[TLS] Re: WG Last Call: draft-ietf-tls-mlkem-05 (Ends 2025-11-26)

Kazuho Oku <kazuhooku@gmail.com> Mon, 24 November 2025 09:04 UTC

Return-Path: <kazuhooku@gmail.com>
X-Original-To: tls@mail2.ietf.org
Delivered-To: tls@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 420078F67499 for <tls@mail2.ietf.org>; Mon, 24 Nov 2025 01:04:27 -0800 (PST)
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.099
X-Spam-Level:
X-Spam-Status: No, score=-2.099 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id a8mG6BCPvQQv for <tls@mail2.ietf.org>; Mon, 24 Nov 2025 01:04:27 -0800 (PST)
Received: from mail-pf1-x429.google.com (mail-pf1-x429.google.com [IPv6:2607:f8b0:4864:20::429]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 095CB8F67491 for <tls@ietf.org>; Mon, 24 Nov 2025 01:04:27 -0800 (PST)
Received: by mail-pf1-x429.google.com with SMTP id d2e1a72fcca58-7b8bbf16b71so4802529b3a.2 for <tls@ietf.org>; Mon, 24 Nov 2025 01:04:26 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20230601; t=1763975059; x=1764579859; darn=ietf.org; h=content-transfer-encoding:cc:to:subject:message-id:date:from :in-reply-to:references:mime-version:from:to:cc:subject:date :message-id:reply-to; bh=rWvsCnRqIKr5MvCoDVpMSJciH4ucOArhpop1HognPIY=; b=m2R0GTl+LUXKO6ElDDN+P9nffEUva8fvxtDk4ldWSDUhbS51NbAj8Rm9KvvUb4UKNd VLLrAx2o7XvipFvzN0y1y/4vB5d8ckfDCKOAPuwVExetNZk46vD+EZlhwu59gzMxFC/5 gkVVn0plwqrdcKYo0V6enJLRu0B7NXoHT6X0KMV/uv0Dr8770U+YiHgDHcHSTQWqG7/s pkJYMXmhJU4N0GPrS7V/U99PN6F7U9xoVWtoW83csGIMM4nkmNOkCEXOg/I5TC5XORjv zuMRAGluZ95/i/vY6o2+iuJb9R1j+CwPCzu2WjcUKXx5A2d0+BtxEHsxGkL5myyVKsEL rOoA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20230601; t=1763975059; x=1764579859; h=content-transfer-encoding:cc:to:subject:message-id:date:from :in-reply-to:references:mime-version:x-gm-gg:x-gm-message-state:from :to:cc:subject:date:message-id:reply-to; bh=rWvsCnRqIKr5MvCoDVpMSJciH4ucOArhpop1HognPIY=; b=jrD6pzfBsmQcAs3iN4s2l9gHQtYc7ybXThBxxNVW8lSDRisgB4kuGF95aZekU83v/D 6khvrWrEdA9kXKCRnb+AnpeKrXQdjKT5xI8J1o8JEbDZ0dW+wLYDd7f7hBppTnJWWASj CpXXT9PZuxh8xx6Nlr+7jEk3PkHbg7Ez5hmOzFF0E8cCsMYM3NxN4qdKED4T2eizOyrC zJtO9mPRVV8007VMPiemxuTWvDepe+CidqgfLOGVK/di+vbG4OlLuKLFS35IvQh0hhd4 nwDQX/pvzN+hLm7UsPNzxtbhRs79QDzftENg9CW8Irf6bPxt0+7MZf50JvgFARVxCuWA uZBQ==
X-Forwarded-Encrypted: i=1; AJvYcCUoXgivE+W+UxmZWqip64mXNnDf2zmVWAhGnkPI6s+7B2OYNlPJSC1jKSSm27ap/W6xdj8=@ietf.org
X-Gm-Message-State: AOJu0Yw0JCns1NbXbJCcdBt/gaDXNopBfIw30MZeiNaG0pnAd75u93pA duSfPVlWxXOQ3IZOLhpDUl+nM+2cfQPH72WBmKOo+IggEqn5uy6RnaSSg1xj+tlHbUNDMzwyURK tnD6180lpcpC8msYvehxjHgdM6gVsaC0=
X-Gm-Gg: ASbGnctyTHEyDAbSc7Vx3AUKfqQzCTcuK1fMOfQwMNGZ4juVRpMrMq6DYdt0uJFnuCa IO9ncmpAqXY3InwmlW7giqHEnP/WHMVIxflv/16KvY2rUwGNWIN5rPpUZM5JJqpdTsYe19j0BOL kFCXl5j/JIrF9LRRkwGFONAq+SWPnRD7007YCKeFNsHVM3KAX8nRBGfeQY3zv+eTELKqSw4mFRg JbHIqZmI4sV3Enw4Ajv2wyGJs4pmaMbRwm/RdvIgUJBw3Z8RxfvnbL4d1oW85Qrde7wTdy6M6Tg Msv29BzcQWHtmcJZPzK1X6L/T3Qh5w==
