[TLS] Re: WG Adoption Call for ML-KEM Post-Quantum Key Agreement for TLS 1.3

Jan Schaumann <jschauma@netmeister.org> Wed, 02 April 2025 13:54 UTC

Return-Path: <jschauma@netmeister.org>
X-Original-To: tls@mail2.ietf.org
Delivered-To: tls@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 75AB51672316 for <tls@mail2.ietf.org>; Wed, 2 Apr 2025 06:54:26 -0700 (PDT)
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Level:
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, RCVD_IN_VALIDITY_SAFE_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=netmeister.org
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id NfNiZDCTNnY2 for <tls@mail2.ietf.org>; Wed, 2 Apr 2025 06:54:26 -0700 (PDT)
Received: from panix.netmeister.org (panix.netmeister.org [166.84.7.99]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 58BD01671207 for <tls@ietf.org>; Wed, 2 Apr 2025 06:48:11 -0700 (PDT)
Received: by panix.netmeister.org (Postfix, from userid 1000) id 5928553380; Wed, 2 Apr 2025 09:48:10 -0400 (EDT)
DKIM-Signature: v=1; a=rsa-sha256; c=simple/simple; d=netmeister.org; s=2025; t=1743601690; bh=/qZW9+dNuAqYzLsEmNt2VcZf5Slo1mV7d4lviDQaIIM=; h=From:To:Subject:Content-Type:From:To:Subject; b=RalgNUe0YBOkCbLJ7pyN0y4dhfBBm+p6PXZOo+4+FzwvIdz+rto5vT3dFBuO2qCHk 6P1Ks4MzZ1nLKT5WKJZF6ljPhP4KOGXJP65Jgxe1WPph6WhVRQ8dMo3DAthZaMmMlZ +XTOhw+8OCfUVMkY5LSCB4sjZlKPa79a1C6yjpcOpaNXMzXNJb324HBmuRwxSsQWcq lIJ3DH9E5HM4pDjb43hKgnRYcisrA5MoFEretFUkAjnfJLEI+Asbg1Ar+eJ2yNMaFw PqUiRcL/18LhqLXvkvXLuA4zb0kUFJ114k/meyhp94KJJUjq556qwFCfvp7gvOGZ0e KuQ4ktmSFX+ZA==
Date: Wed, 02 Apr 2025 09:48:10 -0400
From: Jan Schaumann <jschauma@netmeister.org>
To: tls@ietf.org
Message-ID: <Z-1AGna12NAYHPl9@netmeister.org>
Mail-Followup-To: tls@ietf.org
References: <582917A1-F936-4A15-AE9D-342076605BE7@sn3rd.com>
MIME-Version: 1.0
Content-Type: text/plain; charset="us-ascii"
Content-Disposition: inline
In-Reply-To: <582917A1-F936-4A15-AE9D-342076605BE7@sn3rd.com>
Message-ID-Hash: OXGSAAM5JMUIZZJZOPFBCZ3GUSLOYQIN
X-Message-ID-Hash: OXGSAAM5JMUIZZJZOPFBCZ3GUSLOYQIN
X-MailFrom: jschauma@netmeister.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-tls.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [TLS] Re: WG Adoption Call for ML-KEM Post-Quantum Key Agreement for TLS 1.3
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/WnihGFCFJik4LT1wpNeZNIRzxR0>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Owner: <mailto:tls-owner@ietf.org>
List-Post: <mailto:tls@ietf.org>
List-Subscribe: <mailto:tls-join@ietf.org>
List-Unsubscribe: <mailto:tls-leave@ietf.org>

Sean Turner <sean@sn3rd.com> wrote:
> We are continuing with our pre-announced tranche of
> WG adoption calls; see [0] for more information.
> This time we are issuing a WG adoption call for the
> ML-KEM Post-Quantum Key Agreement for TLS 1.3 I-D
> [1]. If you support adoption and are willing to
> review and contribute text, please send a message to
> the list. 

Like others, I'd like to see reuse of ephemeral keys
be prohibited, but also believe that that should not
hinder immediate progress in adopting the draft.

I believe that adopting the draft will allow those who
wish to use pure PQC (for whatever reasons they may
have) to do so while at the same time not in any way
impacting anybody else who doesn't want to do that.

Ergo:
I support adoption.

-Jan