[TLS] Re: Working Group Last Call for Use of ML-DSA in TLS 1.3

Stephen Farrell <stephen.farrell@cs.tcd.ie> Wed, 06 May 2026 13:57 UTC

Return-Path: <stephen.farrell@cs.tcd.ie>
X-Original-To: tls@mail2.ietf.org
Delivered-To: tls@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 69077E9E9471 for <tls@mail2.ietf.org>; Wed, 6 May 2026 06:57:46 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1778075866; bh=iL4uLy/rzqM1Oh+dSCzFWVZymznRlKRK9JjrFWnK+fQ=; h=Date:Subject:To:References:From:In-Reply-To; b=uwFU+ntSL8TfRagGIfCXJNww9vzdEEGSICfE08niuQbb/3PSwFG6yzHbWTYJZrcta Kd1G9gdNLOHFVE20cAc+WdoDBuMEMQdVzBjhw5/N74HCGDrw78a0EEQBL/2IvDDbyW ndNhp8HB6+y0m6jm/5Q8vFmHnfWwfO5aarM3vZpE=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -1.998
X-Spam-Level:
X-Spam-Status: No, score=-1.998 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, RCVD_IN_MSPIKE_H2=0.001, RCVD_IN_VALIDITY_CERTIFIED_BLOCKED=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=cs.tcd.ie
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 9OLVT-WnCYYp for <tls@mail2.ietf.org>; Wed, 6 May 2026 06:57:42 -0700 (PDT)
Received: from OSPPR02CU001.outbound.protection.outlook.com (mail-norwayeastazon11023126.outbound.protection.outlook.com [40.107.159.126]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange ECDHE (P-384) server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 03968E9E93D9 for <tls@ietf.org>; Wed, 6 May 2026 06:57:10 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=jVOhuuzkQ/4FFvcc607vgHZ161Y1Q0FJpNVGDDtcERaAor/wTqr3fL7iC7+INSq71xbgA5CNaOrwqp0NbCbfrpE0pMBVsABMCCzkMVAhyzZg+82W3ZQ+SP193j02W/cJbkQ09FIpzWRIsH5CTjDfP0tTOAtxHWfxjKg4kr5KsRGYRhG8wupBiiFcF5Cy/iVWFqZRO3VYkNDL9BbrnccpPqM/ohISU+aw1PzUF3w4e1H6OQKBFVUlMf13h32WdfCAoHBtBzSKh7uG+TDzO2I5sokOASreyQlMZhgT6RijGHUylQyyXRvVtdCewh7eRVshIxoYm2iA7R9GwoDuEom1Sg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=iL4uLy/rzqM1Oh+dSCzFWVZymznRlKRK9JjrFWnK+fQ=; b=Z5ifIvxUtnTWMIcAVpW4NQEt3hXUHd6Z29fy9uJ2qi76K5RhIgtzW/4SU7foWg8Hvy7YDnabA+VsFLBMtZ2GNEpssJvLFDbTZ2XWyuqYmToF11oaorb3l/VAgMwNtG5ORBMhHPAfVaDpn3d7MFyJ5WqM+HG2L8GtDgvNsICPmKZYLGCmWpQvRd9pG/M8ViFEWrV3TJYI15y1hP89TDVCnnQDDiVgf0kS2YVszsTv+cBdX+dbkRVLwc3+DFdC3WuQ2N8uUXSQe0Q5UaLQlRQWPYMfoM3CFDK0EOrBBNXT5VPfDzXqksFdh1BYToPWz8qogAjyx9yUXly9cBXkulQt/Q==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=cs.tcd.ie; dmarc=pass action=none header.from=cs.tcd.ie; dkim=pass header.d=cs.tcd.ie; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=cs.tcd.ie; s=selector1; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-SenderADCheck; bh=iL4uLy/rzqM1Oh+dSCzFWVZymznRlKRK9JjrFWnK+fQ=; b=BMv8/Ujgop9DdbHfIdccCgZUonCaDpnMkT9Xe2SBPW1vXIGEmN3ta/OYMabvUwjvbYtYiOdxNMHsqX/iu+SFSyX3gmwgj7htAcf6bLJOimP+uPSTSYFfCSM3HbA/T+plCDBrKeWVmCdDzf1+pHeDgU1ZKkwLj1lnOZihCa2SYKiTBL9u+IJbz+ceA6egsxeda7zzt6XK/4BfpmUs6o5kzipcZvTG0+Oe5thBxYzOMRmXciw6s8F3/bqDVLJmZwn9XXEWp2qdRZPIW0YgZQPAmy1cA1BdXbZwhfNkxeucgvkAeYyQ67TChcmmUyER9IIdDsee3jBDdOK2uQ+AKfgZhw==
