[TLS] Re: Please stop debating ML-DSA

Tim Hollebeek <tim.hollebeek@digicert.com> Mon, 08 June 2026 17:38 UTC

Return-Path: <tim.hollebeek@digicert.com>
X-Original-To: tls@mail2.ietf.org
Delivered-To: tls@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 0B414FD938D8 for <tls@mail2.ietf.org>; Mon, 8 Jun 2026 10:38:15 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1780940295; bh=RYWclRtmmZQ/8xUCGcn0M3hpx0QKpy0+9rbfW2BJuB8=; h=From:To:Subject:Date:References:In-Reply-To; b=O5W9jU6ikXwA+bk1e+oZFP2DH8O+wpDzdB4id0vF6EKBXC8mVYSifc/k2PMK/5Ac5 LBQlZPI73jbpMtf/XecxmDkyiRQVqLOKwFs2wJWO1ZwY70zFCuOjlQJgLr1fKwFmE5 MmfpOyGTultK2Pd4r+U6sWxycjM8jqG0Y5yf8nfo=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.095
X-Spam-Level:
X-Spam-Status: No, score=-2.095 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=0.001, RCVD_IN_VALIDITY_CERTIFIED_BLOCKED=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=digicert.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id WKEyMXRNC8T8 for <tls@mail2.ietf.org>; Mon, 8 Jun 2026 10:38:14 -0700 (PDT)
Received: from BL0PR03CU003.outbound.protection.outlook.com (mail-eastusazon11022107.outbound.protection.outlook.com [52.101.53.107]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-384) server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 78B17FD9370D for <tls@ietf.org>; Mon, 8 Jun 2026 10:36:26 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=pV9o9Bkwf11o3r7HE15gCMV44JXehffZZ7WL/f2ELkjseanlAgb2vocG5BU/GNYYm3+hoXWKYw7UvgC5+pcYsjYn52xqsgpiME0CGYnUvxAquC9FGDDGmngmluF3qYD9MzMKHGXaZDhVLp8eLF2LigjvYIf7bWWAiJukj8orN7ChgZHFXoJg8egV3kPlImObWBtpxurnxhl77NbrHYLKyGavFhixtxae5iydPVIfv3mrj7f986mS6o+4STyEp6Xs96LxketBCaKRpJUKjMMvs27DbUBbswEhuF7FewS72YyaGYKta4CkzTd151Ca3dMnSiye+moUped+eEh2XgsZ4w==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=RYWclRtmmZQ/8xUCGcn0M3hpx0QKpy0+9rbfW2BJuB8=; b=A7JvtB+ZeS4lM0u+1K87MHmJ9nAOoKUXDEjOEKMFEcy+TZWENfg0G0GCsebRNkjlCWKvKUyeae/CG9cmoDb1V1MxAaEQkFxQbjpf4L6L0wFoM6raUBUhnE16sFprzERWC7ZJB99zd1CNLC91yeRB1DBue7jF6orfzFd7/cgvn1S7qKkKLqNeaLwnZuShZOOZXZta8olnMLlCtcBc8kF/jl0K2iF+HarGDGNuqMDo8p9SPnuLfBJDd32oU5OMXJJMQTm+QdEg9v60qznYTgN3UIXV83Nko9RCX/VQ5u677qc8H6+BstMs0cQMsxg4lujsajWIY5/J/hInWpcrAM2Siw==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=digicert.com; dmarc=pass action=none header.from=digicert.com; dkim=pass header.d=digicert.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=digicert.com; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=RYWclRtmmZQ/8xUCGcn0M3hpx0QKpy0+9rbfW2BJuB8=; b=oTq+rqpV4KXcJURgLIb9egV36042JqqShHwn8vUEW1659wECxwv1YLbG8hQBmtdWqw4YPemYlIrAwK/K7+YeFAZ5VbgqiVCufB3ck+rqQRTZHa7KxbztiLz4N1X6/y5MYmT2N/D6QWQxzh8Zg468wI9qHOThEuhjpgdQsf40DbywQKtgd7MPKFaT0sB/+wCPv4AYz17ZLyAedaqCbO7rv6HMLo7IwPQ8xHJpwYyR5FnpnaDWSroFAf2gFOQRxHSZlQmdPP6al7LJHFXWFU4kmyK/o7clpcSOxCvx1hGqM7aECxbLJIeVMQq54Df5Bx60o+EvVOQxeErbyEq9GMa75A==
Received: from DM4PR14MB5768.namprd14.prod.outlook.com (2603:10b6:8:b7::16) by BL0PR14MB3793.namprd14.prod.outlook.com (2603:10b6:208:1cf::15) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.21.92.13; Mon, 8 Jun 2026 17:36:19 +0000
Received: from DM4PR14MB5768.namprd14.prod.outlook.com ([fe80::22ef:63d:de22:1c10]) by DM4PR14MB5768.namprd14.prod.outlook.com ([fe80::22ef:63d:de22:1c10%6]) with mapi id 15.21.0092.011; Mon, 8 Jun 2026 17:36:19 +0000
From: Tim Hollebeek <tim.hollebeek@digicert.com>
To: Eric Rescorla <ekr@rtfm.com>, "<tls@ietf.org>" <tls@ietf.org>
Thread-Topic: [TLS] Please stop debating ML-DSA
Thread-Index: AQHc9rg+vCuA3XCpzEyqVbViAynO2bY07PNz
Date: Mon, 08 Jun 2026 17:36:18 +0000
Message-ID: <DM4PR14MB5768B19C679CF713B8CA2EC4831C2@DM4PR14MB5768.namprd14.prod.outlook.com>
References: <CABcZeBOX7hcDD3ukcy1wR6xwkQEEidk_Z70QVqZdsO+mdo8hvQ@mail.gmail.com>
In-Reply-To: <CABcZeBOX7hcDD3ukcy1wR6xwkQEEidk_Z70QVqZdsO+mdo8hvQ@mail.gmail.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels:
