[TLS] Publication has been requested for draft-ietf-tls-grease-02

2019-02-26 Thread Sean Turner
Sean Turner has requested publication of draft-ietf-tls-grease-02 as Informational on behalf of the TLS working group. Please verify the document's state at https://datatracker.ietf.org/doc/draft-ietf-tls-grease/ ___ TLS mailing list TLS@ietf.org http

Re: [TLS] WGLC for draft-ietf-tls-grease

2019-02-26 Thread Sean Turner
This messages closes the WGLC for draft-ietf-tls-grease. The draft will progress as is because we received no WGLC comments. spt > On Jan 24, 2019, at 10:50, Sean Turner wrote: > > This is the working group last call for the "Applying GREASE to TLS > Extensibility" draft available at > http

Re: [TLS] Authentication Only Ciphersuites RFC

2019-02-26 Thread David Wong
Shameless plug, but have you looked at constructions like Disco (https://eprint.iacr.org/2019/180) that target specifically this issue? David On Tue, Feb 26, 2019 at 10:04 PM Hanno Böck wrote: > > I think I have raised my concerns before, but I have serious doubts > there's real need for such c

Re: [TLS] Authentication Only Ciphersuites RFC

2019-02-26 Thread Eric Rescorla
On Tue, Feb 26, 2019 at 12:54 PM Jack Visoky wrote: > TLS Colleagues, > > If you recall we discussed a draft for authentication only ciphersuites > over email back in August of 2018. We've since made some updates to that > draft. We also have gotten IANA assignments to the authentication only >

Re: [TLS] EXTERNAL: Re: Authentication Only Ciphersuites RFC

2019-02-26 Thread Stephen Farrell
FWIW I tend to agree with Hanno. Sending this to the ISE is likely better if an RFC is even needed. We already opened up the ciphersuite registration process to allow this kind of thing without the WG having to try (and sometimes fail to) reach rough consensus on things like this. On 26/02/2019 2

Re: [TLS] EXTERNAL: Re: Authentication Only Ciphersuites RFC

2019-02-26 Thread Jack Visoky
Hi Hanno, We have done tests on this and it there is a difference. For some industries (industrial automation) throughput is very sensitive so what might appear as a small difference can actually be quite significant. On that same note, yes you are absolutely correct that the asymmetric hands

Re: [TLS] Authentication Only Ciphersuites RFC

2019-02-26 Thread Hanno Böck
I think I have raised my concerns before, but I have serious doubts there's real need for such ciphersuites. The reasoning seems to be that performance constrained devices are unable to do "normal" TLS. I don't have benchmarks, but it's my experience that people vastly overestimate the costs of sy

[TLS] Authentication Only Ciphersuites RFC

2019-02-26 Thread Jack Visoky
TLS Colleagues, If you recall we discussed a draft for authentication only ciphersuites over email back in August of 2018. We've since made some updates to that draft. We also have gotten IANA assignments to the authentication only ciphersuites for TLS 1.3 and have updated the draft to reflec