[{"author": "Aron Wussler", "text": "<p>Is there seriously a column in front of the camera?</p>", "time": "2023-07-28T19:00:28Z"}, {"author": "Stephen Farrell", "text": "<p>yeah odd room setup</p>", "time": "2023-07-28T19:00:43Z"}, {"author": "Daniel Gillmor", "text": "<p>yes, this room layout is remarkable</p>", "time": "2023-07-28T19:00:44Z"}, {"author": "Mike Ounsworth", "text": "<p>The Mic line is in between the column and the camera, yes.</p>", "time": "2023-07-28T19:00:55Z"}, {"author": "Daniel Gillmor", "text": "<p>i think the camera will catch who is standing at the mic, but not the rest of the room</p>", "time": "2023-07-28T19:01:04Z"}, {"author": "Daniel Gillmor", "text": "<p>thanks <span class=\"user-mention\" data-user-id=\"500\">@Mike Ounsworth</span> for the demo</p>", "time": "2023-07-28T19:01:13Z"}, {"author": "Aron Wussler", "text": "<p>... Amazing!</p>", "time": "2023-07-28T19:01:20Z"}, {"author": "Aron Wussler", "text": "<p>Hi Mike!</p>", "time": "2023-07-28T19:01:26Z"}, {"author": "Thom Wiggers", "text": "<p>privacy preserving mic line</p>", "time": "2023-07-28T19:01:44Z"}, {"author": "Kai Engert", "text": "<p>there are people in the room!</p>", "time": "2023-07-28T19:01:45Z"}, {"author": "Mike Ounsworth", "text": "<p><span class=\"user-mention silent\" data-user-id=\"86\">Thom Wiggers</span> <a href=\"#narrow/stream/13-openpgp/topic/ietf-117/near/87299\">said</a>:</p>\n<blockquote>\n<p>privacy preserving mic line</p>\n</blockquote>\n<p>But we fixed that with the onsite meetecho tool</p>", "time": "2023-07-28T19:02:13Z"}, {"author": "Aron Wussler", "text": "<p>You know, here we get only pretty good privacy</p>", "time": "2023-07-28T19:03:26Z"}, {"author": "Benjamin Kaduk", "text": "<blockquote>\n<p>we should start distracting ourselves</p>\n</blockquote>\n<p>Ooh, shiny!</p>", "time": "2023-07-28T19:15:06Z"}, {"author": "Benjamin Kaduk", "text": "<p>-ter is more fun than -bis-bis anyway</p>", "time": "2023-07-28T19:16:48Z"}, {"author": "Benjamin Kaduk", "text": "<p>(or, if you want to really push the etymology, -tris)</p>", "time": "2023-07-28T19:17:21Z"}, {"author": "Mike Ounsworth", "text": "<p><span class=\"user-mention\" data-user-id=\"1247\">@Aron Wussler</span> , <span class=\"user-mention\" data-user-id=\"707\">@Falko Strenzke</span> The change to non-composite hybrids (especially non-composite encryption) is interesting. Could we chat offline about the motivations of that direction?</p>", "time": "2023-07-28T19:23:54Z"}, {"author": "Aron Wussler", "text": "<p>Sure, we can schedule a call and have a chat, even if I don't have strong motivations to go towards the non-composite PQC encryption. I've done some experiments and the overhead is really minimal. SPHINCS+ is a bit of a different animal</p>", "time": "2023-07-28T19:30:15Z"}, {"author": "Mike Ounsworth", "text": "<p><span class=\"user-mention\" data-user-id=\"1247\">@Aron Wussler</span>  I guess I just want to wrap my head more fully around this:</p>\n<blockquote>\n<p>Furthermore, the OpenPGP protocol also allows for parallel encryption to different keys held by the same recipient. .. a non-composite multi-algorithm public-key encryption is realized where the recipient has to decrypt only one of the PKESK packages in order to decrypt the message.</p>\n</blockquote>", "time": "2023-07-28T19:32:32Z"}, {"author": "Mike Ounsworth", "text": "<p>(deleted)</p>", "time": "2023-07-28T19:35:42Z"}, {"author": "Kai Engert", "text": "<p>Would the system performing the re-encryption and forwarding be able to read the message?