X-Google-Smtp-Source: AGHT+IGhpBTfQztzVt/pYNxltggHcWxJTdHUa0d9TDS4xn7s0xaWCZ+mGLa2IqeMXHvJ7fISFxBX+0DIKoQOYuVACWQ=
X-Received: by 2002:a05:7022:6609:b0:119:e569:fba6 with SMTP id a92af1059eb24-11c9d816ef0mr8541606c88.21.1763975059408; Mon, 24 Nov 2025 01:04:19 -0800 (PST)
MIME-Version: 1.0
References: <176236867319.904123.10146982018394612684@dt-datatracker-5df8666cb-7l4w5> <bc79d0a8-ff81-4b02-aca0-4221ad6a8fd0@cs.tcd.ie>
In-Reply-To: <bc79d0a8-ff81-4b02-aca0-4221ad6a8fd0@cs.tcd.ie>
From: Kazuho Oku <kazuhooku@gmail.com>
Date: Mon, 24 Nov 2025 18:04:06 +0900
X-Gm-Features: AWmQ_blyO_TnSV1A8_GI0u-ere3T-7YuZeBHjHnbQpXLbm7XdJ2P7P7s6qYLmxM
Message-ID: <CANatvzxzjHujiaGHMaDeM_wSx4hHqO7pTZUtg5Hmcat_RdkezA@mail.gmail.com>
To: Stephen Farrell <stephen.farrell@cs.tcd.ie>
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable
Message-ID-Hash: HZMQ4WCROWEQ54BFIDMNOXFKZNXS7X4G
X-Message-ID-Hash: HZMQ4WCROWEQ54BFIDMNOXFKZNXS7X4G
X-MailFrom: kazuhooku@gmail.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-tls.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: draft-ietf-tls-mlkem@ietf.org, tls-chairs@ietf.org, tls@ietf.org
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [TLS] Re: WG Last Call: draft-ietf-tls-mlkem-05 (Ends 2025-11-26)
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/0REjhx-3BnIvk47WxMHllxvhL8Y>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Owner: <mailto:tls-owner@ietf.org>
List-Post: <mailto:tls@ietf.org>
List-Subscribe: <mailto:tls-join@ietf.org>
List-Unsubscribe: <mailto:tls-leave@ietf.org>

2025年11月6日(木) 4:01 Stephen Farrell <stephen.farrell@cs.tcd.ie>:
>
>
> I re-read the document. It has zero commentary on the issues about
> hybrids vs. pure PQ. It may be hard to reach rough consensus on what
> to say about that, but it is a topic where people have significantly
> different opinions, so I think we ought say something, for example,
> along the lines of, "At the time of writing a significant number of
> knowledgeable people consider it better to deploy hybrid KEMS, while
> some do dispute that. Opinions may change over time." I'd be happy
> but surprised if the WG had consensus to add such text, but we
> should. Absent that, I think producing an RFC based on this draft
> provides a misleading signal to the community.

+1.

Given that Section 6 says the entries in the TLS Supported Groups IANA
registry will have Recommended = N, I think it would make sense to say
this explicitly in the abstract.

This seems like the kind of clarification the WG could easily agree
on, as it just surfaces in the abstract what is already stated later
in the document, and helps avoid giving the impression that publishing
this RFC implies that these algorithms are recommended by the IETF for
deployment.

-- 
Kazuho Oku