Ballot for draft-ietf-jose-hpke-encrypt

Yes

Christopher Inacio
Deb Cooley

No Objection

Andy Newton
Charles Eckel
Éric Vyncke
Gorry Fairhurst
Gunter Van de Velde
Jim Guichard
Ketan Talaulikar
Mike Bishop
Mohamed Boucadair
Roman Danyliw
Tommy Jensen

No Record

Mahesh Jethanandani

Summary: Has enough positions to pass.

Christopher Inacio
Yes
Comment (2026-07-01 for -20) Sent
* In section 7.1, step 10, you generate a random IV.  Should this IV also follow the guidance from 8937?  It appears to be a nonce.  Maybe a few more words beyond than "Generate a random" would be appropriate.
Deb Cooley
Yes
Andy Newton
No Objection
Comment (2026-06-30 for -20) Not sent
Thanks to Paul Kyzivat for the ARTART review.
Charles Eckel
No Objection
Comment (2026-07-01 for -20) Not sent
Thanks to all involved for this clear, well-written document.
Thanks to Paul Kyzivat for the ARTART review.
Éric Vyncke
No Objection
Comment (2026-07-01 for -20) Sent
Thanks for the work done in this document.  Only 1 minor non-blocking COMMENT though

### Section 11.1

A table with all atomic registrations from sections 11.1.* would have been easier to read and made the I-D shorter.
Gorry Fairhurst
No Objection
Gunter Van de Velde
No Objection
Jim Guichard
No Objection
Ketan Talaulikar
No Objection
Mike Bishop
No Objection
Comment (2026-06-26 for -20) Sent
# IESG review of draft-ietf-jose-hpke-encrypt-20

CC @MikeBishop

## Comments

### Section 3, paragraph 14

I appreciate the thorough Terminology section.

### Section 4, paragraph 6

This suggests that if another KMM were defined in the future which
didn't require "enc", it too would need to update 7516. Would it be better to
mandate its exclusion if the KMM doesn't define a use for it? Or is the point
that Integrated Encryption encompasses every case where an algorithm provides
encryption itself?

### Section 6.1, paragraph 2

It's reasonably clear from context what these notations mean, but is
this intended to be following any specified encoding language? It's not ABNF,
TLS, or QUIC notation, but if you're following a particular format, it would be
worth referencing it.

### Section 12, paragraph 5

While you're implementing it by wholesale replacement of the
procedures, the net effect of the update is to add support for Integrated
Encryption to the procedures. I'd suggest using that as the summary, so it's
clear what the impact of the change is.

## Nits

All comments below are about very minor potential issues that you may choose to
address in some way - or ignore - as you see fit. There is no need to let me know
what you did with these suggestions.

### Typos

#### Section 10, paragraph 2
```
-    of public key distribution mechanism is assumed to exist but outside
+    of public key distribution mechanism is assumed to exist but is outside
+                                                                 +++
```

### Section 11.1, paragraph 2

This section would be considerably shorter as a table, rather than a
subsection per registration.
Mohamed Boucadair
No Objection
Roman Danyliw
No Objection
Comment (2026-06-29 for -20) Not sent
Thank you to Peter Yee for the GENART review.
Tommy Jensen
No Objection
Mahesh Jethanandani
No Record