Re: [TLS] TLS-PWD vs. TLS-SRP

SeongHan Shin <seonghan.shin@aist.go.jp> Thu, 07 November 2013 01:15 UTC

Return-Path: <seonghan.shin@aist.go.jp>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DEBBA11E820E for <tls@ietfa.amsl.com>; Wed, 6 Nov 2013 17:15:11 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -5.976
X-Spam-Level:
X-Spam-Status: No, score=-5.976 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, FM_FORGED_GMAIL=0.622, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_MED=-4]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 4GgTS8eMopOt for <tls@ietfa.amsl.com>; Wed, 6 Nov 2013 17:15:07 -0800 (PST)
Received: from na3sys010aog110.obsmtp.com (na3sys010aog110.obsmtp.com [74.125.245.88]) by ietfa.amsl.com (Postfix) with ESMTP id E2CF511E81E3 for <tls@ietf.org>; Wed, 6 Nov 2013 17:15:06 -0800 (PST)
Received: from mail-la0-f41.google.com ([209.85.215.41]) (using TLSv1) by na3sys010aob110.postini.com ([74.125.244.12]) with SMTP ID DSNKUnrpmlMuAxvy70EmUhvhEEbO8Gxv8Bgt@postini.com; Wed, 06 Nov 2013 17:15:07 PST
Received: by mail-la0-f41.google.com with SMTP id ea20so236167lab.28 for <tls@ietf.org>; Wed, 06 Nov 2013 17:15:05 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=aist.go.jp; s=google; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :content-type; bh=+JDXFz4C6hkPf7R6ncd4LQTpGHvNFxiwMqcdzbENoao=; b=h6ildmo4h0RFG8KAEzisB8h+fFA71Yuk1xBPIYOyuuZmiSwKe/eiSFT2eWnKMiIAik FXS/Qv+5xe4bKHi9pqlG9t2UOXwg0ENpXAbFnetWQZvgcq9OSdSUgRJdXyaERXnF2aKI CZInp4nsdZaqs2F0wg3ghzekf7NUIFpcBMfHI=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:in-reply-to:references:date :message-id:subject:from:to:content-type; bh=+JDXFz4C6hkPf7R6ncd4LQTpGHvNFxiwMqcdzbENoao=; b=R1n8GrEjpqRcfuL6xyj6ZBj+r+CQu6QHYWtW8kfiGf1ddWgKdzzsfiojDzbumpCVAE pGIDxqI9LSwGI0/S62LVE+hxe+/6xWzdO9sTdlvXaFtvaq89T9p69wPlmDqf1fUuHyHC yQxmXFausvGCtVh9HxS4r5js1N1+ReWQEI0Cr0+stg/0Cp2aFsWyXKpwjTQb5G391kCC axe5DEM9n9kYKDjY/1M3WeLC7qc2JDK8jFc5bAmzci9yWfZZiLtrhXAJPVJeqf/Batmm btP/O49cIdXNf0+xxbNEq3EIcveNGXIX/NYXEr8z/mzIjJOD9AdGUu4KOnvnQvuK8ZBl b9qA==
X-Gm-Message-State: ALoCoQlGAfFlt31uM7y8b2fZx3yhFO5r0MXcD6kDOfaA+dUpfuojUBkAWqk9Lg34GAsg5jTNnlGQYqVIZoNhXyBs/ZD+6Ytwv+s8mNU8Ish7HjrEFZKkhvWkzy5fec+hYIyCeVkqrs+zeNlJrrw9r1UWPCSKaiaXcQ==
X-Received: by 10.152.216.167 with SMTP id or7mr4309757lac.10.1383786904991; Wed, 06 Nov 2013 17:15:04 -0800 (PST)
MIME-Version: 1.0
X-Received: by 10.152.216.167 with SMTP id or7mr4309752lac.10.1383786904843; Wed, 06 Nov 2013 17:15:04 -0800 (PST)
Received: by 10.112.141.138 with HTTP; Wed, 6 Nov 2013 17:15:04 -0800 (PST)
In-Reply-To: <CAEKgtqmBu2tOtJ1yUQtaTF3umtHpauFqL2XsSGtDNew-fFcWiw@mail.gmail.com>
References: <CAEKgtqmAvR3FoWqE8HxxTWSGrmzEGVKGih4k0+iGXDtodDaMFw@mail.gmail.com> <2fde1fc4aa651cb7bcb38749fb24fa25.squirrel@www.trepanning.net> <CAEKgtqm5pKf+Ky2jazGpDan02yjdtAOhiwfCyAiT_uEHHhEnuA@mail.gmail.com> <de8e217085c2cc62290e9dad107c84ed.squirrel@www.trepanning.net> <CAEKgtqmBu2tOtJ1yUQtaTF3umtHpauFqL2XsSGtDNew-fFcWiw@mail.gmail.com>
Date: Thu, 07 Nov 2013 10:15:04 +0900
Message-ID: <CAEKgtqkDbpF84mELSfYdFoff+dVQxyPnVE1rwXbBsFKdYRrGOw@mail.gmail.com>
From: SeongHan Shin <seonghan.shin@aist.go.jp>
To: "tls@ietf.org" <tls@ietf.org>
Content-Type: multipart/alternative; boundary="001a1135e318e8885504ea8bfea3"
Subject: Re: [TLS] TLS-PWD vs. TLS-SRP
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/tls>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 07 Nov 2013 01:15:12 -0000

