Skip to main content

CURves, Deprecating and a Little more Encryption
charter-ietf-curdle-01

Revision differences

Document history

Date Rev. By Action
2019-03-27
01 Cindy Morgan Responsible AD changed to Benjamin Kaduk from Eric Rescorla
2018-01-30
01 Amy Vezza Responsible AD changed to Eric Rescorla from Stephen Farrell
2015-12-18
01 Cindy Morgan New version available: charter-ietf-curdle-01.txt
2015-12-18
01 Cindy Morgan State changed to Approved from IESG review
2015-12-18
01 Cindy Morgan IESG has approved the charter
2015-12-18
01 Cindy Morgan Closed "Approve" ballot
2015-12-18
01 Cindy Morgan Closed "Ready for external review" ballot
2015-12-18
00-05 Cindy Morgan WG action text was changed
2015-12-17
00-05 Jari Arkko [Ballot Position Update] New position, No Objection, has been recorded for Jari Arkko
2015-12-17
00-05 Alvaro Retana [Ballot Position Update] New position, No Objection, has been recorded for Alvaro Retana
2015-12-17
00-05 Stephen Farrell New version available: charter-ietf-curdle-00-05.txt
2015-12-16
00-04 Joel Jaeggli [Ballot Position Update] New position, No Objection, has been recorded for Joel Jaeggli
2015-12-16
00-04 Alia Atlas [Ballot Position Update] New position, No Objection, has been recorded for Alia Atlas
2015-12-16
00-04 Ben Campbell [Ballot comment]
I also would like to see Alissa's previous comment addressed (about why  Kerberos and JSON are only "potentially" in scope.)
2015-12-16
00-04 Ben Campbell [Ballot Position Update] New position, No Objection, has been recorded for Ben Campbell
2015-12-16
00-04 Benoît Claise
[Ballot comment]
From these two paragraphs, cut/pasted from the charter:

The CURDLE working group is chartered to add a small set of cryptographic
mechanisms to …
[Ballot comment]
From these two paragraphs, cut/pasted from the charter:

The CURDLE working group is chartered to add a small set of cryptographic
mechanisms to some IETF protocols, and to make implementation requirements
including deprecation of old algorithms where there is IETF consensus to do so.
The focus with regards to adding mechanisms is for those mechanisms that enjoy
broad support from implementers.

The set of new algorithms that can be introduced are limited to key agreement
(ECDH) and digital signatures (EdDSA) with Curve25519 and Curve448 as defined by
CFRG [1] [2], and the AEAD mode ciphers consisting of ChaCha20 and Poly1305 also
defined by CFRG [3].  Other variants of mechanisms, such as the
ChaCha20-Poly1305 construct deployed for SSH, may also be considered as well as
AES-CCM[4] and AES-GCM [5] where those are not already defined and where there
is implementer interest.  Related specifications such as private and public key
formats are also within scope.

I now understand (thanks to Stephen in an off-line discussion) that "a small set of cryptographic mechanisms" refers to the 3 sentences in the second paragraph. I was confused because those 3 sentences have different subjects: the set of new algorithms, over variant mechanisms, related specifications.

Proposal:
OLD:

The set of new algorithms that can be introduced are limited to key agreement
(ECDH) and digital signatures (EdDSA) with Curve25519 and Curve448 as defined by
CFRG [1] [2], and the AEAD mode ciphers consisting of ChaCha20 and Poly1305 also
defined by CFRG [3].


NEW:

The set of cryptographic mechanisms that can be introduced are limited to key agreement
(ECDH) and digital signatures (EdDSA) with Curve25519 and Curve448 as defined by
CFRG [1] [2], and the AEAD mode ciphers consisting of ChaCha20 and Poly1305 also
defined by CFRG [3].




Editorial: Excuse my French ... I had to read this sentence at least three times to grasp it (hopefully)

The CURDLE working group will be handling changes to protocols and registries
some of which include what are now considered outdated  algorithm options, and
may propose deprecation of such algorithms.

Do you want to say?

The CURDLE working group will be handling changes to protocols and registries
(for outdated algorithm options), and may propose deprecation of such algorithms.


