Re: [TLS] I-D Action: draft-ietf-tls-deprecate-obsolete-kex-02.txt

Nimrod Aviram <nimrod.aviram@gmail.com> Fri, 31 March 2023 16:01 UTC

Return-Path: <nimrod.aviram@gmail.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id A0461C15DD5E for <tls@ietfa.amsl.com>; Fri, 31 Mar 2023 09:01:22 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.093
X-Spam-Level:
X-Spam-Status: No, score=-2.093 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id orhdSMHgmH5N for <tls@ietfa.amsl.com>; Fri, 31 Mar 2023 09:01:18 -0700 (PDT)
Received: from mail-ed1-x536.google.com (mail-ed1-x536.google.com [IPv6:2a00:1450:4864:20::536]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 84868C15C510 for <tls@ietf.org>; Fri, 31 Mar 2023 09:01:07 -0700 (PDT)
Received: by mail-ed1-x536.google.com with SMTP id cn12so91530457edb.4 for <tls@ietf.org>; Fri, 31 Mar 2023 09:01:07 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20210112; t=1680278466; x=1682870466; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=PU3Q/1VuYXHL7MJi6t9pQQkzMI/BBvdOSGqjxSVRRJw=; b=ANheFMhHhwaNKOKV8n5ZQig1rqkGAdPJ8U/RqZJ7UaP/Zp7tD7SjlDt5Yr4wjsDik+ 7Uvey0+M+3DVLZFraenwkWqRFuN3oyVsZSZT+g3y7eTrMEXPC2BM7Yoy3xtVV3AwTOWo bVkBa6arBWGGYKNrwyCT/PkIfJ13v+q+Iwx51shzkcrCz8SuXJWJeWwAhzs3HkCmimY/ 5tgDMHw7IhF0Z0tUBL3yGsl4HCWouT7oruiS8T2pgNE5CL8T6Y3TJ2kcnOgXCCcNOH18 RxFMvZPk/SEjDDxPlH1swv2kNdaNKHMPE1+xaxvn7Pd7eT7qOeoAOx2S5Hq+XReG/MAO cRqA==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; t=1680278466; x=1682870466; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=PU3Q/1VuYXHL7MJi6t9pQQkzMI/BBvdOSGqjxSVRRJw=; b=ETC2n0Z7q8BkxhvVer2wsT2SWKsMqqSFc+El8tz5iFrqvHsw6sVkAwxRMi/8Nd1l5e liHwTmWbRaqO+4yPNbrE4PGd1TA6QbVtnXzvhI3s+uXQOMk/suXNB7s5uUv2TTjP38at GsuL3ghYi3zSPQyTqfMTNosh2KiU9slLmHOZxKcP4vV3+7fx7nqRiuEAEorpnC3R2Po1 PFemopWshvNRhp1paGV4HJK6LX7Z3fK4mn3Pf+e0NKOYy1H8QOKtKYh+Zz2QD2h2ZedQ F3yYV8SrsW5bInbuMzTNSliu3wgNXApNxfdsKUxqyue4pEoeI3uPdNaLdZkQQx6PmkAP LYeA==
X-Gm-Message-State: AAQBX9dj6d39vnMruLHSPMd4+Ig+5F3YZO2f0559F13NwyfV+Wy4Qnfi s7OnEnRpE798HNsdeW2kSRPoM69P/vsvW49RcC8/YM0MC04=
X-Google-Smtp-Source: AKy350YDJC7x/9Vwy7UYBLMI2VCHV5n8wGINx1ineaGs6+rE8hijx2BlCKYc1f5Inl9mkV/Xw89ImbSdkrtJ+p7glrM=
X-Received: by 2002:a50:f69e:0:b0:4fc:8749:cd77 with SMTP id d30-20020a50f69e000000b004fc8749cd77mr13912986edn.3.1680278465736; Fri, 31 Mar 2023 09:01:05 -0700 (PDT)
MIME-Version: 1.0
References: <167975963879.14931.8285381425784523083@ietfa.amsl.com> <GVXPR07MB967871B061E147B204A97E3989899@GVXPR07MB9678.eurprd07.prod.outlook.com>
In-Reply-To: <GVXPR07MB967871B061E147B204A97E3989899@GVXPR07MB9678.eurprd07.prod.outlook.com>
From: Nimrod Aviram <nimrod.aviram@gmail.com>
Date: Fri, 31 Mar 2023 19:00:54 +0300
Message-ID: <CABiKAoQMxdtrPu1hu_pLYnTTe_2e+2CRryGQEQWUz1k+pvZQbA@mail.gmail.com>
To: John Mattsson <john.mattsson=40ericsson.com@dmarc.ietf.org>
Cc: "tls@ietf.org" <tls@ietf.org>
Content-Type: multipart/alternative; boundary="00000000000012f1ba05f83451df"
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/9zBL-VzUGEfuNklFIHpANH6lJoI>
Subject: Re: [TLS] I-D Action: draft-ietf-tls-deprecate-obsolete-kex-02.txt
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Fri, 31 Mar 2023 16:01:22 -0000

