[TLS] Re: ML-DSA in TLS

"Scott Fluhrer (sfluhrer)" <sfluhrer@cisco.com> Fri, 25 October 2024 13:31 UTC

Return-Path: <sfluhrer@cisco.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 85A50C1CAE66 for <tls@ietfa.amsl.com>; Fri, 25 Oct 2024 06:31:33 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -9.74
X-Spam-Level:
X-Spam-Status: No, score=-9.74 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.148, DKIMWL_WL_MED=-0.001, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, RCVD_IN_DNSWL_BLOCKED=0.001, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, RCVD_IN_ZEN_BLOCKED_OPENDNS=0.001, SPF_NONE=0.001, T_SCC_BODY_TEXT_LINE=-0.01, T_SPF_HELO_PERMERROR=0.01, URIBL_BLOCKED=0.001, URIBL_DBL_BLOCKED_OPENDNS=0.001, URIBL_ZEN_BLOCKED_OPENDNS=0.001, USER_IN_DEF_DKIM_WL=-7.5] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=cisco.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id C9hXNgq8ldC4 for <tls@ietfa.amsl.com>; Fri, 25 Oct 2024 06:31:29 -0700 (PDT)
Received: from rcdn-iport-6.cisco.com (rcdn-iport-6.cisco.com [173.37.86.77]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 42771C18DB8D for <tls@ietf.org>; Fri, 25 Oct 2024 06:31:29 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cisco.com; i=@cisco.com; l=1868; q=dns/txt; s=iport; t=1729863089; x=1731072689; h=from:to:cc:subject:date:message-id:references: in-reply-to:content-transfer-encoding:mime-version; bh=R2PFmOjMFiGgoN58IfARIM6nE1mhLGg6TsSQO6JuQtw=; b=N5vTp1iNQAl97zMc4h0U1mlQUZE6ora7DbHzWUtnQP/1BMoswR7tkajC CVe0gz7elmWOcrAJEMLn8ESRJ6NH6Z+qAaOc9rMr1NrZlxPYuK6xEbwam uXKAUgZWVY17cIef+ogFt9/BYJJvCatF4LejZOlYsxbyBKKLhBvy+fniK 0=;
X-CSE-ConnectionGUID: Fgdn8cJGR5KxQLIbRyk8DQ==
X-CSE-MsgGUID: LlpSexBKTiCfyXffXat55g==
X-IPAS-Result: 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
IronPort-PHdr: A9a23:zFrAhxWcSnCqZpe1EoO4DDpIbFLV8K3PAWYlg6HPw5pUeailupP6M 1OavLNmjUTCWsPQ7PcXw+bVsqW1QWUb+t7Bq3ENdpVQSgUIwdsbhQ0uAcOJSAX7IffmYjZ8H ZFqX15+9Hb9Ok9QcPs=
IronPort-Data: A9a23:D/UB66t7dK8nxqr9D7hPt4yNCOfnVBFfMUV32f8akzHdYApBsoF/q tZmKWqPOq2MY2rye49/bNy0pBgH68LWy9MxTVFrpHtmF3kUgMeUXt7xwmUckM+xwmwvaGo9s q3yv/GZdJhcokf0/0rrb/676yElhclkf5KkYMbcICd9WAR4fykojBNnioYRj5Vh6TSDK1vlV eja/YuGYTdJ5xYuajhIsvrZ9Us21BjPkGpwUmIWNKgjUGD2zxH5PLpHTYmtIn3xRJVjH+LSb 47r0LGj82rFyAwmA9Wjn6yTWhVirmn6ZFXmZtJ+AsBOszAazsAA+v9T2Mk0NS+7vw60c+VZk 72hg3AfpTABZcUgkMxFO/VR/roX0aduoNcrKlDn2SCfItGvn3bEm51T4E8K0YIw1Ol7BzFF1 9MidRMdVzSijdinw+KXc7w57igjBJGD0II3oHpsy3TdSP0hW52GG/mM7t5D1zB2jcdLdRrcT 5NGMnw0M1KaPkAJYwtOYH49tL/Aan3XaDNctVKPqLAf6GnIxws327/oWDbQUobVFJ8Pzh/I/ woq+UzdBgkhOcy16gaE2Xy9tuHBrSrnBd8dQejQGvlCxQf7KnYoIAESTnO6rOW3zEmkVLpix 1c84CEiq+02sUesVNS4B0H+q3+ftRlaUN1VewEn1DywJmPvy1/xLkAPTyVKb5ots8peeNDg/ gXhcw/BbdC3jICodA==
