

As a side note, I guess that the numbers "245 and 255" in the second
paragraph are wrong. This should refer to 253 and 254, right?

Michael (as individual)