Dear all,

> Is there any advantages of tls-pwd over tls-srp?
> Is there any advantages of tls-pwd over tls-augpake and SPEKE?
These are clarifying questions because TLS WG is going with PWD towards
"standard RFC" though PWD has no provable security and is less efficient
(compared to SPEKE and AugPAKE).
Are all tls wg members already clarified with advantages of using tls-pwd?
If so, just let me know.

For patent issues between SPEKE and PWD, there was no conclusions in the
earlier IPsec meetings to my understanding.

Best regards,
Shin


On Thu, Nov 7, 2013 at 7:44 AM, SeongHan Shin <seonghan.shin@aist.go.jp>wrote:

> Hi Dan,
>
> I also was in the IPsec mailing list through all discussions of PAKE
> schemes.
> But, I don't remember any advantages of pwd over augpake and speke.
> Do you mean patent issue that pwd is patent-free and speke isn't?
>
> Regards,
> Shin
>
> On Thu, Nov 7, 2013 at 7:32 AM, Dan Harkins <dharkins@lounge.org> wrote:
>
>>
>>   Hi Shin,
>>
>> On Wed, November 6, 2013 1:24 pm, SeongHan Shin wrote:
>> > Hi Dan,
>> >
>> > Here comes the next question:
>> > Is there any advantages of tls-pwd over tls-augpake and SPEKE?
>> > https://tools.ietf.org/html/draft-shin-tls-augpake-01
>> > http://en.wikipedia.org/wiki/SPEKE_%28cryptography%29
>>
>>   Mrs. Harkins didn't raise a moron. I really do not want to
>> repeat the debacle that occurred on the IPsec mailing list
>> regarding PAKE schemes.
>>
>>   If you would like to rehash all those exchanges I suggest
>> you go look at the archives.
>>
>>   regards,
>>
>>   Dan.
>>
>>
>>
>>
>
>
> --
> ------------------------------------------------------------------
> SeongHan Shin
> Research Institute for Secure Systems (RISEC),
> National Institute of Advanced Industrial Science and Technology (AIST),
> Central 2, 1-1-1, Umezono, Tsukuba City, Ibaraki 305-8568 Japan
> Tel : +81-29-861-2670/5284
> Fax : +81-29-861-5285
> E-mail : seonghan.shin@aist.go.jp
> ------------------------------------------------------------------
>



-- 
------------------------------------------------------------------
SeongHan Shin
Research Institute for Secure Systems (RISEC),
National Institute of Advanced Industrial Science and Technology (AIST),
Central 2, 1-1-1, Umezono, Tsukuba City, Ibaraki 305-8568 Japan
Tel : +81-29-861-2670/5284
Fax : +81-29-861-5285
E-mail : seonghan.shin@aist.go.jp
------------------------------------------------------------------