Re: [TLS] New curves work and TLS

2015-10-18 Thread Ilari Liusvaara
On Sat, Oct 17, 2015 at 07:25:46PM -0400, Sean Turner wrote: > On Oct 17, 2015, at 08:30, Ilari Liusvaara wrote: > > > Okay, did a review of draft-ietf-tls-curve25519 (since it still > > doesn't seem to have been WGLC'd): > > Note that draft-ietf-tls-curve25519 is getting merged into > draft-iet

Re: [TLS] New curves work and TLS

2015-10-17 Thread Sean Turner
On Oct 17, 2015, at 08:30, Ilari Liusvaara wrote: > Okay, did a review of draft-ietf-tls-curve25519 (since it still > doesn't seem to have been WGLC'd): Note that draft-ietf-tls-curve25519 is getting merged into draft-ietf-tls-rfc4492bis. Note that the cfrg-curves draft’s RFC5742-review (aka t

Re: [TLS] New curves work and TLS

2015-10-17 Thread Ilari Liusvaara
On Thu, Oct 15, 2015 at 04:09:39PM +0300, Ilari Liusvaara wrote: > > Diffie-Hellman: > --- > There is already a WG draft about this. The one remaining technical > issue seems to be wheither to share the curves with signatures or > dedicate those for DH. Okay, did a review of draft-iet

Re: [TLS] New curves work and TLS

2015-10-15 Thread Eric Rescorla
On Thu, Oct 15, 2015 at 12:17 PM, Dave Garrett wrote: > On Thursday, October 15, 2015 09:09:39 am Ilari Liusvaara wrote: > > So, there are four primitives: Ed25519, Ed25519ph, Ed448 and > > Ed448ph. And keys MUST NOT be mixed between those. > > > > I propose the following: > > - EdDSA uses one Si