Re: [TLS] Authentication weaker in PSK-mode?

2022-07-21 Thread Wang Haiguang
My view: It is very hard to say that PSK is stronger or weaker than Certificate in authentcation. It depends on the key distribution adopted. Certificate is suitable for one to many communication, in whcih case single direction authentication is enough. Key distriution is cheap as there are a

[TLS] A personal IETF draft on using Identity as raw public key for TLS has been uploaded to TLS data tracker

2018-03-02 Thread Wang Haiguang
Dear all We have uploaded a personal draft on using identity as raw public key for TLS/DTLS to TLS group website just now. A pdf version is also attached in this email. Your comments are appreciated. Dr Yanjiang Yang, who is author of the draft, will attend the coming IETF 101 meeting. You

[TLS] Regarding the identity bidding issue when using raw public key with TLS

2018-07-12 Thread Wang Haiguang
Hello, everyone, To solve the complex issue caused by the certification, in RFC 7250, it is recommended to use raw public for authentication. However, when using RAW public directly for authentication, identity and public key binding is required. That is, server need to maintain a large table to

Re: [TLS] Regarding the identity bidding issue when using raw public key with TLS

2018-07-13 Thread Wang Haiguang
Dear ilari, Thanks very much for the reply :-). Please see my comments inline below. -Original Message- From: ilariliusva...@welho.com [mailto:ilariliusva...@welho.com] Sent: Thursday, July 12, 2018 8:17 PM To: Wang Haiguang Cc: Subject: Re: [TLS] Regarding the identity bidding issue

Re: [TLS] Regarding the identity bidding issue when using raw public key with TLS

2018-07-16 Thread Wang Haiguang
Dear Benjamin, See my comments below. From: Benjamin Kaduk [bka...@akamai.com] Sent: Sunday, 15 July, 2018 11:26:25 AM To: Wang Haiguang Cc: Subject: Re: [TLS] Regarding the identity bidding issue when using raw public key with TLS On Sat, Jul 14, 2018

Re: [TLS] null auth ciphers for TLS 1.3?

2018-08-22 Thread Wang Haiguang
Hi, all. Regarding the raw public, I would like to contribute a few words for you to think about it. Raw public key is useful for IoT networks due to the constraint of bandwidth and processing capability of devices. A normal certificate takes about a few hundred bytes while an raw public key

Re: [TLS] TLS 1.3 Authentication using ETSI TS 103 097 and IEEE 1609.2 certificates

2018-08-26 Thread Wang Haiguang
Hi, Mounira Just for clarification. If I am not wrong, there are two types of certificates supported by 1609.2. One is the legacy X.509 certificate, the other is the implicit certificate. So for you draft submitted, you plan support both types of certificates or just one of them, i.e. the X.

Re: [TLS] TLS 1.3 Authentication using ETSI TS 103 097 and IEEE 1609.2 certificates

2018-08-27 Thread Wang Haiguang
Hi, Mounira Thanks for the clarification. That means both explicit and implicit certificates will be supported. Regards. Haiguang -Original Message- From: Mounira Msahli [mailto:mounira.msa...@telecom-paristech.fr] Sent: Monday, August 27, 2018 4:32 PM To: Wang Haiguang Cc: Ilari

[TLS] A new draft for "Using Identity as Raw Public Key in Transport Layer Security (TLS)" has been updated

2018-12-26 Thread Wang Haiguang
Hello, everyone We have just updated the internet draft for "Using Identity as Raw Public Key in Transport Layer Security (TLS)". In this draft, we propose to use the Identity as raw public key, which further simplifies authentication and identity management of large scale IoT devices. The u

Re: [TLS] A new draft for "Using Identity as Raw Public Key in Transport Layer Security (TLS)" has been updated

2018-12-27 Thread Wang Haiguang
10:51 PM To: Wang Haiguang Cc: tls@ietf.org Subject: Re: [TLS] A new draft for "Using Identity as Raw Public Key in Transport Layer Security (TLS)" has been updated On Wed, Dec 26, 2018 at 09:00:08AM +0000, Wang Haiguang wrote: > Hello, everyone > > We have just updated the

Re: [TLS] A new draft for "Using Identity as Raw Public Key in Transport Layer Security (TLS)" has been updated

2019-01-17 Thread Wang Haiguang
RawPublicKey. Best regards. Haiguang -Original Message- From: ilariliusva...@welho.com [mailto:ilariliusva...@welho.com] Sent: Wednesday, December 26, 2018 10:51 PM To: Wang Haiguang Cc: tls@ietf.org Subject: Re: [TLS] A new draft for "Using Identity as Raw Public Key in Tran

Re: [TLS] A new draft for "Using Identity as Raw Public Key in Transport Layer Security (TLS)" has been updated

2019-01-21 Thread Wang Haiguang
ents on it. Below is the link to the new draft: https://www.ietf.org/id/draft-wang-tls-raw-public-key-with-ibc-07.txt Best regards. Haiguang -Original Message- From: ilariliusva...@welho.com [mailto:ilariliusva...@welho.com] Sent: Thursday, January 17, 2019 7:03 PM To: Wang Haiguan

[TLS] draft-wang-tls-raw-public-key-with-ibc-10

2019-03-21 Thread Wang Haiguang
Hello, everyone. Attached is an updated version to our personal draft on draft-wang-tls-raw-public-key-with-ibc-10. The target of the draft is to use identity as raw public key over TLS. Idenitty-based signature (IBS) algorithms are used for peer/server authentication. The draft has been

