Re: [TLS] STRAW POLL: Size of the Minimum FF DHE group

Martin Thomson <martin.thomson@gmail.com> Tue, 04 November 2014 17:56 UTC

Return-Path: <martin.thomson@gmail.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 46D0D1ACCE8 for <tls@ietfa.amsl.com>; Tue, 4 Nov 2014 09:56:53 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id TlZdeF4FBAiK for <tls@ietfa.amsl.com>; Tue, 4 Nov 2014 09:56:51 -0800 (PST)
Received: from mail-lb0-x234.google.com (mail-lb0-x234.google.com [IPv6:2a00:1450:4010:c04::234]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id EC1391ACCF5 for <tls@ietf.org>; Tue, 4 Nov 2014 09:56:50 -0800 (PST)
Received: by mail-lb0-f180.google.com with SMTP id u10so3239242lbd.11 for <tls@ietf.org>; Tue, 04 Nov 2014 09:56:48 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=mime-version:in-reply-to:references:date:message-id:subject:from:to :cc:content-type:content-transfer-encoding; bh=J7dLz6fsYby8fG+U1FT9rzjURYdigzzb8zoPHvO7tDE=; b=0qoA18sjTMSmS1FLetcfxnaAMg4fDnhaTP/yf07PLeAOI/ESIazJj0bISb951FXOrO k//pLVnH+Y+Z+iHMOtzRY27OvSGHl+BqzWJ2SC8JTf3pf4YMcSNldri6PsoySrSc/BnX 4XT9Js9DAetwYXOeIg+gwnnVX2ce10mOYK3FhoRGuUlhChshJeOcJ4ftpQoLjUP8qozB 0rixXSC0p2aruVUi0U25BW9/fT+saPcSvSiTfn1lk5WRyuqVp8sXow9iuBZuKm58N0Aq 5ngTL6l0yce18yYAwfmu1gvBybx9J3dM+z8PJWnSbWt42ej3NiaG2kP4Q3Z0bJDikszX +F9Q==
MIME-Version: 1.0
X-Received: by 10.112.146.229 with SMTP id tf5mr16511561lbb.73.1415123808796; Tue, 04 Nov 2014 09:56:48 -0800 (PST)
Received: by 10.25.215.134 with HTTP; Tue, 4 Nov 2014 09:56:48 -0800 (PST)
In-Reply-To: <8E6B8F53-9E8C-46B2-A721-85E918576F3A@ieca.com>
References: <8E6B8F53-9E8C-46B2-A721-85E918576F3A@ieca.com>
Date: Tue, 04 Nov 2014 09:56:48 -0800
Message-ID: <CABkgnnWBn+j-wh0ZOCqyBuhc=D+a_tpaW61PG6bw_kWNjVmPmw@mail.gmail.com>
From: Martin Thomson <martin.thomson@gmail.com>
To: Sean Turner <turners@ieca.com>
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable
Archived-At: http://mailarchive.ietf.org/arch/msg/tls/7IdNitK1qMN1ha44S6TOTNsRUvo
Cc: "TLS@ietf.org (tls@ietf.org)" <tls@ietf.org>
Subject: Re: [TLS] STRAW POLL: Size of the Minimum FF DHE group
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 04 Nov 2014 17:56:53 -0000

On 4 November 2014 09:49, Sean Turner <turners@ieca.com> wrote:
> 3) The other point made about 2048-bit DLOG is that it’s a power of 2 and there’s parity with the public key sizes.

I don't find the power of 2 thing particularly compelling when the
next point is 3072.  What might be more compelling is support for an
assertion that 2048 is more likely to cause the extension to be used
over the current arbitrary groups.

Otherwise, I'm all for having stronger keys.  2432 is an odd choice,
2560 might have been easier to understand, but more is better, right?