Re: [TLS] Proposed text for removing renegotiation

James Cloos <cloos@jhcloos.com> Thu, 29 May 2014 21:34 UTC

Return-Path: <cloos@jhcloos.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 88AE61A0262 for <tls@ietfa.amsl.com>; Thu, 29 May 2014 14:34:15 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.652
X-Spam-Level:
X-Spam-Status: No, score=-2.652 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RP_MATCHES_RCVD=-0.651, SPF_PASS=-0.001] autolearn=ham
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id l4ocxFQn_ahZ for <tls@ietfa.amsl.com>; Thu, 29 May 2014 14:34:14 -0700 (PDT)
Received: from ore.jhcloos.com (ore.jhcloos.com [198.147.23.85]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3FAF01A02CE for <tls@ietf.org>; Thu, 29 May 2014 14:34:14 -0700 (PDT)
Received: by ore.jhcloos.com (Postfix, from userid 10) id 901721DDA8; Thu, 29 May 2014 21:34:09 +0000 (UTC)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=jhcloos.com; s=ore14; t=1401399249; bh=vQAcP9CUUHrDI6mHObfkXF558ePankN1yCW4xzvy9vU=; h=From:To:Cc:Subject:In-Reply-To:References:Date:From; b=eSByJtZGtE7DlErOKBUJmaQJixVhcdufAuY8okV8m7/CN9ZTrMj99WWmoff5hDW9q ccaXXe8CCOTczlw+pSvZU8NHkZ/zS2LN0TvNeCpVy3GjFnL62tmq3mjNO6tS6xNF5b CYl0lCRRN21R6rDD7VdYx8cmrvDKTSko6Ez6ADKo=
Received: by carbon.jhcloos.org (Postfix, from userid 500) id 74E8F6001E; Thu, 29 May 2014 21:28:02 +0000 (UTC)
From: James Cloos <cloos@jhcloos.com>
To: Hubert Kario <hkario@redhat.com>
In-Reply-To: <739427058.16557109.1401382793847.JavaMail.zimbra@redhat.com> (Hubert Kario's message of "Thu, 29 May 2014 12:59:53 -0400 (EDT)")
References: <CABkgnnXaLKmxXL01hQEdxHSNGt3nZQQNBLDD5H2LqBzTo3vK4g@mail.gmail.com> <CAFewVt5GCmH8wSdUYLy_Q9RNEtAggzG3_k-9E8ME-nP9jZNX3Q@mail.gmail.com> <CABkgnnW0YAhsbMoN0JSdWWpxt9TsOWpvq3c67cw8_eyt4mprbA@mail.gmail.com> <m2vbspv8w1.fsf@localhost.localdomain> <CABkgnnWfM8eDALtGmpHBeHScy21fzTqv8+C0ajnDhAO=OBziZg@mail.gmail.com> <1414735395.16311772.1401366314379.JavaMail.zimbra@redhat.com> <CABkgnnWqqEnayrgAwVA-x_O5rkvWjtcH+g=TpE1Ztmk_JvuNYg@mail.gmail.com> <739427058.16557109.1401382793847.JavaMail.zimbra@redhat.com>
User-Agent: Gnus/5.130012 (Ma Gnus v0.12) Emacs/24.4.50 (gnu/linux)
Face: iVBORw0KGgoAAAANSUhEUgAAABAAAAAQAgMAAABinRfyAAAACVBMVEX///8ZGXBQKKnCrDQ3 AAAAJElEQVQImWNgQAAXzwQg4SKASgAlXIEEiwsSIYBEcLaAtMEAADJnB+kKcKioAAAAAElFTkSu QmCC
Copyright: Copyright 2014 James Cloos
OpenPGP: 0x997A9F17ED7DAEA6; url=https://jhcloos.com/public_key/0x997A9F17ED7DAEA6.asc
OpenPGP-Fingerprint: E9E9 F828 61A4 6EA9 0F2B 63E7 997A 9F17 ED7D AEA6
Date: Thu, 29 May 2014 17:28:02 -0400
Message-ID: <m3mwe0i8as.fsf@carbon.jhcloos.org>
Lines: 15
MIME-Version: 1.0
Content-Type: text/plain; charset=utf-8
Content-Transfer-Encoding: 8bit
X-Hashcash: 1:30:140529:hkario@redhat.com::e3M2GjwPe8vYwUqV:0000000000000000000000000000000000000000000oKJu7
X-Hashcash: 1:30:140529:martin.thomson@gmail.com::r4zYp3j9CA5GSgcN:0000000000000000000000000000000000000vmfq
X-Hashcash: 1:30:140529:geoffk@geoffk.org::+XXLt8lBghbkY1K3:000000000000000000000000000000000000000000017Vhd
X-Hashcash: 1:30:140529:tls@ietf.org::3kW0ePDA01mghE3h:0000ApeMX
Archived-At: http://mailarchive.ietf.org/arch/msg/tls/m-lhPwXm7erHzWM9amLY3I7E0aE
Cc: Geoffrey Keating <geoffk@geoffk.org>, tls@ietf.org
Subject: Re: [TLS] Proposed text for removing renegotiation
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 29 May 2014 21:34:15 -0000

>>>>> "HK" == Hubert Kario <hkario@redhat.com> writes:

>>> Transferring 64GB of data with TLS over loopback on a relatively modern
>>> machine (even without AES-NI) takes less than an hour. I wouldn't
>>> call it going to great lengths to test.

Did you mean something other that GB there?

150Mbit/s is a bit slow for loopback. ☺

64GB (31 bits of 256-bit blocks) over loopback should take 3-5 seconds.

-JimC
-- 
James Cloos <cloos@jhcloos.com>         OpenPGP: 0x997A9F17ED7DAEA6