On Wed, 24 Feb 2021, Tero Kivinen wrote:
This is the start of 1.5 week WG adoption call for this document,
ending 2021-02-07 (just before our IPsecME session in IETF 110).
Please send your reply about whether you support adopting this
document as WG document or not.
I am in favour of adoption.
So now that OCB is finally free, do we want to implement it? :)
I'm honestly not sure if the improvements of AES-GCM are worth it.
I haven't heard of vulnerabilities in IKE/ESP wrt. IVs or counters.
Paul
-- Forwarded message --
Date: Sat, 27 Feb 2021 14:37:30
From: "Salz, Rich
IIRC the license has allowed OCB to be used for TLS for several years. They
haven’t taken it up. There are no AES-OCB ciphersuites
inhttps://www.iana.org/assignments/tls-parameters/tls-parameters.xml#tls-parameters-4
https://www.iana.org/assignments/tls-parameters/tls-parameters.xml#tls-paramet