Re: [TLS] Would this fix RC4 again? (was Re: Encrypt-then-MAC again (was Re: padding bug))

Jacob Appelbaum <jacob@appelbaum.net> Thu, 14 November 2013 10:18 UTC

Return-Path: <jacob@appelbaum.net>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 1A4B921E81F7 for <tls@ietfa.amsl.com>; Thu, 14 Nov 2013 02:18:54 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -3.599
X-Spam-Level:
X-Spam-Status: No, score=-3.599 tagged_above=-999 required=5 tests=[BAYES_00=-2.599, RCVD_IN_DNSWL_LOW=-1]
Received: from mail.ietf.org ([12.22.58.30]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id FjJZRadFhrsv for <tls@ietfa.amsl.com>; Thu, 14 Nov 2013 02:18:49 -0800 (PST)
Received: from mail-lb0-f169.google.com (mail-lb0-f169.google.com [209.85.217.169]) by ietfa.amsl.com (Postfix) with ESMTP id 7AA0921E81DF for <tls@ietf.org>; Thu, 14 Nov 2013 02:18:43 -0800 (PST)
Received: by mail-lb0-f169.google.com with SMTP id x18so198827lbi.28 for <tls@ietf.org>; Thu, 14 Nov 2013 02:18:38 -0800 (PST)
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:message-id:date:from:mime-version:to:subject :references:in-reply-to:openpgp:content-type :content-transfer-encoding; bh=Qx5Y35fsVsgNCngJK0tJLeSICtTzpua48dic8ggpsEw=; b=S5kIYVLevJ3sqCoH2nZ5p2Lsk/zoUALp0nqtDHUCo+QFbs4wYAQmtc7FhDfcmydqpw wc+RJlXABjUfclJEN3eSyZnmTSn7Law0SbhVYwLo2QfIhVthYA6uwmL2jKG73krLxfLk sCRlRCSESYqrC49B7qhKdU0Mq+yEWsGHaoqm6RH5Miv+eFPFkMeQV6/Aouf4W9oNH/pg x/LoV7Ew3eoHBaNOMe8oNwwOddaumNwhVYkoTLQZsR5p5p+Bpt86Jm4qTeTJr3qlFr7O ES30bBSyUuTkTM0yyJZPF8Mc4eGttb4TK0St+cE+8xdXRw8v3XHl9F2QoZd9IPVbTMro 7sIQ==
X-Gm-Message-State: ALoCoQn82nleTNO2VbnafT7GNyVkLeoGtnfaxViH/Sf7/BqMGo6lQjGUJI23b6Wdj+Fh7jrt1oXJ
X-Received: by 10.152.8.199 with SMTP id t7mr267237laa.63.1384424318249; Thu, 14 Nov 2013 02:18:38 -0800 (PST)
Received: from 127.0.0.1 (exit1.ipredator.se. [194.132.32.42]) by mx.google.com with ESMTPSA id bf4sm5830563lbc.10.2013.11.14.02.18.35 for <tls@ietf.org> (version=TLSv1 cipher=ECDHE-RSA-RC4-SHA bits=128/128); Thu, 14 Nov 2013 02:18:37 -0800 (PST)
Message-ID: <5284A1A7.7010305@appelbaum.net>
Date: Thu, 14 Nov 2013 10:10:47 +0000
From: Jacob Appelbaum <jacob@appelbaum.net>
MIME-Version: 1.0
To: tls@ietf.org
References: <20131112222944.2B0FD1AA82@ld9781.wdf.sap.corp> <1384400970.2092.7.camel@aspire.lan> <52844E54.8000606@pobox.com> <CACsn0c=d+tsDLcJFWpcDpbQdPRBNy3WERCQzepNWsyJfp2-cWA@mail.gmail.com>
In-Reply-To: <CACsn0c=d+tsDLcJFWpcDpbQdPRBNy3WERCQzepNWsyJfp2-cWA@mail.gmail.com>
OpenPGP: id=4193A197
Content-Type: text/plain; charset="ISO-8859-1"
Content-Transfer-Encoding: 7bit
Subject: Re: [TLS] Would this fix RC4 again? (was Re: Encrypt-then-MAC again (was Re: padding bug))
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.12
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <http://www.ietf.org/mail-archive/web/tls>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 14 Nov 2013 10:18:54 -0000

Watson Ladd:
> Suite B not being used extensively,

As a side note, they call it Suite B for a reason, no?

I think that agl's plan of "ChaCha20 and Poly1305 for TLS" is much better:

  https://www.imperialviolet.org/2013/10/07/chacha20.html

All the best,
Jacob