[TLS] Re: WG Adoption Call for ML-KEM Post-Quantum Key Agreement for TLS 1.3

Filippo Valsorda <filippo@ml.filippo.io> Wed, 02 April 2025 10:01 UTC

Return-Path: <filippo@ml.filippo.io>
X-Original-To: tls@mail2.ietf.org
Delivered-To: tls@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id BC2DB1650C4B for <tls@mail2.ietf.org>; Wed, 2 Apr 2025 03:01:09 -0700 (PDT)
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.696
X-Spam-Level:
X-Spam-Status: No, score=-2.696 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H5=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, RCVD_IN_VALIDITY_SAFE_BLOCKED=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=filippo.io header.b="LjNHK4HC"; dkim=pass (2048-bit key) header.d=messagingengine.com header.b="FPAo/So3"
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id kzNSBBfTeMcm for <tls@mail2.ietf.org>; Wed, 2 Apr 2025 03:01:07 -0700 (PDT)
Received: from fhigh-b4-smtp.messagingengine.com (fhigh-b4-smtp.messagingengine.com [202.12.124.155]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id EE5891650C44 for <tls@ietf.org>; Wed, 2 Apr 2025 03:01:06 -0700 (PDT)
Received: from phl-compute-11.internal (phl-compute-11.phl.internal [10.202.2.51]) by mailfhigh.stl.internal (Postfix) with ESMTP id 9B841254026B for <tls@ietf.org>; Wed, 2 Apr 2025 06:01:06 -0400 (EDT)
Received: from phl-imap-13 ([10.202.2.103]) by phl-compute-11.internal (MEProxy); Wed, 02 Apr 2025 06:01:06 -0400
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=filippo.io; h=cc :content-type:content-type:date:date:from:from:in-reply-to :in-reply-to:message-id:mime-version:references:reply-to:subject :subject:to:to; s=fm1; t=1743588066; x=1743674466; bh=Plpkz81Net 9bFTiw6/gsvChCW1nTAPjvZXpYz8Q51tE=; b=LjNHK4HC19gd3MTFOjakKjSx8O GdTebiYgxv5xPdnUDhcE4QmS2L7aBeP89AhX3NVyFfruHYTm/ht3rPj7q/vHKF2D WZJBhl5UercUzKTXrVe5x/xCM5uUXnxfWvmGtcepKZdUDtQHpaqS/rAZ/QN2HdBk c61j6OlTgaWoJsn/uuxei438op0kn0xJCiSfanU8P9F83BZeiDLZH1mVJiwzpNrb 9UGTE27CemdG8N9xDTKffbK+B1FCGMI2HRH+YlZmfxv/vt63BbobSIRo+LeX5hd7 mLvnCig6fJK+8wJdw+AWjkv8pxAm5ONXbnXEiHoN28Iv3P/lM2S6voOGGMkw==
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:content-type:content-type:date:date :feedback-id:feedback-id:from:from:in-reply-to:in-reply-to :message-id:mime-version:references:reply-to:subject:subject:to :to:x-me-proxy:x-me-sender:x-me-sender:x-sasl-enc; s=fm2; t= 1743588066; x=1743674466; bh=Plpkz81Net9bFTiw6/gsvChCW1nTAPjvZXp Yz8Q51tE=; b=FPAo/So3ngFgpsPKd/5jf66mqveWUFTtQpjaJe3fUqUgGyWZrvV eCmJ6HAannzBRTEfy1UF6KR73CG3DZjMBq1BWFtCjU8vgVf7iP1wNDLV8u18Nd3L W4NnWVnY4guOsrZRiR4/F9HFSwDNOC/VbUIl67DZabO1rdCOLXhmWoFimOnk/dsL WevBz3sdXyIzynTUho6ppHLIXiz3xF41fD9XBxtXUZXjYmZxtaLbxhvoelfiTNlE p9U2x64n0+pRItF7PvEW6e7v/SptKAnehiZ5DfOgd/yN+9vcRGcmfzhKadA8lfoO utqj/au6mbk05cL1tCKeki8B6ZjQnK6y9og==
