Re: [TLS] STRAW POLL: Size of the Minimum FF DHE group

Daniel Kahn Gillmor <dkg@fifthhorseman.net> Wed, 05 November 2014 14:24 UTC

Return-Path: <dkg@fifthhorseman.net>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DA8C71A890A for <tls@ietfa.amsl.com>; Wed, 5 Nov 2014 06:24:01 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.9
X-Spam-Level:
X-Spam-Status: No, score=-1.9 tagged_above=-999 required=5 tests=[BAYES_00=-1.9] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id k1Hi-lzN4IXJ for <tls@ietfa.amsl.com>; Wed, 5 Nov 2014 06:24:00 -0800 (PST)
Received: from che.mayfirst.org (che.mayfirst.org [209.234.253.108]) by ietfa.amsl.com (Postfix) with ESMTP id 77BF41A1B46 for <tls@ietf.org>; Wed, 5 Nov 2014 06:24:00 -0800 (PST)
Received: from [10.70.10.71] (unknown [38.109.115.130]) by che.mayfirst.org (Postfix) with ESMTPSA id 60283F984 for <tls@ietf.org>; Wed, 5 Nov 2014 09:23:57 -0500 (EST)
Message-ID: <545A32EC.2040100@fifthhorseman.net>
Date: Wed, 05 Nov 2014 09:23:40 -0500
From: Daniel Kahn Gillmor <dkg@fifthhorseman.net>
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:33.0) Gecko/20100101 Icedove/33.0
MIME-Version: 1.0
To: IETF TLS WG <tls@ietf.org>
References: <8E6B8F53-9E8C-46B2-A721-85E918576F3A@ieca.com> <20141105012314.GG23599@mournblade.imrryr.org> <CADMpkcLTBRJ4FJvz7iKot2cAXT4oa49T9BkxJFXpHrr=5twmvw@mail.gmail.com>
In-Reply-To: <CADMpkcLTBRJ4FJvz7iKot2cAXT4oa49T9BkxJFXpHrr=5twmvw@mail.gmail.com>
Content-Type: multipart/signed; micalg="pgp-sha512"; protocol="application/pgp-signature"; boundary="5irbBN05Gi1F17THn9TpcS9Fgiik8dgRq"
Archived-At: http://mailarchive.ietf.org/arch/msg/tls/PbbGnVcdg2lMNoUdHFw_8SXYCoM
Subject: Re: [TLS] STRAW POLL: Size of the Minimum FF DHE group
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 05 Nov 2014 14:24:02 -0000

On 11/05/2014 06:56 AM, Bodo Moeller wrote:
> [*] Minor editing issue: it actually says that you can use exponents in the
> [2,2^224] range, but also says that you "should choose a secret key of at
> least 224 bits". Since there's no discussion of leading zeros in the
> document (I think), the latter could be read as requiring a [2^223, ...]
> range.

Thanks for this suggestion, Bodo.  i'll incorporate it in the next revision.

	--dkg