Hi,

Since the draft has DHE cipher suites as a MUST NOT, I believe the
appropriate value is indeed "Discouraged".
(From 8447bis: "N: Indicates that the item has not been evaluated by the
IETF and that the IETF has made no statement about the suitability of the
associated mechanism." That seems incongruent with MUST NOT.)

We might as well add text to change the RSA cipher suites to "D".
It'd be great if one of the chairs could please chime in and let us know if
this sounds reasonable?

thanks,
Nimrod


On Wed, 29 Mar 2023 at 08:28, John Mattsson <john.mattsson=
40ericsson.com@dmarc.ietf.org> wrote:

> Hi,
>
>
>
> 5.  IANA Considerations
>
>
>
> This document requests IANA to mark the cipher suites listed in Appendix
> C as not recommended in the "TLS Cipher Suites" registry. Note that all
> cipher suites listed in Appendix A and in Appendix D are already marked
> as not recommended in the registry.
>
> How do we split the IANA actions for cipher suites between this document, RFC8447, and draft-mattsson-tls-psk-ke-dont-dont-dont?
>
> ”N” seems highly inappropriate for TLS_DHE_RSA_EXPORT_WITH_DES40_CBC_SHA
>
> that is very clearly a “D”
>
> What about TLS_DHE_RSA_WITH_AES_128_GCM_SHA256. Is that a ”N”? The
> definition of discourage is clear with RFC8447bis. The definition of
> deprecated is not as clear.
>
>
>
> Cheers,
>
> John
>
>
> *From: *TLS <tls-bounces@ietf.org> on behalf of internet-drafts@ietf.org <
> internet-drafts@ietf.org>
> *Date: *Sunday, 26 March 2023 at 00:54
> *To: *i-d-announce@ietf.org <i-d-announce@ietf.org>
> *Cc: *tls@ietf.org <tls@ietf.org>
> *Subject: *[TLS] I-D Action: draft-ietf-tls-deprecate-obsolete-kex-02.txt
>
>
> A New Internet-Draft is available from the on-line Internet-Drafts
> directories. This Internet-Draft is a work item of the Transport Layer
> Security (TLS) WG of the IETF.
>
>    Title           : Deprecating Obsolete Key Exchange Methods in TLS 1.2
>    Authors         : Carrick Bartle
>                      Nimrod Aviram
>    Filename        : draft-ietf-tls-deprecate-obsolete-kex-02.txt
>    Pages           : 20
>    Date            : 2023-03-25
>
> Abstract:
>    This document deprecates the use of RSA key exchange and Diffie
>    Hellman over a finite field in TLS 1.2, and discourages the use of
>    static elliptic curve Diffie Hellman cipher suites.
>
>    Note that these prescriptions apply only to TLS 1.2 since TLS 1.0 and
>    1.1 are deprecated by [RFC8996] and TLS 1.3 either does not use the
>    affected algorithm or does not share the relevant configuration
>    options.
>
> The IETF datatracker status page for this Internet-Draft is:
> https://datatracker.ietf.org/doc/draft-ietf-tls-deprecate-obsolete-kex/
>
> There is also an HTML version available at:
>
> https://www.ietf.org/archive/id/draft-ietf-tls-deprecate-obsolete-kex-02.html
>
> A diff from the previous version is available at:
>
> https://author-tools.ietf.org/iddiff?url2=draft-ietf-tls-deprecate-obsolete-kex-02
>
> Internet-Drafts are also available by rsync at rsync.ietf.org:
> :internet-drafts
>
>
> _______________________________________________
> TLS mailing list
> TLS@ietf.org
> https://www.ietf.org/mailman/listinfo/tls
> _______________________________________________
> TLS mailing list
> TLS@ietf.org
> https://www.ietf.org/mailman/listinfo/tls
>