authentication-results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=digicert.com;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: DM4PR14MB5768:EE_|BL0PR14MB3793:EE_
x-ms-office365-filtering-correlation-id: ac1ed8a9-96ce-4e0d-4704-08dec5847313
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;ARA:13230040|366016|1800799024|376014|8096899003|18002099003|22082099003|38070700021|3023799007|56012099006;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:DM4PR14MB5768.namprd14.prod.outlook.com;PTR:;CAT:NONE;SFS:(13230040)(366016)(1800799024)(376014)(8096899003)(18002099003)(22082099003)(38070700021)(3023799007)(56012099006);DIR:OUT;SFP:1102;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: lgu9TLl3T67PG/IdSDeuuslRn50GOzgiVtjzTfmqpS1RyOytBooWMreD0qk2hZY0efQNXTNQa9p16L3yJPAIwqoxNUZrJU1vS+X/7pEVVd/ohvmG6rK62zqZC/a7fqbXtHE3jJ/WiHPqi+WRYHoHzTtA+y9qOAuDBOZKHnJstlXmvp9lwo9K55I0BMA3PB6H8F0BnOC8du5pVBvNXXicW5Hlzb5lP2aP36Icxd1dGJeg3T5zUhr8MwWydpeY+6jRbEEdnW+45UNiSO6o7V2MFr1Zm76PObBmnO0IGP9pRQIWdKiCFJn3ciTOZ4lUzb7rM2ZPXPMe8JV1OOSB4GICPwirEyMN8hgq4mUnkYH1iip3nJ5R2xia1QiFKjydkif5TKXmoxT9O7fHMsPpccb3FBMZuB+0p4lZky1Y3xlh1MEi8OmifO/pkmuvZPXKbrjdDib+aBIVJj34djS3GzEhVJw/j2ZWWFtf/PAI1r/15/QUxAyTuUuhaIZ8wvkpzFeyqWISMzg6pfIYWhQLAk9NezdCedV97xlEWpdxw0tnzjPms8UWgQl+Ok6XPgkj227N2OLUMGN7z9pVZkHkzVX0oQF2Io9MfJhFWW1S92i9MCOeHIuLjar8mo16WvtyIYQSEvkCwh//KLLAAAzuBRwNIx8v1Mlfrj0Yl8hHqwQuGaFGQgijGkplIGj55vD/+Dn0xHy8XQC2P/icB/r29hwtOpKrP9UI6nY85Y97uvDoNeuifJPfLPlqod8ku4byE+bA/OsHZE3ENYJwPO/MublAi7sM9nL49attyU4lVv5RgxiXhFrc1hGcecFulH1IrUz7ta6Gi/IoiuO5yK+0RZIFpqz5aAN6nlTTY897JTPkVsqZVkxGwWMA8u5jXZ8CCLEM+JR9vYo66jMa143AM0Fu54wb/RsgUXsRpOH4YbhEOitdXg+4a9Er1aF0EGWNHIvJymwZMuDPdAaS5eGJm89dVItyCJ2/Yq7STKd50rN6w+X1e+uJ1cTvwnS0EoVVO2rZHxpnHxgEPyNinCdPh/wetbrMsx3ReJjgv8m3m+bQtmQEk46pS1r0u0GVBXNjQRbo+R4vEjJSqZmPRikLsBSOs9HB3tuFzTGX7I3nwXtaXImWyFftELcWtsYOIPQNEKi0nqGJ5Yjg85awKpFhuavS6ac5zyTQakKIDoQHLNNY204w4w9TybsuPo7Aq4xoHANhBazuHdZHSb7yxkDA/vEA6Nb/RgAPkm7UiglAfMOvgMl/GbBh+mNSeGwpYebJG1x8+PKDnNjpZt6i+r5SSDyukKNicG8C56VwXCd/sxSiorA7Nsf8o1q84Y0uJ9+R7upMtCM0KmEJVLapFrRwL2UZRcbj6fZosQOgoXdQDf56h9JiiNKNC2lvXYwLo65F4MEOTOJTrwLbOOVDuLgBxsUPNPf474ESH6m5ObPsolPigs6BXqOg9Td5nU5g4ka9MCJLWDLUvcFmPTQszMEpCyo4uQt/coOujKb9/ftkJ2V4GjHZ1AtKz1i6UZzKV1pudO+qBP61eUO0YADOz/nf370rmPkLgsKMovI7h+dJCabMniJZg1pFFmnTAJb+68fO+b8dXfhcDPUycIjvt3UijxCi8iOjiIET7Q2qdR3H6zqzkDFIxsKypzSADRD5ue2EPZrT1vNJ6fezzuEVUu4DZFbDPwJkwd25ZrrpnIQ7jCCwjpMtUXHxdfFNBfkX9TnDgtxo38wYbgxwOsDTN3iGP6tNlw==
Content-Type: multipart/alternative; boundary="_000_DM4PR14MB5768B19C679CF713B8CA2EC4831C2DM4PR14MB5768namp_"
MIME-Version: 1.0
X-OriginatorOrg: digicert.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DM4PR14MB5768.namprd14.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: ac1ed8a9-96ce-4e0d-4704-08dec5847313
X-MS-Exchange-CrossTenant-originalarrivaltime: 08 Jun 2026 17:36:19.0030 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: cf813fa1-bde5-4e75-9479-f6aaa8b1f284
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: BJyWr51flIfhH8Vi0Ji9u1WCpT3KNqnBlCYsCLf5J9ygoDTbJp5lEP9LvomTKjaH/ydMtWj3y+VROD0O0Q6t6ZItWJVbLgwxwZK7MYuja88=
X-MS-Exchange-Transport-CrossTenantHeadersStamped: BL0PR14MB3793
Message-ID-Hash: X4SMAADRSBHMFJJOMUGJEV3YJZIHOPR2
X-Message-ID-Hash: X4SMAADRSBHMFJJOMUGJEV3YJZIHOPR2
X-MailFrom: tim.hollebeek@digicert.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-tls.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [TLS] Re: Please stop debating ML-DSA
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/0CI25svKWC14pNwbYIZfifg-Syc>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Owner: <mailto:tls-owner@ietf.org>
List-Post: <mailto:tls@ietf.org>
List-Subscribe: <mailto:tls-join@ietf.org>
List-Unsubscribe: <mailto:tls-leave@ietf.org>