Authentication-Results: dkim=none (message not signed) header.d=none;dmarc=none action=none header.from=cs.tcd.ie;
Received: from VI0PR02MB11175.eurprd02.prod.outlook.com (2603:10a6:800:2a7::10) by PA6PR02MB11517.eurprd02.prod.outlook.com (2603:10a6:102:526::9) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.9891.15; Wed, 6 May 2026 13:57:03 +0000
Received: from VI0PR02MB11175.eurprd02.prod.outlook.com ([fe80::f0e1:3090:79e3:2177]) by VI0PR02MB11175.eurprd02.prod.outlook.com ([fe80::f0e1:3090:79e3:2177%2]) with mapi id 15.20.9891.008; Wed, 6 May 2026 13:57:02 +0000
Message-ID: <27688cf9-89a2-4bc6-b55f-4351eb263cca@cs.tcd.ie>
Date: Wed, 06 May 2026 14:57:01 +0100
User-Agent: Mozilla Thunderbird
To: Sean Turner <sean@sn3rd.com>, TLS List <tls@ietf.org>
References: <16CF0FDA-7263-461A-9F2B-D37DBEAF5DD9@sn3rd.com> <038E2DBD-EE06-4091-8401-9818FB692459@sn3rd.com> <3E4481D4-A20E-4B3B-B5BE-B71BBDA42176@sn3rd.com>
Content-Language: en-US
From: Stephen Farrell <stephen.farrell@cs.tcd.ie>
Autocrypt: addr=stephen.farrell@cs.tcd.ie; keydata= xjMEY9GzphYJKwYBBAHaRw8BAQdAo6JvjmSbxHdQWPZdvciQYsHhM1NxQBU398Mmimoy4p7N M1N0ZXBoZW4gRmFycmVsbCAoMjU1MTkpIDxzdGVwaGVuLmZhcnJlbGxAY3MudGNkLmllPsKQ BBMWCAA4FiEEMG54R8tZDyZFrDOn5Njp+ZeoM90FAmPRs6YCGwMFCwkIBwIGFQoJCAsCBBYC AwECHgECF4AACgkQ5Njp+ZeoM93bogEA25ElRyX0wwg+kGEN1AoL60MoZfvQZ/VtmXY6IC5j +csBAIBpkL5ySuzJK2zLNZn9qQGht8IaUcA7cvDcLvS2uHUEzjgEY9GzphIKKwYBBAGXVQEF AQEHQILCPWOwW36e8D3pY8GmvvtItIT+A5uV80ist+WokVsQAwEIB8J4BBgWCAAgFiEEMG54 R8tZDyZFrDOn5Njp+ZeoM90FAmPRs6YCGwwACgkQ5Njp+ZeoM92bcAEA8R+8cpqRUIS+SoAN iO05xE6O/wEx8/e88BqzAYki3SoBAOQdwiPX+MQrAxkWD8xxOsdMOAtxYKpkD1n8aPJUw6QJ
In-Reply-To: <3E4481D4-A20E-4B3B-B5BE-B71BBDA42176@sn3rd.com>
Content-Type: multipart/signed; micalg="pgp-sha256"; protocol="application/pgp-signature"; boundary="------------e3gXJ2fJJlAPj1jP8ve4qx9a"
X-ClientProxiedBy: DUZPR01CA0096.eurprd01.prod.exchangelabs.com (2603:10a6:10:4bb::19) To VI0PR02MB11175.eurprd02.prod.outlook.com (2603:10a6:800:2a7::10)
MIME-Version: 1.0
X-MS-Exchange-MessageSentRepresentingType: 1
X-MS-PublicTrafficType: Email
X-MS-TrafficTypeDiagnostic: VI0PR02MB11175:EE_|PA6PR02MB11517:EE_
X-MS-Office365-Filtering-Correlation-Id: 75fdf370-b515-4808-522d-08deab775969
X-MS-Exchange-SharedMailbox-RoutingAgent-Processed: True
