IETF
cfrg
cfrg@jabber.ietf.org
Tuesday, July 18, 2017< ^ >
Yoav Nir has set the subject to: CFRG at IETF-97, Monday 13:30 at the Park Ballroom 1. https://datatracker.ietf.org/meeting/97/agenda/cfrg/
Room Configuration
Room Occupants

GMT+0
[12:50:19] Sean Leonard joins the room
[12:50:39] Sean Leonard leaves the room
[13:45:13] Philip Lafrance joins the room
[13:45:14] Scott Fluhrer joins the room
[13:45:14] Jon Hudson joins the room
[13:45:14] Dan Brown joins the room
[13:45:29] Arne Wall joins the room
[13:46:35] Renzo Navas joins the room
[13:46:46] Ira McDonald joins the room
[13:47:02] Meetecho joins the room
[13:47:43] Kyle Rose joins the room
[13:49:41] Lorenzo Miniero joins the room
[13:51:04] Kyle Rose leaves the room
[13:51:11] Kyle Rose joins the room
[13:51:39] Kyle Rose has set the subject to: CFRG at IETF-99, Tuesday 15:50 in Congress I
[13:52:10] <Jon Hudson> hooray
[13:52:37] cw-ietf joins the room
[13:52:39] Melinda joins the room
[13:53:03] sftcd joins the room
[13:53:27] Phillip Hallam-Baker joins the room
[13:53:29] Sean Leonard joins the room
[13:54:20] jimsch1 joins the room
[13:54:44] rsalz joins the room
[13:55:14] <rsalz> I'm your jabber scribe.  Please put "mic:" in the front or ping me if you want anything relayed
[13:55:54] <rsalz> Agenda bash
[13:56:25] <rsalz> Note well
[13:56:55] <rsalz> Document status
[13:56:59] Geoff Beier joins the room
[13:58:20] <rsalz> Crypto review panel
[13:58:20] Mike Jenkins joins the room
[13:58:58] <rsalz> AOB
[13:59:09] <rsalz> Presentations
[14:00:15] <rsalz> Stanisley Smyshlyaev, https://datatracker.ietf.org/doc/slides-99-cfrg-re-keying-mechanisms-for-symmetric-keys-draft-irtf-cfrg-re-keying/01/
[14:00:24] <rsalz> p2, Authors
[14:00:27] <rsalz> p3, Motivation
[14:01:48] <rsalz> p4, Main objective
[14:02:50] <rsalz> p5, Document History
[14:03:23] <rsalz> p6, Main decision about the I-D
[14:04:56] JeffH joins the room
[14:05:27] <rsalz> p7, Considerations on the recommendations and guidelines
[14:06:43] <rsalz> p8, Considerations on the mechanisms themselves
[14:07:18] Panos Kampanakis joins the room
[14:07:19] <rsalz> p9, draft-irtf-cfrg-re-keying
[14:07:33] Satoru Kanno joins the room
[14:07:48] <rsalz> p10, Current state and plans
[14:07:53] alexey.melnikov joins the room
[14:09:55] <rsalz> p11, questions
[14:10:14] <rsalz> Yoav at mic
[14:12:14] <rsalz> Daniel Franke
[14:14:27] <rsalz> Sharon Goldberg, Verifiable Random Functions https://www.ietf.org/proceedings/99/slides/slides-99-cfrg-verifiable-random-functions-00.pdf
[14:14:33] <sftcd> was there a 2nd person who said they'd review? thought I saw someone but not sure
[14:14:45] <sftcd> in addition to Russ
[14:15:07] ddp@jabber.org joins the room
[14:15:13] <rsalz> p3, hash function zoo
[14:15:28] <rsalz> (sorry that was p2)
[14:15:55] <rsalz> p2, hash function zoo (yes page numbers repeated  and so did the page title)
[14:16:06] <rsalz> p3 VRF: verifiable random function
[14:16:14] <rsalz> p3 '
[14:16:21] <rsalz> pr ''
[14:17:03] <rsalz> p4 VRFs are useful for ...
