Re: [TLS] chacha/poly for http/2

David Benjamin <davidben@chromium.org> Wed, 13 January 2016 18:38 UTC

Return-Path: <davidben@google.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (ietfa.amsl.com [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4A17D1B309A for <tls@ietfa.amsl.com>; Wed, 13 Jan 2016 10:38:56 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.379
X-Spam-Level:
X-Spam-Status: No, score=-1.379 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FM_FORGED_GMAIL=0.622, HTML_MESSAGE=0.001, RP_MATCHES_RCVD=-0.001, SPF_PASS=-0.001] autolearn=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id TojbnZAQW9-w for <tls@ietfa.amsl.com>; Wed, 13 Jan 2016 10:38:54 -0800 (PST)
Received: from mail-io0-x232.google.com (mail-io0-x232.google.com [IPv6:2607:f8b0:4001:c06::232]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id BE7D91B3098 for <tls@ietf.org>; Wed, 13 Jan 2016 10:38:54 -0800 (PST)
Received: by mail-io0-x232.google.com with SMTP id 77so396489814ioc.2 for <tls@ietf.org>; Wed, 13 Jan 2016 10:38:54 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=chromium.org; s=google; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :content-type; bh=g4ow63fChnXx28lmuA67ueK7eYZoQw5x6bT6h2zZbpA=; b=XIev5Bemjgu3j8UyquDA1htdzXt4LzO/Ta/dxFZ6oRqaHvonLEcGTaVCqlEm668Nwi stFY+pdxPQv6MF0K3qUEOs3AJ4c6DEtJCNVfxZdoC3GFUgM7RR0DevUnG5/uF+5DTVMp MAQ9h9LCnH6w3XC9rErxrzNI6+uLaryvbWCZc=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20130820; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:content-type; bh=g4ow63fChnXx28lmuA67ueK7eYZoQw5x6bT6h2zZbpA=; b=l8y3QuysH3O8YU5w/RsDpJzKg+ezzfSLUopvmuP+pbnUZ4W680cmFUoE8QFeH4qcbb xFc42FcVoSiOHjPrlqyeURHdSNIPTs7Xew8xucDV3T367G/GQZ9yiHmJWkz0RFtg62Tz JfMnK5k4pICN6i7qxQzUPcy86nhlO1t8O8mOSMhJ+WWnL1eMxLMgNjAmOkzcRfapc/GU A3VIBS4w2Pu8Q7EuNubWDm9obOFNCSaGTV4pFDJSmRQmd5umP3v/nGjiYsCYjX979t9F Tp79GaMN4jS2C9KzZ8d65BI6cXwf2vikHBBaELJ5D8f9quAjYhrsmP2UuZPAxGybm8tH rrfQ==
X-Gm-Message-State: ALoCoQnAbn3l2VrZtl5esBeheBVN6fEhGOpamxUVvyY86r9F1Kysac4Ss2NZvhICoJzYuOMXSrnv5rccd++LikEqF7CxZzEqXqQ2mq1k+wZpA/twOEVGMfc=
X-Received: by 10.107.44.88 with SMTP id s85mr477741ios.62.1452710334035; Wed, 13 Jan 2016 10:38:54 -0800 (PST)
MIME-Version: 1.0
References: <326d1a7af9ae441081f5c272e5758d9f@usma1ex-dag1mb1.msg.corp.akamai.com>
In-Reply-To: <326d1a7af9ae441081f5c272e5758d9f@usma1ex-dag1mb1.msg.corp.akamai.com>
From: David Benjamin <davidben@chromium.org>
Date: Wed, 13 Jan 2016 18:38:43 +0000
Message-ID: <CAF8qwaBuA_AsMg4u22MZ_ExYcQjsPzJvPEE+fEG5xNw7D8c=oQ@mail.gmail.com>
To: "Salz, Rich" <rsalz@akamai.com>, "tls@ietf.org" <tls@ietf.org>
Content-Type: multipart/alternative; boundary=001a113a033c6c5c6805293b7b40
Archived-At: <http://mailarchive.ietf.org/arch/msg/tls/ufgccnE0M3jDIHyTjvpdkNZoPWw>
Subject: Re: [TLS] chacha/poly for http/2
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.15
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 13 Jan 2016 18:38:56 -0000

Chrome is also expecting to ship the cipher in Chrome 49. It's available in
Canary and Dev channel right now. It should interop with OpenSSL's master
branch as of when I last tested this.

David

On Wed, Jan 13, 2016 at 12:48 PM Salz, Rich <rsalz@akamai.com>; wrote:

> We (OpenSSL) have already tested interop of chacha/poly with other
> browsers and TLS stacks, and now it all works.  (The official IETF version,
> not the QUIC version).
>
>
>
> We (Akamai) are planning on enabling it for our customers in a few weeks,
> in case anyone might be interested.
>
>
>
> Thanks.
>
>
>
>                 /r$, a me who is part of both of the we’s above J
>
>
>
> --
>
> Senior Architect, Akamai Technologies
>
> IM: richsalz@jabber.at Twitter: RichSalz
>
>
> _______________________________________________
> TLS mailing list
> TLS@ietf.org
> https://www.ietf.org/mailman/listinfo/tls
>