IronPort-HdrOrdr: A9a23:OKHN6qnC3/nEVU+LAR0287rACWPpDfNjiWdD5ihNYBxZY6Wkfp +V7ZcmPE7P6Ar5BktApTnZAtj/fZq9z/JICYl4B8bFYOCUghrYEGgE1/qs/9SAIVyzygcz79 YbT0ETMqyVMbE+t7eE3ODaKadv/DDkytHUuQ629R4EJm8aCdAE0+46MHfmLqQcfng+OXNNLu vm2iMxnUvZRZ14VLXdOlA1G8L4i5ngkpXgbRQaBxghxjWvoFqTgoLSIlyz5DtbdylA74sD3A H+/jAR4J/Nj9iLjjvnk0PD5ZVfn9XsjvFZAtaXt8QTIjLwzi61eYVIQdS5zXAIidDqzGxvvM jHoh8mMcg2wWjWZHuJrRzk3BSl+Coy6kXl1USTjRLY0I/ErXMBeoh8bLBiA1/kAnkbzZZBOW VwriSkXq9sfFb9deLGloH1vl9R5xKJSDEZ4J4uZjRkIPgjgflq3M0iFIc/KuZbIMo8g7pXS9 VGHYXS4u1bfkidaG2ctm5zwMa0VnB2BRueRFMe0/blmAS+sUoJhnfw/vZv1kso5dY4Ud1J9u 7EOqNnmPVHSdIXd7t0AKMETdGsAmLATBrQOCbKSG6XWZ0vKjbIsdr68b817OaldNgBy4Yzgo 3IVBdduXQpc0zjBMWS1NlA8wzLQm+6QTPxo/suraRRq/n5Xv7mICeDQFchn4+ppOgeGNTSX7 KpNJdfE5bYXB3T8EZyrnrDsrVpWA0juZcuy6QGsnq107f2FrE=
X-Talos-CUID: 9a23:srWDiWE1rTIhOodaqmJJ+0ISSssHXUeA72fpB26yM3dqGJGsHAo=
X-Talos-MUID: 9a23:/Jp5jArcbEFdQDqsMTsezxVmLPxl846NNEEmn4Q2tce0PDAtZjjI2Q==
X-IronPort-Anti-Spam-Filtered: true
Received: from rcdn-l-core-04.cisco.com ([173.37.255.141]) by rcdn-iport-6.cisco.com with ESMTP/TLS/TLS_AES_256_GCM_SHA384; 25 Oct 2024 13:31:28 +0000
Received: from rcdn-opgw-1.cisco.com (rcdn-opgw-1.cisco.com [72.163.7.162]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by rcdn-l-core-04.cisco.com (Postfix) with ESMTPS id 7200618000195 for <tls@ietf.org>; Fri, 25 Oct 2024 13:31:28 +0000 (GMT)
X-CSE-ConnectionGUID: uXLNG/W6R4yCrGOWNv15sg==
X-CSE-MsgGUID: Zkq5+u58SnyAGOu3avO4zg==
Authentication-Results: rcdn-opgw-1.cisco.com; dkim=pass (signature verified) header.i=@cisco.com
X-IronPort-AV: E=Sophos;i="6.11,231,1725321600"; d="scan'208";a="19958087"
Received: from mail-dm6nam11lp2177.outbound.protection.outlook.com (HELO NAM11-DM6-obe.outbound.protection.outlook.com) ([104.47.57.177]) by rcdn-opgw-1.cisco.com with ESMTP/TLS/ECDHE-RSA-AES256-GCM-SHA384; 25 Oct 2024 13:31:28 +0000
ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=KjAef4TzlD424uTK5e+w5NUWi3Z4Fr7wbwLM/0gKKZy7gYDpFUk/x5hoQIUT7bcU+LnbUoSKRiz2swp2exmjfAI6FA239W/823ynjisc2+6J0C3JElRnvyJ6aBZQ+VbE3FLYREZ0dlIz6W/Ejsc4j9r91TqYS1fxQioA2faH/eSXmScB2xAoJcTAeRQHY4IMeUQROCpT8BZRc1Pt63JjaCzY2GU+OfgjxfHjhpfFnycBN2/gyQyjbwtlQ0hRzJtJsw/wOfC+BaJEwNWMm6t+ysr3VepaSbo304xULYbLVc/Q0w66nf5XSlFCdjdK+UuE2ff7drzmfQ0jYPYfTOzuzA==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=R2PFmOjMFiGgoN58IfARIM6nE1mhLGg6TsSQO6JuQtw=; b=KuX3KOJRoxHrSTNGtB9bz2m5AIQ4AAWd1Gxf2D8Khb4xK6Rd9rSs5WCH5JhExSLcZxJZaIJvWImbyqXSeRSMSphnUTswKKVctRpbcFKnW+/D1SARUSJR5OIxvsDlRVQjxRkcZKK8jlM8Ux+1tQF4rjQOMc3K+St98SOUrpiheQJ/sTL8fhuSDe/vVZ5LFoJNPQf4UMOrg6UFFWzO+13xDY9YTPqh35PD1NbhA7ciDdaCHPY0G0N3rMxv/v+EgqhdTaWB1k/01J0+V3dkinUFm/E0jaAuVIVbgeT5Glq+azieOahLYWZSziMGHHPvCWzzORSt4tcPY844d/LWw8Wa5Q==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cisco.com; dmarc=pass action=none header.from=cisco.com; dkim=pass header.d=cisco.com; arc=none
Received: from CH0PR11MB5444.namprd11.prod.outlook.com (2603:10b6:610:d3::13) by MN6PR11MB8147.namprd11.prod.outlook.com (2603:10b6:208:46f::12) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.8093.21; Fri, 25 Oct 2024 13:31:25 +0000
Received: from CH0PR11MB5444.namprd11.prod.outlook.com ([fe80::5f89:ba81:ff70:bace]) by CH0PR11MB5444.namprd11.prod.outlook.com ([fe80::5f89:ba81:ff70:bace%4]) with mapi id 15.20.8093.018; Fri, 25 Oct 2024 13:31:25 +0000
From: "Scott Fluhrer (sfluhrer)" <sfluhrer@cisco.com>
To: "Scott Fluhrer (sfluhrer)" <sfluhrer=40cisco.com@dmarc.ietf.org>, "ilariliusvaara@welho.com" <ilariliusvaara@welho.com>, "<tls@ietf.org>" <tls@ietf.org>
Thread-Topic: [TLS] Re: ML-DSA in TLS
Thread-Index: AQHbJXUhwPMYF1vzXEuKMyrT9ufN0rKUoD8AgACS2ACAAHgegIAAYycAgAAT/QCAAA4/QIABQWeA
Date: Fri, 25 Oct 2024 13:31:25 +0000
Message-ID: <CH0PR11MB5444EF6B2BA366EDDAF46C09C14F2@CH0PR11MB5444.namprd11.prod.outlook.com>
References: <CAMjbhoUFkL=UT0Pt2xjPLm998=j1ef+wdm0WO14_W7OJDJ-hOg@mail.gmail.com> <bcb2e444-7fc7-477d-b290-77adad4a1630@redhat.com> <GVXPR07MB9678B11440060A8A315ED39B894D2@GVXPR07MB9678.eurprd07.prod.outlook.com> <CABcZeBMAg=r8MfJsJsVLe=bkPwE2e88ETnvop=JjCeHbCdct_w@mail.gmail.com> <45af8f58-c9b0-482b-9010-3061a357d4af@redhat.com> <SN7PR14MB649229665128EE5664DC434B834E2@SN7PR14MB6492.namprd14.prod.outlook.com> <Zxp92mXnAEA_Lt3U@LK-Perkele-VII2.locald> <CH0PR11MB5444498B945F445878CDA794C14E2@CH0PR11MB5444.namprd11.prod.outlook.com>
In-Reply-To: <CH0PR11MB5444498B945F445878CDA794C14E2@CH0PR11MB5444.namprd11.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: CH0PR11MB5444:EE_|MN6PR11MB8147:EE_