X-TCD-Routed-via-EOP: Routed via EOP
X-TCD-ROUTED: Passed-Transport-Routing-Rules
X-MS-Exchange-SenderADCheck: 1
X-MS-Exchange-AntiSpam-Relay: 0
X-Microsoft-Antispam: BCL:0;ARA:13230040|376014|19092799006|786006|366016|1800799024|56012099003|18002099003|22082099003;
X-Microsoft-Antispam-Message-Info: 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
X-Forefront-Antispam-Report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:VI0PR02MB11175.eurprd02.prod.outlook.com;PTR:;CAT:NONE;SFS:(13230040)(376014)(19092799006)(786006)(366016)(1800799024)(56012099003)(18002099003)(22082099003);DIR:OUT;SFP:1102;
X-MS-Exchange-AntiSpam-MessageData-ChunkCount: 1
X-MS-Exchange-AntiSpam-MessageData-0: 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
X-OriginatorOrg: cs.tcd.ie
X-MS-Exchange-CrossTenant-Network-Message-Id: 75fdf370-b515-4808-522d-08deab775969
X-MS-Exchange-CrossTenant-AuthSource: VI0PR02MB11175.eurprd02.prod.outlook.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-OriginalArrivalTime: 06 May 2026 13:57:02.8707 (UTC)
X-MS-Exchange-CrossTenant-FromEntityHeader: Hosted
X-MS-Exchange-CrossTenant-Id: d595be8d-b306-45f4-8064-9e5b82fbe52b
X-MS-Exchange-CrossTenant-MailboxType: HOSTED
X-MS-Exchange-CrossTenant-UserPrincipalName: WXhGw+028maJQi3Z8NF0ZL6k6qNR4MH/O+H8H+Kqw+eFa+PVShCdCLHCNHCd8Ege
X-MS-Exchange-Transport-CrossTenantHeadersStamped: PA6PR02MB11517
Message-ID-Hash: XF7W5EW6XOUKHN7WHMCQDVQAV2X5TCC3
X-Message-ID-Hash: XF7W5EW6XOUKHN7WHMCQDVQAV2X5TCC3
X-MailFrom: stephen.farrell@cs.tcd.ie
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-tls.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [TLS] Re: Working Group Last Call for Use of ML-DSA in TLS 1.3
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/yOcBbQDGQtGFSpA4nB2xZtUtTJY>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Owner: <mailto:tls-owner@ietf.org>
List-Post: <mailto:tls@ietf.org>
List-Subscribe: <mailto:tls-join@ietf.org>
List-Unsubscribe: <mailto:tls-leave@ietf.org>

Hiya,

On 06/05/2026 14:07, Sean Turner wrote:
> Conclusion: The chairs believe there is consensus to proceed with
> publication of this draft as an RFC with Recommended=N for those
> people that want to use this algorithm, and a future Standards
> Action will be needed to make a change to Recommended=Y, if anyone
> has the willingness to undergo this heated discussion again.

IMO more-or-less the same discussion will recur so long
as there's nowhere to find general IETF guidance on these
topics.

Meanwhile, I'm ok accepting that my position is in the rough
here. (But I'm still correct:-)

Cheers,
S.