Re: [TLS] draft-wang-tls-raw-public-key-with-ibc-10

2019-03-22 Thread Wang Haiguang
:07 PM To: Wang Haiguang Cc: tls@ietf.org Subject: Re: [TLS] draft-wang-tls-raw-public-key-with-ibc-10 I have taken an initial look at this draft [0]. Comments follow. First the motivation for this technique appears rather weak. Primarily, you argue that a PKI is complicated to implement and this

Re: [TLS] draft-wang-tls-raw-public-key-with-ibc-10

2019-03-23 Thread Wang Haiguang
:13:03 AM To: Wang Haiguang Cc: tls@ietf.org Subject: Re: [TLS] draft-wang-tls-raw-public-key-with-ibc-10 On Fri, Mar 22, 2019 at 8:28 AM Wang Haiguang mailto:wang.haiguang.shield...@huawei.com>> wrote: Hi, Eric Thanks very much for your comments. Please see my reply inline. Our draft is

Re: [TLS] draft-wang-tls-raw-public-key-with-ibc-10

2019-03-23 Thread Wang Haiguang
technical point makes you think that IBC is not raw public key. Thanks very much. Haiguang From: Eric Rescorla [e...@rtfm.com] Sent: Saturday, 23 March, 2019 7:30:50 PM To: Wang Haiguang Cc: tls@ietf.org Subject: Re: [TLS] draft-wang-tls-raw-public-key-with-ibc-10 On

Re: [TLS] draft-wang-tls-raw-public-key-with-ibc-10

2019-03-24 Thread Wang Haiguang
provisioned to both peer and server. Regards. Haiguang From: Eric Rescorla [e...@rtfm.com] Sent: Sunday, 24 March, 2019 1:02:05 AM To: Wang Haiguang Cc: tls@ietf.org Subject: Re: [TLS] draft-wang-tls-raw-public-key-with-ibc-10 On Sat, Mar 23, 2019 at 8:57 AM Wang

Re: [TLS] draft-wang-tls-raw-public-key-with-ibc-10

2019-03-24 Thread Wang Haiguang
they can enable this feature or patch the library. Best regards. Haiguang From: Stephen Farrell [stephen.farr...@cs.tcd.ie] Sent: Saturday, 23 March, 2019 2:24:03 AM To: Eric Rescorla; Wang Haiguang Cc: tls@ietf.org Subject: Re: [TLS] draft-wang

Re: [TLS] draft-wang-tls-raw-public-key-with-ibc-10

2019-03-24 Thread Wang Haiguang
of Melinda Shore [melinda.sh...@nomountain.net] Sent: Saturday, 23 March, 2019 5:12:20 PM To: tls@ietf.org Subject: Re: [TLS] draft-wang-tls-raw-public-key-with-ibc-10 On 3/22/19 7:28 AM, Wang Haiguang wrote: > [HG] Regarding the revocation, we did not mention it in the draft, but > w

Re: [TLS] draft-wang-tls-raw-public-key-with-ibc-10

2019-03-24 Thread Wang Haiguang
existing browser/server kind of communication. The intention is to use IBS for IoT networks. From: Melinda Shore [melinda.sh...@nomountain.net] Sent: Sunday, 24 March, 2019 9:46:44 PM To: Wang Haiguang; tls@ietf.org Subject: Re: [TLS] draft-wang-tls-raw-public

[TLS] A new version of draft-wang-tls-raw-public-key-with-ibc has been uploaded to data tracker

2019-04-12 Thread Wang Haiguang
Dear all, A new version of draft-wang-tls-raw-public-key-with-ibc has been updated to data tracker. You can download it with following link: https://www.ietf.org/id/draft-wang-tls-raw-public-key-with-ibc-09.txt. We have updated the draft based on the comments received from mailing list and f

[TLS] An IETF draft on TLS based on ECCSI public key (RFC 6507)

2017-07-04 Thread Wang Haiguang
-dra...@ietf.org] Sent: Monday, 3 July, 2017 6:53 PM To: Wang Haiguang; Wang Haiguang; Yang Yanjiang Subject: New Version Notification for draft-wang-tls-eccsi-00.txt A new version of I-D, draft-wang-tls-eccsi-00.txt has been successfully submitted by Haiguang Wang and posted to the IETF

Re: [TLS] An IETF draft on TLS based on ECCSI public key (RFC 6507)

2017-07-05 Thread Wang Haiguang
: ilariliusva...@welho.com [mailto:ilariliusva...@welho.com] Sent: Tuesday, 4 July, 2017 7:22 PM To: Wang Haiguang Cc: tls@ietf.org Subject: Re: [TLS] An IETF draft on TLS based on ECCSI public key (RFC 6507) On Tue, Jul 04, 2017 at 08:47:16AM +, Wang Haiguang wrote: > Dear all, > > This

Re: [TLS] An IETF draft on TLS based on ECCSI public key (RFC 6507)

2017-07-10 Thread Wang Haiguang
raised by Ilari and highlighted the answer in yellow collor. We will continue our effort to improve the draft and will submit an updated draft once we finished. Regards. Haiguang On Tue, Jul 04, 2017 at 08:47:16AM +, Wang Haiguang wrote: > Dear all, > > This Haiguang Wang fr