X-ME-Sender: <xms:4grtZ6Y-Ik-rTfoL6qjDRSJT4TdtzpfGvDDG7BgeidlPZzsJ87wUaA> <xme:4grtZ9bs23JemMdf6ZjsbbHIsIXOc3UA7mK28Gd1wb4uFW-cXyAI21Qt1caedsub0 U9AEX17VyVh0Qd0Pg>
X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgeefvddrtddtgddukeehfeejucetufdoteggodetrf dotffvucfrrhhofhhilhgvmecuhfgrshhtofgrihhlpdggtfgfnhhsuhgsshgtrhhisggv pdfurfetoffkrfgpnffqhgenuceurghilhhouhhtmecufedttdenucenucfjughrpefogg ffhffvkfgjfhfutgesrgdtreerredttdenucfhrhhomhepfdfhihhlihhpphhoucggrghl shhorhgurgdfuceofhhilhhiphhpohesmhhlrdhfihhlihhpphhordhioheqnecuggftrf grthhtvghrnhepjeefudekffdtvdefhffhledvhedtledvudeljeeukeekgfekteegueev vddtteevnecuvehluhhsthgvrhfuihiivgeptdenucfrrghrrghmpehmrghilhhfrhhomh epfhhilhhiphhpohesmhhlrdhfihhlihhpphhordhiohdpnhgspghrtghpthhtohepuddp mhhouggvpehsmhhtphhouhhtpdhrtghpthhtohepthhlshesihgvthhfrdhorhhg
X-ME-Proxy: <xmx:4grtZ09zFF-iTjz1Lawq1CsPRkN5Hb4h9oNacBsA4xDxU3WXQF_8hA> <xmx:4grtZ8p-Be9RAiwJBH7iaYjvPai6pUvrouI4_GZO1ElZu5ekbpoAjA> <xmx:4grtZ1o8vP_1nhHu1ZF-kmnf11DyekpAkfPakVD1bsUpojD62jkV7w> <xmx:4grtZ6QqPTE4aRs25ws_HA0gvSv-5EsgDVxQxEeUNV_XAG2V_wvRlw> <xmx:4grtZ2eZ1KrL_IxONS5jspgmCFunS8JgHwh2kG1mSDeVpQ2umelA-QaS>
Feedback-ID: i2e91459c:Fastmail
Received: by mailuser.phl.internal (Postfix, from userid 501) id 342931F00072; Wed, 2 Apr 2025 06:01:06 -0400 (EDT)
X-Mailer: MessagingEngine.com Webmail Interface
MIME-Version: 1.0
X-ThreadId: T1183a54169ec4627
Date: Wed, 02 Apr 2025 11:59:37 +0200
From: Filippo Valsorda <filippo@ml.filippo.io>
To: tls@ietf.org
Message-Id: <61580a61-34eb-4cea-ac2e-ac41affc6f80@app.fastmail.com>
In-Reply-To: <582917A1-F936-4A15-AE9D-342076605BE7@sn3rd.com>
References: <582917A1-F936-4A15-AE9D-342076605BE7@sn3rd.com>
Content-Type: multipart/alternative; boundary="d335814d828c48139589584a8933739d"
Message-ID-Hash: 7ERHEIAPY257JNEF5XNPIEB5LHOX46GY
X-Message-ID-Hash: 7ERHEIAPY257JNEF5XNPIEB5LHOX46GY
X-MailFrom: filippo@ml.filippo.io
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-tls.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [TLS] Re: WG Adoption Call for ML-KEM Post-Quantum Key Agreement for TLS 1.3
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/6GHa8ut7vZUUu1lqQwsy_58muK8>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Owner: <mailto:tls-owner@ietf.org>
List-Post: <mailto:tls@ietf.org>
List-Subscribe: <mailto:tls-join@ietf.org>
List-Unsubscribe: <mailto:tls-leave@ietf.org>

I support adoption.

I also would like to prohibit key reuse, but opposing adoption feels like a bad way to reach that outcome: if the document is published by the ISE or just lives on as a widely deployed draft, the WG will have no say in what requirements it has.

It also seems clear to me the WG consensus will be for the codepoints to remain "Recommended: N" at least for now. Opposing adoption to force the document to be published in a way that can't be "Recommended: Y" feels like (unnecessarily) meta-gaming the IETF process.