Re: [TLS] sect571r1

Dave Garrett <davemgarrett@gmail.com> Thu, 16 July 2015 02:49 UTC

Return-Path: <davemgarrett@gmail.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 220851B35D1 for <tls@ietfa.amsl.com>; Wed, 15 Jul 2015 19:49:45 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2w97zEV-MRte for <tls@ietfa.amsl.com>; Wed, 15 Jul 2015 19:49:44 -0700 (PDT)
Received: from mail-qg0-x230.google.com (mail-qg0-x230.google.com [IPv6:2607:f8b0:400d:c04::230]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id C798F1B35CF for <tls@ietf.org>; Wed, 15 Jul 2015 19:49:43 -0700 (PDT)
Received: by qgee109 with SMTP id e109so4955635qge.0 for <tls@ietf.org>; Wed, 15 Jul 2015 19:49:43 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=from:to:subject:date:user-agent:cc:references:in-reply-to :mime-version:content-type:content-transfer-encoding:message-id; bh=IhVUd261YpEmihwTKpZoyIidKQ/KBS1Gs0XGLmrW15w=; b=YLUgxpt3I2h9ZQzyrzKGhxce1d5s0JEsJdeuDtzolZzFZYCh2ezZ7z3ph50sR42YMZ K4f+boVCIjVXGpLVx9lNudexyCAUy80heJTS52dkfrsPy7iAhybDxKawtJWIEbHq3F0u mblmLlLzh8hm6QqztkJy1y6A3AQcH8s6ooshygP6krclKqp5s7ywsHoNnKimTXkJG1xm UxOWBXJ9iS31hw66P1jxHqb+d37wdETS/rMjD3CaVBfB5XbuDDtvhfCklB82Makyjfir 2UCY7chbJ2HZcUT7I0q/fG2KTKagUXpHef5tTOy+Y6wfuiYmKGb7G8NCz2q8VOnqfr+x f8fw==
X-Received: by 10.140.44.73 with SMTP id f67mr13239977qga.88.1437014983152; Wed, 15 Jul 2015 19:49:43 -0700 (PDT)
Received: from dave-laptop.localnet (pool-96-245-254-195.phlapa.fios.verizon.net. [96.245.254.195]) by smtp.gmail.com with ESMTPSA id b133sm3307966qhc.40.2015.07.15.19.49.42 (version=TLSv1 cipher=RC4-SHA bits=128/128); Wed, 15 Jul 2015 19:49:42 -0700 (PDT)
From: Dave Garrett <davemgarrett@gmail.com>
To: tls@ietf.org, Dan Brown <dbrown@certicom.com>
Date: Wed, 15 Jul 2015 22:49:40 -0400
User-Agent: KMail/1.13.5 (Linux/2.6.32-74-generic-pae; KDE/4.4.5; i686; ; )
References: <CAHOTMVJ+Rbvojqsa35ysLy8M1YwWEc2Qm7LDppQj7YKdpr0cfA@mail.gmail.com> <20150716014248.5333071.47478.4400@certicom.com> <201507152242.55454.davemgarrett@gmail.com>
In-Reply-To: <201507152242.55454.davemgarrett@gmail.com>
MIME-Version: 1.0
Content-Type: Text/Plain; charset="iso-8859-1"
Content-Transfer-Encoding: 7bit
Message-Id: <201507152249.40999.davemgarrett@gmail.com>
Archived-At: <http://mailarchive.ietf.org/arch/msg/tls/FR1sUFAhd83836ftm0dHKVX7zXU>
Subject: Re: [TLS] sect571r1
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 16 Jul 2015 02:49:45 -0000

On Wednesday, July 15, 2015 10:42:54 pm Dave Garrett wrote:
> The stats also show 1575 "support" it, so I'm not sure what's going on there specifically. (if someone can explain this bit of those stats, please do)

Actually, now that I think about it, it could just be that every single implementation out there prioritizes sect571r1 over sect571k1. So, it has low support, but everything that supports it defaults to sect571r1.

Note that both are supported by an order of magnitude fewer servers than secp384r1 and secp521r1.


Dave