x-ms-office365-filtering-correlation-id: e4e3008a-0be1-4335-4b0f-08dcf4f952b9
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;ARA:13230040|1800799024|376014|366016|10070799003|38070700018;
x-microsoft-antispam-message-info: 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
x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:CH0PR11MB5444.namprd11.prod.outlook.com;PTR:;CAT:NONE;SFS:(13230040)(1800799024)(376014)(366016)(10070799003)(38070700018);DIR:OUT;SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 3MJVYTSrCNnct1GHIkFjxCIUR+lvPzOR9aLVZj/woHUtQIiKdUS3K/Quj+1nw015zF5CQpe0CrA0YnV2rwCPxioARLLycYO1qS5GoVqfQpm7jAOxx3VJKyiAozeg50S8QEIIBfCIn+Y3d6f3OlZSsJjbV8pVyyRnGQwCdq8aapOM6L+ecu1WXhtMvmx6RGKPiGduuKCzyQWMj1nWrpbLYwIg1KR3CvyezmZcimStzuUbPsfNtDjwcUDm+N3828CXFRE21YS61A59KOOS+0ueEWK3KeV7ov83PCuHOsfXw7kgJqPQSL10hd2PcRvuE97rhyKxERXM1t3CzB/FvzS+PKIFJXqrOOghiW8d0DRQFJWvvXzOksfPNq8dWeUJyJhn93NecRebxLcxPmeDzmOthrzUTdEdfFlIEYZ8JbPXLVQLhtWedp2ttItwThZzV3a1UdYCOS6sCqHek/fwHtckfaK6rkS/TAG3kNc28OLtz3/0vYFHc67uvZFaC1MDe995r5sSb0EQrg/tHtPgFeJ5TbryzUOmIyb144S0v0h+Ma+zpTfqLxfbTFBgSQ0cV4iLyDzBUyYvvgTpKYfJVnk9rf4+BYv1MsBGhyY919rk3ADe4MxxTMEA2B40uZ5qrhDXCYcTOzmFYcz3dtg4CKx6JXAFVdN+HSfT3BkaSImPUrUbK1CwpfQEG3+m0j4caUuOzYESoexqG5Hh+U9P+KZ3mldabfz7agLGgyWNMku4KiIQScUuF6SqlQ6TJtLS5LAk/LmYdE2VCUz+cETyRGZTVYjBnxa7Thw3SpU7cE688PMA70w8t0FXjGSxahujFdazDbpS7iEgi4/1oLRPpIMem0Fz7N7GFD2I6wLrLFpEGeD4aBDu/n2BurvRBMKUvCTo344n3LormGE8tUvaKj5RTymawMw/WQSg+vBcJgvsfaiyQAIWF6orf3IWPgV3j1CFeGNPf5g+KZAp6pJyXhn0lRhI+iEqGQxi9gzMvw3mtsjHJh+Y0Dlp7YzbvSrgf4KfGEJoVsVhQphVHTNp3NpXMv5msxYsqpoOQf0Qci4jZYtcOyHXw59kdXKJhoY1myoPNpOO+lAAg3s7XVqVdFmW7GWhBAoVt7o6saqIHDMwX+WH944B6HfyKv4FECQ/BW04wlzwTXPd4hZLT0D4HqLsqN8cKuldXa41wnJu7BrzzeGs7RTX1gMwIRehSAoihPubsYQDN5cB5k1EuosrtmOw79ChUDI0LXdzNUyF1JyPhDlE91KoS103RLA+kDbfgfRNlQ4Z8lidWuQrxnykM6lTBKQv+gEGG7X0U/5RQtjuvzbDBkz5Yg181RPPFphH/R1FGtHu7T48VrIXktUjjXOKQOYs/BAX/X0US8yLnDIF0nEaiwjctqJBoD9ZLB72nNIHM0r2KrQH4KMKUELg4LqFA5L0RUmDxAd6G01Yeawu+MtQZvOJVZAXpgKyem7EgLgKesDTOoUpqQHzphhs4LHLK9gKYxxId4KhC1x3oGPLU0pjqNd2XP0gws0kxER+NqyWGZiCUQIBqQeNe63SrgieagjJlbd+D/tM+zXqT9LlLSIbOH8txpTAay6wJqh0qhsJg4nSmix9hQbxIbiv0ZVUBuEHaZedWRhGylF6psya2gaI5D1AWXMW+uQC0WdpO88m
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-OriginatorOrg: cisco.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: CH0PR11MB5444.namprd11.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: e4e3008a-0be1-4335-4b0f-08dcf4f952b9
