[TLS] Comments from CELLOS consortium

Shin'ichiro Matsuo <matsuo@mac.com> Mon, 05 October 2015 19:54 UTC

Return-Path: <matsuo@mac.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 5C6E91B4F62 for <tls@ietfa.amsl.com>; Mon, 5 Oct 2015 12:54:06 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.599
X-Spam-Level:
X-Spam-Status: No, score=-2.599 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, FREEMAIL_FROM=0.001, MALFORMED_FREEMAIL=0.001, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id wi_X1z1Pzq95 for <tls@ietfa.amsl.com>; Mon, 5 Oct 2015 12:54:05 -0700 (PDT)
Received: from st11p02im-asmtp002.me.com (st11p02im-asmtp002.me.com [17.172.220.114]) (using TLSv1.2 with cipher DHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0D4C71B4F44 for <tls@ietf.org>; Mon, 5 Oct 2015 12:54:05 -0700 (PDT)
Received: from [192.168.1.71] (KD113151025165.ppp-bb.dion.ne.jp [113.151.25.165]) by st11p02im-asmtp002.me.com (Oracle Communications Messaging Server 7.0.5.35.0 64bit (built Mar 31 2015)) with ESMTPSA id <0NVR00RD0JA1T010@st11p02im-asmtp002.me.com> for tls@ietf.org; Mon, 05 Oct 2015 19:54:04 +0000 (GMT)
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10432:,, definitions=2015-10-05_08:,, signatures=0
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 kscore.is_bulkscore=2.25930052444312e-10 compositescore=0.0617480165324052 phishscore=0 kscore.is_spamscore=0 rbsscore=0.0617480165324052 recipient_to_sender_totalscore=0 spamscore=0 urlsuspectscore=0.0617480165324052 adultscore=0 kscore.compositescore=0 circleOfTrustscore=0 suspectscore=1 recipient_domain_to_sender_totalscore=0 bulkscore=0 recipient_domain_to_sender_domain_totalscore=0 recipient_to_sender_domain_totalscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.0.1-1412110000 definitions=main-1510050269
From: Shin'ichiro Matsuo <matsuo@mac.com>
Content-type: text/plain; charset="utf-8"
Content-transfer-encoding: quoted-printable
Date: Tue, 06 Oct 2015 04:54:01 +0900
Message-id: <E642C370-B448-45F1-976A-5DAE72AB6AD3@mac.com>
To: tls@ietf.org
MIME-version: 1.0 (Mac OS X Mail 8.2 \(2104\))
X-Mailer: Apple Mail (2.2104)
Archived-At: <http://mailarchive.ietf.org/arch/msg/tls/eTrkVJLOrYHlSH6GvKjzW40er4M>
Subject: [TLS] Comments from CELLOS consortium
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Mon, 05 Oct 2015 19:54:06 -0000

Dear all,

Members in the CELLOS consortium (https://www.cellos-consortium.org), which is the consortium on security of cryptographic protocols, are studying on the TLS 1.3 protocol. We have several comments and suggestions to make the specification of TLS1.3 better. 

Please find the comments at the following URL.

https://www.cellos-consortium.org/studygroup/tls_1_3-draft_08_issues_rev1.pdf

The comments are on the following matters.

- AEAD
- KDF
- Full Handshake
- Hello Retry Request
- Shared Secret
- Client Authentication
- Cipher Suite
- 0-RTT
- Resumption and PSK

Some of them are already fixed, such as HFDF. However, we left it as a result of our study.


Regards,
Shin’ichiro Matsuo