[14:17:44] Dimitrios Papadopoulos joins the room
[14:18:18] <rsalz> p5 VRF security: uniqueness
[14:19:36] <rsalz> p7 VRF security: pseudorandomness
[14:20:03] tale joins the room
[14:20:17] Matthew Chiang joins the room
[14:20:47] <rsalz> p9 hash-based data structures (sorry p8)
[14:21:31] <rsalz> p11 using vrfs for hash-based datastructures
[14:22:06] <rsalz> p12 vrfs stop offline dictionary attacks
[14:22:22] <rsalz> p13 draft-goldbe-vrf-01 includes
[14:24:21] <rsalz> p14 ec-vrf (elliptic curve vrf)
[14:25:54] <rsalz> did not catch the name
[14:26:23] Satoru Kanno leaves the room
[14:26:38] <rsalz> Bryan Ford
[14:28:05] ddp@jabber.org leaves the room
[14:28:41] ddp@jabber.org joins the room
[14:28:55] <rsalz> Jeffrey Eskin
[14:30:05] <Philip Lafrance> Yes.
[14:30:28] <Sean Leonard> :yes:
[14:31:31] <rsalz> Bryan Ford, Collective Edwards-Curve Digital Sig Algorithm
[14:31:31] <rsalz> https://www.ietf.org/proceedings/99/slides/slides-99-cfrg-verifiable-random-functions-00.pdf
[14:31:48] sftcd joins the room
[14:32:18] Dimitrios Papadopoulos leaves the room
[14:32:18] sftcd leaves the room
[14:32:20] Satoru Kanno joins the room
[14:34:20] tale leaves the room
[14:34:31] <rsalz> p2 Basic Schnorr Signature
[14:34:36] <rsalz> (oops no page numbers)
[14:35:42] Yaakov Stein joins the room
[14:35:54] <rsalz> schnorr multisignature
[14:37:16] <rsalz> use-case scalable collective signing
[14:38:46] <rsalz> results: collective signature size
[14:39:05] ddp@jabber.org leaves the room
[14:39:27] rsalz leaves the room
[14:40:03] rsalz joins the room
[14:40:12] <rsalz> optional: high scalability via trees
[14:40:19] <rsalz> use-case; bitcoin transacdtions
[14:40:24] ddp@jabber.org joins the room
[14:41:16] <rsalz> use-case: offline-verifiable histories
[14:41:17] sftcd leaves the room
[14:41:44] <rsalz> draft-ford-cfrg-cosi-00
[14:41:59] Jeffrey Yasskin joins the room
[14:42:28] sftcd joins the room
[14:42:29] <Jeffrey Yasskin> s/Jeffrey Eskin/Jeffrey Yasskin/
[14:43:03] Arne Wall leaves the room
[14:43:04] <rsalz> sorry Jeffrey
[14:43:11] <rsalz> pg Issues to be Discussed
[14:46:13] <rsalz> Stephen Farrell
[14:46:54] <rsalz> PHB
[14:47:27] Phillip Hallam-Baker leaves the room
[14:49:29] <rsalz> Richard Barnes
[14:49:34] Andreas Hülsing joins the room
[14:50:39] Yaakov Stein leaves the room
[14:51:27] <rsalz> Russ Housley
[14:55:44] Matthew Chiang leaves the room
[14:57:22] <rsalz> Vasiley (didn't catch last name) from cryptopro, russia
[14:59:42] <rsalz> Transition from Classical to post-quanrum crypto
[14:59:51] <rsalz> Kenny channeling for Paul Hoffman
[15:00:04] <rsalz> https://www.ietf.org/proceedings/99/slides/slides-99-cfrg-the-transition-from-classical-to-post-quantum-cryptography-draft-hoffman-c2pq-00.pdf
[15:00:09] <rsalz> p2 why the cfrg might care
[15:00:46] <rsalz> p3 draft-hoffman-c2pq
[15:00:50] <Jon Hudson> I'm writing to Paul right now offering to help with the draft
[15:01:50] Yaakov Stein joins the room
[15:02:00] Matthew Chiang joins the room
[15:02:15] <rsalz> p5 proposed way forward
[15:02:43] <rsalz> PHB
[15:03:55] <Philip Lafrance> PQ algorithms can be made practical; many of them are already practical and they are only getting better.
