Standards: IETF WG proposing incompatible despite implementations and objections

Bernhard Reiter bernhard at intevation.de
Thu Apr 27 09:21:46 CEST 2023


Hello Kai,

Am Mittwoch 26 April 2023 16:34:23 schrieb Kai Engert via Gnupg-devel:
> On 26.04.23 15:19, Bernhard Reiter wrote:
> > It seems that the IETF working group
> > plans to publish their proposal of an updated OpenPGP specification
> > a) even with objections present
> > b) and three major implementations
> >   RNP (used by Thunderbird)
> >   GnuPG and
> >   OpenPGP.js (used by Mailvelope)
> > present that have deployed and are using a set of new functions
> > that GnuPG has documented and considered a rough consensus until 2021.
>
> what are the new functions that RNP/GnuPG/OpenPGP.js use that you are
> referring to?

the ones that were implemented and put to use after RFC4880 (from 2007) 
and which seems to have been a rough consensus in the IETF working group
until 2021. 

I think Werner tries to document them and useful additions in
https://www.ietf.org/archive/id/draft-koch-openpgp-2015-rfc4880bis-01.txt
(See his email from February to this list.)

Note that I am not an authoritative source, while I do talk to folk from 
g10code on a regular basis, in this matter I try to find out what the 
situation is myself and document it.

> Could you please list the issues that you see regarding these functions
> and the proposed IETF OpenPGP specification?

I wish I could, even the post-2021 working group does not offer an overview
and why they deviate from those major implementations. I think it would be 
most useful if those who propose something else what to what is implemented 
do explain their proposal. Did you ask them?

Nevertheless there have been quite a few points posted on this list in the 
last months. One example was rececked by Bruce Walzer in his previous mail:
 * Too many block encryption modes and EAX still in without rational.

Best Regards
Bernhard

-- 
https://intevation.de/~bernhard   +49 541 33 508 3-3
Intevation GmbH, Osnabrück, DE; Amtsgericht Osnabrück, HRB 18998
Geschäftsführer Frank Koormann, Bernhard Reiter
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 659 bytes
Desc: This is a digitally signed message part.
URL: <https://lists.gnupg.org/pipermail/gnupg-devel/attachments/20230427/3324d5b9/attachment.sig>


More information about the Gnupg-devel mailing list