Thank you Eric,

I 100% agree with you. Let's get back to fun debates about crypto policy and protocols.

-Tim
________________________________
From: Eric Rescorla <ekr@rtfm.com>
Sent: Sunday, June 7, 2026 3:59 PM
To: <tls@ietf.org> <tls@ietf.org>
Subject: [TLS] Please stop debating ML-DSA

Fellow TLS enthusiasts,

This message is a plea to stop debating whether the IETF should
publish an RFC for standalone ML-DSA [0]

What makes communities like the IETF work is that regardless of our
views on particular subjects, we have a common commitment to a process
for resolving disagreements. An important part of that process is that
those on the losing side of a particular issue recognize that they
have lost and accept the outcome. I recognize that that can be hard --
I've certainly been on the losing side more than once, and I didn't
like it -- but the alternative, in which the losing side just
continues to litigate the issue indefinitely is even worse.

I recognize that there are those who feel that the process was not
followed in this instance. Their recourse is to the IETF appeals
process, starting with the area director, and then the IESG. You may
or may not feel that that is a satisfactory recourse, but whether it
is or not, continuing to debate the topic on the TLS mailing list is
not part of the process and will not change the outcome, because the
document is now out of the WG's hands [1]. What it will do, however,
is make engaging with the TLS WG unpleasant for those trying to do
other work.

Accordingly, I would ask my fellow WG members to restrain yourselves.
In addition, I would ask the chairs to rule that further discussion on
the virtues of publishing an ML-DSA document is out of order and
moderate those who insist on continuing.

-Ekr


[0] As a technical matter, if the WG came to consensus *not* to
publish the document, we could pull it back; I see essentially
no chance that will happen.

[1] Standalone ML-KEM is a different case because it is still
with the WG, although I don't think debate on that topic
is very productive either at this point.