[15:04:07] <rsalz> Dave McGrew
[15:04:21] <rsalz> Reminder if you want me to say something put mic: in front
[15:05:03] <rsalz> stephen farrel
[15:06:38] <rsalz> Darrel (?)Feiffer
[15:07:15] Renzo Navas leaves the room
[15:07:24] Geoff Beier leaves the room
[15:07:31] <Jon Hudson> Virtual Hand
[15:07:36] <Andreas Hülsing> mic: I want to show my hand :-)
[15:07:42] <Scott Fluhrer> Me too
[15:07:51] Robert Annessi joins the room
[15:08:46] <Kyle Rose> I'm still unclear on the quality of (read: level of analysis performed against) PQ key agreement schemes.
[15:08:47] <rsalz> David McGrew, Hash-based signatures
[15:09:18] <rsalz> https://www.ietf.org/proceedings/99/slides/slides-99-cfrg-the-transition-from-classical-to-post-quantum-cryptography-draft-hoffman-c2pq-00.pdf
[15:09:19] Matthew Chiang leaves the room
[15:09:26] <rsalz> pg "What's new"
[15:10:50] <rsalz> pg MD HAsh Security Assumptions
[15:12:09] Robert Annessi leaves the room
[15:13:07] <rsalz> pg, Post Quantum Security (paper abstract image)
[15:13:07] <Philip Lafrance> I'm from ISARA.
[15:13:29] <rsalz> pg, Performance
[15:14:25] <rsalz> pg, Next Steps
[15:16:07] Jon Hudson leaves the room
[15:16:31] Jeffrey Yasskin leaves the room
[15:17:08] <rsalz> Jeffrey Yasskin
[15:18:08] Jeffrey Yasskin joins the room
[15:18:16] <rsalz> Stephen Farrell
[15:19:45] <rsalz> Kangaroo Twelve
[15:19:50] <rsalz> Quan for Benoit
[15:20:06] Geoff Beier joins the room
[15:20:13] <rsalz> https://www.ietf.org/proceedings/99/slides/slides-99-cfrg-kangarootwelve-draft-viguier-kangarootwelve-00-00.pdf
[15:20:35] Melinda leaves the room
[15:21:11] <rsalz> p2, What is Kangaroo Twelve
[15:22:07] <rsalz> p3, How Secure is K12
[15:22:07] Yaakov Stein leaves the room
[15:23:27] <rsalz> p4, Status of Keccak
[15:25:02] <rsalz> p5, how fast is K12
[15:25:48] <rsalz> p6, why is it interesting for the ietf
[15:26:57] <rsalz> kyle rose
[15:31:24] <rsalz> Dan Brown https://www.ietf.org/proceedings/99/slides/slides-99-cfrg-ecc-mod-8915-00.pdf
[15:32:04] <rsalz> We hear you and see you
[15:33:11] <rsalz> pg math formula
[15:33:45] <rsalz> pg, Benefits of Galois Field size
[15:34:29] <rsalz> pg simple and fast fermat inversion
[15:35:09] <rsalz> pg compareing 8^91+5 to otehr fields
[15:35:58] <rsalz> pg decimal exponential complexity as an efficiency heuristic
[15:36:39] <rsalz> (It is ironic that in a WG that is all about numbers, most presenters omit a hugely important number in their slides -- the *page* number :)
[15:37:13] <rsalz> pg benefits of curbe equation
[15:38:01] <rsalz> pg aside: re-deriving differntial addition
[15:38:38] <rsalz> pg curve criteria ceded by 2y**2=x**3_x
[15:40:06] <rsalz> pg counterarguments: Fudd and Bugs :)
[15:40:17] <rsalz> pg Miller, 1985
[15:40:21] <Meetecho> Tried contacting Dan in a private message via Jabber to instruct him on how to reconnect the audio stream (as he's very delayed) but not sure he's read it
[15:40:41] <Meetecho> Not sure if the chairs want to tell him via voice, or if it's fine if he goes on like that
[15:40:48] <Meetecho> (don't want to disrupt the meeting)
[15:41:36] <rsalz> pg Happy 32nd birthday ECC
[15:41:56] <Scott Fluhrer> What's the cofactor?
