Re: [TLS] RFC4492bis - Removing ECDH

Yoav Nir <ynir.ietf@gmail.com> Wed, 07 January 2015 14:23 UTC

Return-Path: <ynir.ietf@gmail.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id ADEE11A902D for <tls@ietfa.amsl.com>; Wed, 7 Jan 2015 06:23:49 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level:
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id dOMFJCeboWVW for <tls@ietfa.amsl.com>; Wed, 7 Jan 2015 06:23:47 -0800 (PST)
Received: from mail-we0-x229.google.com (mail-we0-x229.google.com [IPv6:2a00:1450:400c:c03::229]) (using TLSv1 with cipher ECDHE-RSA-RC4-SHA (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8DBD91A6F34 for <tls@ietf.org>; Wed, 7 Jan 2015 06:23:47 -0800 (PST)
Received: by mail-we0-f169.google.com with SMTP id m14so1259824wev.14 for <tls@ietf.org>; Wed, 07 Jan 2015 06:23:46 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=from:content-type:message-id:mime-version:subject:date:references :to:in-reply-to; bh=evrIx6hpdMaMc93tdOXRHSrGtcLcWImrFZzBoMxvqTY=; b=yscV+NIKohmohaWFf+FY8mGeMpN349PaC8MWkDW7DE8N1mgpsw0skW11HNMecJjD85 DmR/+2CB0ZI22aptDDC17JJ/W6C2cGJZgBZpBsD1dCpeyOFVkIt3UIUj86LUGbLuYTFd DYeFX3iqJYQwvXdmgs3BQwWLDKWBK7dFdGar1aqhAWEeQ2LL91HMOmIBuCyR4f0EzTdf Fh1gYWJPagH7BpkBCRCr4VeWs0CmExLsvsS4HxlR2vMLkQ0XAdhy1ecz842oIPUB6XK5 n6GUp4ushSFL1x04uqkMmvPlBXbP5FwhY4RnT+NN4E+Dv6qhMPHzpE9Fv4eUhOW+UUpU 2FJw==
X-Received: by 10.180.72.178 with SMTP id e18mr47609247wiv.23.1420640625936; Wed, 07 Jan 2015 06:23:45 -0800 (PST)
Received: from [172.24.249.55] (dyn32-131.checkpoint.com. [194.29.32.131]) by mx.google.com with ESMTPSA id a1sm2312688wjx.28.2015.01.07.06.23.45 for <tls@ietf.org> (version=TLSv1 cipher=ECDHE-RSA-RC4-SHA bits=128/128); Wed, 07 Jan 2015 06:23:45 -0800 (PST)
From: Yoav Nir <ynir.ietf@gmail.com>
Content-Type: multipart/alternative; boundary="Apple-Mail=_91749EDB-8B5F-40B4-A764-058BA274999B"
Message-Id: <CA5F50E8-9FEE-481D-85B5-9DEAB333F4A8@gmail.com>
Mime-Version: 1.0 (Mac OS X Mail 8.1 \(1993\))
Date: Wed, 07 Jan 2015 16:23:43 +0200
References: <274716D0-EC91-4131-A8F7-CD13A9B42CE7@gmail.com>
To: "TLS@ietf.org (tls@ietf.org)" <tls@ietf.org>
In-Reply-To: <274716D0-EC91-4131-A8F7-CD13A9B42CE7@gmail.com>
X-Mailer: Apple Mail (2.1993)
Archived-At: http://mailarchive.ietf.org/arch/msg/tls/TDBoHv8ug3n8LKUke9hIVXv2XHU
Subject: Re: [TLS] RFC4492bis - Removing ECDH
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 07 Jan 2015 14:23:49 -0000

Hi.

I realize this was sent right in the middle of the holiday season, so I’ll give it another try.

Please have a look at the pull request and post comments to the list about whether you’re fine with removing ECDH.

Thanks

Yoav

> On Dec 16, 2014, at 12:29 AM, Yoav Nir <ynir.ietf@gmail.com> wrote:
> 
> Hi.
> 
> I’ve created pulll request #2 for removing references to ECDH (static elliptic curve key) key exchange and ciphersuites.
> 
> https://github.com/tlswg/rfc4492bis/pull/2 <https://github.com/tlswg/rfc4492bis/pull/2>
> 
> Nikos suggested it here: http://www.ietf.org/mail-archive/web/tls/current/msg14555.html <http://www.ietf.org/mail-archive/web/tls/current/msg14555.html>
> Yes, there are other suggestions there, but I’d like to take them one by one.
> 
> Let me know what you think
> 
> Yoav
>