Re: [TLS] ECDH_anon

Yoav Nir <ynir.ietf@gmail.com> Wed, 27 January 2016 06:45 UTC

Return-Path: <ynir.ietf@gmail.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 21D491ACEAD for <tls@ietfa.amsl.com>; Tue, 26 Jan 2016 22:45:41 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level:
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 7UzNEUP9Rkvo for <tls@ietfa.amsl.com>; Tue, 26 Jan 2016 22:45:39 -0800 (PST)
Received: from mail-wm0-x231.google.com (mail-wm0-x231.google.com [IPv6:2a00:1450:400c:c09::231]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 65A0A1ACEAE for <tls@ietf.org>; Tue, 26 Jan 2016 22:45:39 -0800 (PST)
Received: by mail-wm0-x231.google.com with SMTP id p63so10966631wmp.1 for <tls@ietf.org>; Tue, 26 Jan 2016 22:45:39 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20120113; h=content-type:mime-version:subject:from:in-reply-to:date:cc :content-transfer-encoding:message-id:references:to; bh=YqPwd3B2BucbG3C2giCM6uj1NiFcbMMbIa79zdZURVs=; b=pmKtRalxuKqIANKuGmEPnbGjWM/9MRx1h7sB1RywcFQd8UvDnvq1htbIlw5eK1S+GW ysZmDnBT1ZT09Pav7Pc9csRO15RHnkX0DulJVP+RsyhKQgqhfgvG5XhXRNFbPmU8Q/H6 3dZPHD9la+8o6YljJY27B1p11N+uHsTt9oUEHvcv/lt227NJRQ1Rds0yqW/XQ1Xlj8V2 OFw2A24+5U82i5bR7mN8p9vgmAhqbyXwu6E6/IL/t4r8cYHi+L7f16sh3Sw3piARp36I BE41v2WJeFg1DkPX9Msp1Gixw2Wo7+b93zp+e+LfaN8QV9uGZJcfk2IJX314VKtJJAVf nDww==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:content-type:mime-version:subject:from :in-reply-to:date:cc:content-transfer-encoding:message-id:references :to; bh=YqPwd3B2BucbG3C2giCM6uj1NiFcbMMbIa79zdZURVs=; b=WJCVXuIFjp/HT+Lzp8ElOSK38xJDkvZ1+Zjm2S5AeJWYbQ6E6t0p7kMzMgn2FIDX8m dkEuKQ7i4l0xchb4emJFIq1AUsczb0Sz3bk/4DgsIh4yO3ciuh5RFmYk7mpXzxvfvsRm JcNCZKYa+mA9Bwt93hiGD7G5XjLeJY0i8ciboG1f13Q7dy3LXMbyD2mLya4kIYiUbJ76 pKw+Uc1QKy8czpedKTujIrpJEal76qjTP0+mjfjMGtPskSFiy/hstYlAkZ7lWY9m8IRq 8T51buM/2nhUX6q7cRWx5duTDW2KxUuKW8X0JKvRE/6v/Dmuc3TA0SQSI0SqbMCYWl+c K6UA==
X-Gm-Message-State: AG10YOQ0dAiSO94dwQF42KdXl55IbxAWVT71EgwpW59b+rIu2wGO7K5pOnI9jvJFTFcQXQ==
X-Received: by 10.194.123.103 with SMTP id lz7mr15267560wjb.140.1453877138017; Tue, 26 Jan 2016 22:45:38 -0800 (PST)
Received: from [10.4.101.58] ([80.179.9.115]) by smtp.gmail.com with ESMTPSA id js8sm4584471wjc.37.2016.01.26.22.45.33 (version=TLS1 cipher=ECDHE-RSA-AES128-SHA bits=128/128); Tue, 26 Jan 2016 22:45:36 -0800 (PST)
Content-Type: text/plain; charset="utf-8"
Mime-Version: 1.0 (Mac OS X Mail 9.2 \(3112\))
From: Yoav Nir <ynir.ietf@gmail.com>
In-Reply-To: <CABkgnnXqH6MX=q+jKoOoDeWg3MGSvd0P3GNVTHPthq9OqwSMMg@mail.gmail.com>
Date: Wed, 27 Jan 2016 08:40:23 +0200
Content-Transfer-Encoding: quoted-printable
Message-Id: <4A0FC1C9-D956-4FDB-8A1C-4ACA6A0A9BC1@gmail.com>
References: <CABkgnnXqH6MX=q+jKoOoDeWg3MGSvd0P3GNVTHPthq9OqwSMMg@mail.gmail.com>
To: Martin Thomson <martin.thomson@gmail.com>
X-Mailer: Apple Mail (2.3112)
Archived-At: <http://mailarchive.ietf.org/arch/msg/tls/U_HwVElo-DQJkcOwZTNwYcZpix8>
Cc: "tls@ietf.org" <tls@ietf.org>
Subject: Re: [TLS] ECDH_anon
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 27 Jan 2016 06:45:41 -0000

> On 27 Jan 2016, at 5:51 AM, Martin Thomson <martin.thomson@gmail.com> wrote:
> 
> 4472bis has a TBD regarding a missing "E" in the name of ECDHE_anon
> cipher suites.
> 
> I raised an issue: https://github.com/tlswg/rfc4492bis/issues/17

Quoting:

> My view: just because DH_anon is confused, doesn't mean we can't fix it for ECDH(E).

OTOH RFC 4492 has been around for a while. Renaming the label now could cause confusion. Another point to consider is that we’re deprecating all the fixed ECDH ciphersuites, so now all ECDH is ECDHE.

So, I don’t know…

Yoav