AEAD differences to v6 (was: Reading new key packages))
Bernhard Reiter
bernhard at intevation.de
Thu Feb 1 15:15:14 CET 2024
Am Dienstag 02 Januar 2024 14:24:31 schrieb Werner Koch:
> Actually the key format is not the main controversial thing but the AEAD
> mode which changed in crypto-refresh-post-fall-2021.
Assmuning this means OCB versus EAX and GCM:
https://datatracker.ietf.org/doc/draft-ietf-openpgp-crypto-refresh/13
Implementations MUST implement OCB.
Implementations MAY implement EAX, GCM and other algorithms.
https://datatracker.ietf.org/doc/draft-koch-librepgp/00/
Implementations MUST implement OCB [..]
Implementations MAY implement EAX only for decryption
and only for backward compatibility with former drafts
of this specification.
So draft-ietf-openpgp-crypto-refresh/13 seems to almost adhere to
https://librepgp.org/
01 Symmetric Mode
turn OCB into MUST and EAX into MAY
(only for backward compatibility with deployed implementations).
Signaling capabilities via the pubkeys would make the optional ("MAY") modes
usable enough or do you see a different kind of problem?
Best Regards,
Bernhard
--
https://intevation.de/~bernhard +49 541 33 508 3-3
Intevation GmbH, Osnabrück, DE; Amtsgericht Osnabrück, HRB 18998
Geschäftsführer: Frank Koormann, Bernhard Reiter
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 659 bytes
Desc: This is a digitally signed message part.
URL: <https://librepgp.org/pipermail/librepgp-discuss/attachments/20240201/750b5979/attachment.sig>
More information about the LibrePGP-discuss
mailing list