[15:42:07] <rsalz> mic?
[15:42:18] <rsalz> sorry, missed it
[15:42:32] <Meetecho> Scott is in the virtual queue
[15:43:04] Sean Leonard leaves the room
[15:43:16] <rsalz> new topic https://www.ietf.org/proceedings/99/slides/slides-99-cfrg-diffie-hellman-mod-63042711-00.pdf
[15:43:41] <rsalz> @Meetecho thanks.  Guess we'll muddle along
[15:43:41] jimsch1 leaves the room
[15:43:52] <rsalz> pg, Gordon's attack and current countermeasures
[15:43:59] <Meetecho> rsalz: ack
[15:44:23] cw-ietf leaves the room
[15:44:41] <rsalz> pg Benefits of p=630...
[15:46:07] <rsalz> pg, heuristics about 630...
[15:46:38] <rsalz> pg extra slides
[15:49:23] <rsalz> topic AOB
[15:49:45] <rsalz> open mic
[15:49:55] Kyle Rose leaves the room
[15:50:00] Mike Jenkins leaves the room
[15:50:01] Lorenzo Miniero leaves the room
[15:50:03] <rsalz> we're done.
[15:50:03] ddp@jabber.org leaves the room
[15:50:05] rsalz leaves the room
[15:50:09] JeffH leaves the room
[15:50:32] Jeffrey Yasskin leaves the room
[15:50:33] Satoru Kanno leaves the room
[15:50:33] Ira McDonald leaves the room
[15:50:33] Scott Fluhrer leaves the room
[15:50:33] Philip Lafrance leaves the room
[15:50:33] Panos Kampanakis leaves the room
[15:50:33] Geoff Beier leaves the room
[15:50:33] Dan Brown leaves the room
[15:50:33] Andreas Hülsing leaves the room
[15:51:50] sftcd leaves the room
[15:52:39] Meetecho leaves the room
[15:53:37] alexey.melnikov leaves the room
[15:55:48] JeffH joins the room
[15:56:45] Jeffrey Yasskin joins the room
[15:58:51] ddp@jabber.org joins the room
[16:09:00] Jeffrey Yasskin leaves the room
[16:18:48] Jeffrey Yasskin joins the room
[16:28:24] Jeffrey Yasskin leaves the room
[16:28:48] JeffH leaves the room
[17:02:05] ddp@jabber.org leaves the room
[17:44:59] ddp@jabber.org joins the room
[17:45:06] ddp@jabber.org leaves the room
[19:03:57] ddp@jabber.org joins the room
[19:33:36] ddp@jabber.org leaves the room
[19:51:18] ddp@jabber.org joins the room
[19:54:54] jimsch1 joins the room
[20:07:36] ddp@jabber.org leaves the room
[20:08:47] ddp@jabber.org joins the room
[20:25:36] ddp@jabber.org leaves the room
[20:36:42] ddp@jabber.org joins the room
[20:41:32] Melinda joins the room
[21:00:25] jimsch1 leaves the room
[21:33:36] ddp@jabber.org leaves the room
[21:37:38] ddp@jabber.org joins the room
[22:06:36] ddp@jabber.org leaves the room
[22:09:58] ddp@jabber.org joins the room
[22:22:06] ddp@jabber.org leaves the room
[22:37:58] ddp@jabber.org joins the room
[22:55:37] ddp@jabber.org leaves the room
[23:02:28] ddp@jabber.org joins the room
[23:46:37] ddp@jabber.org leaves the room
[23:49:53] ddp@jabber.org joins the room
Powered by ejabberd - robust, scalable and extensible XMPP server Powered by Erlang Valid XHTML 1.0 Transitional Valid CSS!