[IPsec] Re: [CFRG] Re: [IPsec]: FrodoKEM and its usage in IKemEv2

2025-01-22 Thread Loganaden Velvindron
On Thu, 23 Jan 2025 at 10:11, John Mattsson wrote: > > >There exist standards for FrodoKEM now, so you could point to those > >documents (or does IANA insist they be IETF documents?) > I do not think IETF should normatively refer to paywalled ISO crypto > standards, they don’t even fulfill speci

[IPsec] Re: [CFRG] Re: [IPsec]: FrodoKEM and its usage in IKemEv2

2025-01-22 Thread John Mattsson
>There exist standards for FrodoKEM now, so you could point to those documents >(or does IANA insist they be IETF documents?) I do not think IETF should normatively refer to paywalled ISO crypto standards, they don’t even fulfill specification required. Paywalls significantly discourage security

[IPsec] Re: [CFRG] Re: [IPsec]: FrodoKEM and its usage in IKemEv2

2025-01-22 Thread Scott Fluhrer (sfluhrer)
There exist standards for FrodoKEM now, so you could point to those documents (or does IANA insist they be IETF documents?) On the other hand, it is far too early for BIKE or HQC. For one, we don't know which NIST would select. And, even when they do, they may very well make tweaks between no

[IPsec] Re: [CFRG] Re: [IPsec]: FrodoKEM and its usage in IKemEv2

2025-01-22 Thread Philip Kwan
Do we know which transform IDs will be used for the pre-standard PQCs (FrodoKEM, BIKE, HQC)? Thanks Phil On Wed, Jan 22, 2025 at 10:46 AM Watson Ladd wrote: > On Wed, Jan 22, 2025 at 5:07 AM John Mattsson > wrote: > > > > Hi, > > > > > > > > I think IKEv2 should register code points for FrodoK

[IPsec] Re: [CFRG] Re: [IPsec]: FrodoKEM and its usage in IKemEv2

2025-01-22 Thread Watson Ladd
On Wed, Jan 22, 2025 at 5:07 AM John Mattsson wrote: > > Hi, > > > > I think IKEv2 should register code points for FrodoKEM and BIKE/HQC > (depending on which one NIST standardizes). I think it is important with > backups to ML-KEM. The importance of cryptographic agility has been > emphasized