AEAD differences to v6 (was: Reading new key packages))

Bernhard Reiter bernhard at intevation.de
Thu Feb 1 15:15:14 CET 2024


Am Dienstag 02 Januar 2024 14:24:31 schrieb Werner Koch:
> Actually the key format is not the main controversial thing but the AEAD
> mode which changed in crypto-refresh-post-fall-2021.

Assmuning this means OCB versus EAX and GCM:

  https://datatracker.ietf.org/doc/draft-ietf-openpgp-crypto-refresh/13

    Implementations MUST implement OCB.
    Implementations MAY implement EAX, GCM and other algorithms.


  https://datatracker.ietf.org/doc/draft-koch-librepgp/00/
    
    Implementations MUST implement OCB [..]
    Implementations MAY implement EAX only for decryption 
      and only for backward compatibility with former drafts
      of this specification.

So draft-ietf-openpgp-crypto-refresh/13 seems to almost adhere to
  https://librepgp.org/
    01 Symmetric Mode
      turn OCB into MUST and EAX into MAY 
      (only for backward compatibility with deployed implementations).

Signaling capabilities via the pubkeys would make the optional ("MAY") modes
usable enough or do you see a different kind of problem?

Best Regards,
Bernhard

-- 
https://intevation.de/~bernhard   +49 541 33 508 3-3
Intevation GmbH, Osnabrück, DE; Amtsgericht Osnabrück, HRB 18998
Geschäftsführer: Frank Koormann, Bernhard Reiter
-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 659 bytes
Desc: This is a digitally signed message part.
URL: <https://librepgp.org/pipermail/librepgp-discuss/attachments/20240201/750b5979/attachment.sig>


More information about the LibrePGP-discuss mailing list