Editorial: There are a couple of double spaces:
    a  relevant
    outdated  algorithm
2015-12-16
00-04 Benoît Claise [Ballot Position Update] New position, No Objection, has been recorded for Benoit Claise
2015-12-16
00-04 Deborah Brungard [Ballot Position Update] New position, No Objection, has been recorded for Deborah Brungard
2015-12-16
00-04 Spencer Dawkins [Ballot comment]
The more we discuss this charter, the more I think we should do it. That could be a good sign :-)
2015-12-16
00-04 Spencer Dawkins [Ballot Position Update] New position, Yes, has been recorded for Spencer Dawkins
2015-12-16
00-04 Alissa Cooper [Ballot comment]
The change I had discussed with Stephen when we reviewed this last time doesn't seem to have been made. https://www.ietf.org/rfcdiff?url1=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fcharter-ietf-curdle%2Fwithmilestones-00-02.txt&url2=https%3A%2F%2Fdatatracker.ietf.org%2Fdoc%2Fcharter-ietf-curdle%2Fwithmilestones-00-03.txt
2015-12-16
00-04 Alissa Cooper [Ballot Position Update] New position, No Objection, has been recorded for Alissa Cooper
2015-12-16
00-04 Barry Leiba [Ballot Position Update] New position, No Objection, has been recorded for Barry Leiba
2015-12-16
00-04 Kathleen Moriarty [Ballot Position Update] New position, Yes, has been recorded for Kathleen Moriarty
2015-12-16
00-04 Stephen Farrell [Ballot Position Update] New position, Yes, has been recorded for Stephen Farrell
2015-12-16
00-04 Stephen Farrell Created "Approve" ballot
2015-12-16
00-04 Stephen Farrell State changed to IESG review from External review
2015-12-14
00-04 Martin Stiemerling [Ballot Position Update] New position, No Objection, has been recorded for Martin Stiemerling
2015-12-04
00-04 Cindy Morgan Telechat date has been changed to 2015-12-17 from 2015-12-03
2015-12-04
00-04 Cindy Morgan State changed to External review from Internal review
2015-12-04
00-04 Cindy Morgan WG new work message text was changed
2015-12-04
00-04 Cindy Morgan WG review text was changed
2015-12-04
00-03 Cindy Morgan WG review text was changed
2015-12-04
00-03 Cindy Morgan WG review text was changed
2015-12-03
00-04 Stephen Farrell New version available: charter-ietf-curdle-00-04.txt
2015-12-03
00-03 Jari Arkko [Ballot Position Update] New position, No Objection, has been recorded for Jari Arkko
2015-12-02
00-03 Terry Manderson [Ballot Position Update] New position, Yes, has been recorded for Terry Manderson
2015-12-02
00-03 Alia Atlas [Ballot Position Update] New position, No Objection, has been recorded for Alia Atlas
2015-12-02
00-03 Ben Campbell [Ballot comment]
I concur with Alissa's and Joel's comments.
2015-12-02
00-03 Ben Campbell [Ballot Position Update] New position, No Objection, has been recorded for Ben Campbell
2015-12-01
00-03 Stephen Farrell New version available: charter-ietf-curdle-00-03.txt
2015-12-01
00-02 Spencer Dawkins [Ballot Position Update] New position, No Objection, has been recorded for Spencer Dawkins
2015-11-30
00-02 Alissa Cooper
[Ballot comment]
I don't get what it means for Kerberos and JSON to be "potentially" in scope. It seems to me that they are in …
[Ballot comment]
I don't get what it means for Kerberos and JSON to be "potentially" in scope. It seems to me that they are in scope. If the WG chooses not to pursue the work related to them that's ok, but they're still in the scope of the charter.
2015-11-30
00-02 Alissa Cooper [Ballot Position Update] New position, No Objection, has been recorded for Alissa Cooper
2015-11-30
00-02 Alvaro Retana [Ballot Position Update] New position, No Objection, has been recorded for Alvaro Retana
2015-11-30
00-02 Deborah Brungard [Ballot Position Update] New position, No Objection, has been recorded for Deborah Brungard
2015-11-30
00-02 Kathleen Moriarty [Ballot Position Update] New position, Yes, has been recorded for Kathleen Moriarty
2015-11-29
00-02 Barry Leiba [Ballot Position Update] New position, No Objection, has been recorded for Barry Leiba
2015-11-27
00-02 Joel Jaeggli
[Ballot comment]
seems like:

The relevant IETF protocols are primarily those protocols that are standardized
through the IETF and that do not have an active …
[Ballot comment]
seems like:

The relevant IETF protocols are primarily those protocols that are standardized
through the IETF and that do not have an active working group, or where the
working group decides to not take on the work. To be concrete, the protocols in
scope are Secure Shell (SSH), DNSSEC, PKIX, CMS, XML Digital Signatures and
potentially Kerberos and JSON.

can be simplified to

The protocols in scope are Secure Shell (SSH), DNSSEC, PKIX, CMS, XML Digital Signatures and
potentially Kerberos and JSON.

also

As  the CURDLE working group will be handling changes to protocols and
registries some of which include what are now considered outdated  algorithm
options, the working group can also choose to propose deprecation of such
algorithms.

The CURDLE working group will be handling changes to protocols and
registries some of which include what are now considered outdated  algorithm
options, and may propose deprecation of such algorithms.
2015-11-27
00-02 Joel Jaeggli [Ballot Position Update] New position, No Objection, has been recorded for Joel Jaeggli
2015-11-25
00-02 Stephen Farrell Notification list changed to curdle@ietf.org
2015-11-20
00-02 Stephen Farrell [Ballot Position Update] New position, Yes, has been recorded for Stephen Farrell
2015-11-20
00-02 Stephen Farrell WG action text was changed
2015-11-20
00-02 Stephen Farrell WG review text was changed
2015-11-20
00-02 Stephen Farrell WG review text was changed
2015-11-20
00-02 Stephen Farrell Created "Ready for external review" ballot
2015-11-20
00-02 Stephen Farrell State changed to Internal review from Informal IESG review
2015-11-20
00-02 Stephen Farrell Placed on agenda for telechat - 2015-12-03
2015-11-20
00-02 Stephen Farrell New version available: charter-ietf-curdle-00-02.txt
2015-11-18
00-01 Stephen Farrell New version available: charter-ietf-curdle-00-01.txt
2015-11-18
00-00 Stephen Farrell Added charter milestone "Send last draft to IESG", due June 2016
2015-11-18
00-00 Stephen Farrell Added charter milestone "Decision on which drafts to adopt", due January 2016
2015-11-18
00-00 Stephen Farrell Initial review time expires 2015-11-25
2015-11-18
00-00 Stephen Farrell State changed to Informal IESG review from Not currently under review
2015-11-18
00-00 Stephen Farrell New version available: charter-ietf-curdle-00-00.txt