Re: [TLS] Before we PQC... Re: PQC key exchange sizes

Rob Sayre <sayrer@gmail.com> Tue, 09 August 2022 21:51 UTC

Return-Path: <sayrer@gmail.com>
X-Original-To: tls@ietfa.amsl.com
Delivered-To: tls@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2E67AC159493 for <tls@ietfa.amsl.com>; Tue, 9 Aug 2022 14:51:53 -0700 (PDT)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2.108
X-Spam-Level:
X-Spam-Status: No, score=-2.108 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001, T_SCC_BODY_TEXT_LINE=-0.01] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([50.223.129.194]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id s3ePrcXO878R for <tls@ietfa.amsl.com>; Tue, 9 Aug 2022 14:51:52 -0700 (PDT)
Received: from mail-ej1-x632.google.com (mail-ej1-x632.google.com [IPv6:2a00:1450:4864:20::632]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature RSA-PSS (2048 bits) server-digest SHA256) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 0253BC157B4A for <tls@ietf.org>; Tue, 9 Aug 2022 14:51:36 -0700 (PDT)
Received: by mail-ej1-x632.google.com with SMTP id gk3so24486658ejb.8 for <tls@ietf.org>; Tue, 09 Aug 2022 14:51:35 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20210112; h=mime-version:references:in-reply-to:from:date:message-id:subject:to :cc; bh=xmEfvItL5d9nHM/U/teqZCiArBHz7k0qPrwElZgBxbw=; b=fBpYF8ymgeMrqtETAitbsvFVvrmAR6BXgcfnqK++0FlySLZRMfntWzzdODaMtjrUC1 ikPtgU70zcT7ZBcCqatMVoqu307HmM4eak9rqvKVOzs/h+aV2RXbOJSzgR8XfkEpyW7c /sWDt8WsBL0fUIHgxCAATEIGg1iqLoWPm7ewHnXTnY2+rVC+yEDaQkoThpPSivHERhVD xNN4y/lbXcswdmx30vpXSXrLB39EXDE7k7RykaqzVdizvpn3a+eCX8cmk/WiUIId33mh lVS6SvU/8XjIKaCgBxV/P6PrkxGuuxf3JGppQITEAh3pvz9gqYYCYKzLiVaR5yi+BX7w l1uQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20210112; h=x-gm-message-state:mime-version:references:in-reply-to:from:date :message-id:subject:to:cc; bh=xmEfvItL5d9nHM/U/teqZCiArBHz7k0qPrwElZgBxbw=; b=w8O6m47fO65orOuazAyOwHGxiWfJ+sm5m6OlNi0dTXLJWL21TZXOZkk6vQUS/pHWXQ DqAXTsIV4C9JhPlpj4IityYKJBpZdQIwzgmKKx0ozA1TphDWR0ZnEAg3bapzjIR5VfgH eGszPJAsSod6hYxbDycZf8uOQglMPyQqzk85wFNuo+IPjmQPzMPYbihVlYBCZN7hko3X 0VG+AuruwVtyUeqDzqjYWS6WB43LreEKStp7m3PSkXq9w209Cs0aAjORMjROgQS999KI g76iLh0jexpY9hAs7FxKjBnBvconFaQFMbvPgK8pQbYGY1965BisFxKbLvxQr9xbkEV6 K5TA==
X-Gm-Message-State: ACgBeo3vaW/n7KxZdQkYltN0sKjgpJFh1zm0kDn/eMfJaDdVjwKbHjrN 1x5YIyFSyzXV6o5NCTDlSgvQxHjUV/IdQOVexVZn8aCe
X-Google-Smtp-Source: AA6agR7zf4AsdATlhWe6TRih0rzgrT5I+LNT/4jD9UqDaADhmBlx2r/+pK4AOXt6nn5vJgkoZkDUGVPQJka1pqj5BJI=
X-Received: by 2002:a17:907:b590:b0:730:9e0f:e9a3 with SMTP id qx16-20020a170907b59000b007309e0fe9a3mr18272453ejc.112.1660081894388; Tue, 09 Aug 2022 14:51:34 -0700 (PDT)
MIME-Version: 1.0
References: <CABzBS7nsbEhR-bmHG_ViSJFSH-0_5p0O3vKndS4+wFR=iGQzhw@mail.gmail.com> <CAMm+LwgAzb4t=awzpU4Sb5j7Bf6DuR3u+23n+h_C3Pnsin-SHg@mail.gmail.com> <CH0PR11MB544479BFF3107C532AD75172C1619@CH0PR11MB5444.namprd11.prod.outlook.com> <20220806051105.GP3579@akamai.com> <CAMm+LwhwKW6vmy7vu6Q_8Bg-CNtJyzgPJhKEzo9gP85ktnk75g@mail.gmail.com> <7b8fee1c-686b-5202-d639-af34aa19ebff@cs.tcd.ie> <CAMm+LwhpZbhTxo7Vu9REO50f2cCFbKwUCcuhDVmapam4121g5Q@mail.gmail.com> <2bcd5c96-4595-fbf6-5648-4ec27753ca45@redhat.com>
In-Reply-To: <2bcd5c96-4595-fbf6-5648-4ec27753ca45@redhat.com>
From: Rob Sayre <sayrer@gmail.com>
Date: Tue, 09 Aug 2022 14:51:23 -0700
Message-ID: <CAChr6SytnpuS=jpRUWGfod+6wE5A4kmWmK9XPnOYaHAaRuCB1Q@mail.gmail.com>
To: Robert Relyea <rrelyea@redhat.com>
Cc: "TLS@ietf.org" <tls@ietf.org>
Content-Type: multipart/alternative; boundary="0000000000009cf86705e5d5efe3"
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/uisZpFpWMxH5CZJ__6qvFSinJnA>
Subject: Re: [TLS] Before we PQC... Re: PQC key exchange sizes
X-BeenThere: tls@ietf.org
X-Mailman-Version: 2.1.39
Precedence: list
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/tls>, <mailto:tls-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls/>
List-Post: <mailto:tls@ietf.org>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/tls>, <mailto:tls-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 09 Aug 2022 21:51:53 -0000

On Tue, Aug 9, 2022 at 1:57 PM Robert Relyea <rrelyea@redhat.com> wrote:

> hybrid is where we should be now. We should have some confidence in Kyber,
> but we have a lot of confidence in RSA and ECC
>

Could you cite the sources of confidence?

thanks,
Rob