X-MS-Exchange-CrossTenant-originalarrivaltime: 25 Oct 2024 13:31:25.1525 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 5ae1af62-9505-4097-a69a-c1553ef7840e
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: tW0te0LWD24IUkMSLyQ8DAXcYfP50JcHEeRCX/DYXmjVhfvvhhUBIKommbC86vKiaQymWgzEQAVF+3b+DHmIPQ==
X-MS-Exchange-Transport-CrossTenantHeadersStamped: MN6PR11MB8147
X-Outbound-SMTP-Client: 72.163.7.162, rcdn-opgw-1.cisco.com
X-Outbound-Node: rcdn-l-core-04.cisco.com
Message-ID-Hash: L2ZB4YAACZ2GNY4SJJXLAZSD4EXBOPMN
X-Message-ID-Hash: L2ZB4YAACZ2GNY4SJJXLAZSD4EXBOPMN
X-MailFrom: sfluhrer@cisco.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-tls.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [TLS] Re: ML-DSA in TLS
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/cSGXb3JM0icSA_n93yArDIjymKY>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Owner: <mailto:tls-owner@ietf.org>
List-Post: <mailto:tls@ietf.org>
List-Subscribe: <mailto:tls-join@ietf.org>
List-Unsubscribe: <mailto:tls-leave@ietf.org>

I've been called out on this, and so I need to apologize

> -----Original Message-----
> From: Scott Fluhrer (sfluhrer) <sfluhrer=40cisco.com@dmarc.ietf.org>
> Sent: Thursday, October 24, 2024 2:18 PM
> To: ilariliusvaara@welho.com; <tls@ietf.org> <tls@ietf.org>
> Subject: [TLS] Re: ML-DSA in TLS
> 
> 
> Is there some complexity there?  Yes, a little.  However, I cannot see how that
> is an unprecedented amount; certainly, less than Deidre's idea of 'let's open
> up the crypto and smash the two sides together'.
> 

I was referring to https://eprint.iacr.org/2023/423.pdf, which looking back, Deidre wasn't even a coauthor (my bad - I thought Deidre presented it; obviously my advanced age has not improved my memory).

In any case:
	- I was certainly not impugning Deidre herself.  If my words came across that way, well, that's a bad choice of words on my part, and I apologize for my clumsy wording.
	- I am also not impugning Nina Bindel and Britta Hale (the authors of the work I was referring to).
	- I did mean to impugn 2023/423 - I personally think that it is complex (anything that involves opening up the crypto engine is infeasible in some environments), and doesn't address a real problem that isn't addressed by the simple 'lets concatenate the signatures' approach.

I hope to be more careful with my words in the future.