</p>", "time": "2023-07-28T19:36:24Z"}, {"author": "Kai Engert", "text": "<p>(We can get that answered offline)</p>", "time": "2023-07-28T19:36:44Z"}, {"author": "Mallory Knodel", "text": "<p>Wouldn't there be a wider case for additional keys beyond forwarding, say if work is done on forward secrecy?</p>", "time": "2023-07-28T19:36:52Z"}, {"author": "Aron Wussler", "text": "<p>@mike&gt;  Furthermore, the OpenPGP protocol also allows for parallel encryption to different keys held by the same recipientYeah, that's an OR. Just have to decrypt one to get the session key.&gt;  I will find that you are not (currently) registering code points for KyberCorrect</p>", "time": "2023-07-28T19:39:21Z"}, {"author": "Aron Wussler", "text": "<p>Damn formatting</p>", "time": "2023-07-28T19:39:36Z"}, {"author": "Kai Engert", "text": "<p>another use case: Be able to drop old smartcards</p>", "time": "2023-07-28T19:40:00Z"}, {"author": "Aron Wussler", "text": "<p>@kai: no, the proxy preserves E2EE and is not able to read the message. It can only choose which messages to forward (or not to forward) thus causing a denial of service</p>", "time": "2023-07-28T19:40:39Z"}, {"author": "Mike Ounsworth", "text": "<p>(I deleted my second message when I found the codepoints for kyberKem768, kyberKem1024 in 5.1.2)</p>", "time": "2023-07-28T19:40:48Z"}, {"author": "Aron Wussler", "text": "<p>@mallory: I think someone proposed to have \"pretty good forward secrecy\" or even a double ratchet, but there is no draft out yet AFAIK. That's still a good topic in the rechartering for sure</p>", "time": "2023-07-28T19:42:51Z"}, {"author": "Aron Wussler", "text": "<p>Also @kai: it's hard to use this mechanism to drop old smartcards, as we need the secret to compute the transformation parameter, and usually HSMs don't allow that kind of access :(</p>", "time": "2023-07-28T19:43:59Z"}, {"author": "Mallory Knodel", "text": "<p>@aron could work on fs be leveraged by your work on auto-forwarding (a gentle suggestion for a slight shift in the name of the draft)? i'm looking at your draft now and i wonder how autoforwarding is fundamentally different than an email between n+1, rather than n people, where the +1 is the forwardee.</p>", "time": "2023-07-28T19:45:26Z"}, {"author": "Kai Engert", "text": "<p><span class=\"user-mention silent\" data-user-id=\"1247\">Aron Wussler</span> <a href=\"#narrow/stream/13-openpgp/topic/ietf-117/near/87484\">said</a>:</p>\n<blockquote>\n<p>Also @kai: it's hard to use this mechanism to drop old smartcards, as we need the secret to compute the transformation parameter, and usually HSMs don't allow that kind of access :(</p>\n</blockquote>\n<p>sorry if I was misleading. My \"use case\" comment refered to Daniel's presentation about symmetric re-encryption.</p>", "time": "2023-07-28T19:46:18Z"}, {"author": "Cory Myers", "text": "<p>Interested in the OpenPGP <code>&lt;-&gt;</code> double-ratchet line of thinking, if there\u2019s anything public to link to yet.</p>", "time": "2023-07-28T19:46:32Z"}, {"author": "Mallory Knodel", "text": "<p>@daniel are there good reasons why a user might want their symmetric key attached to the user agent rather than their asymmetric key? say the former being different and differently generated on different devices.</p>", "time": "2023-07-28T19:48:17Z"}, {"author": "Cory Myers", "text": "<p>\u201cConsent\u201d- or \u201cinvitation\u201d-based certification?</p>", "time": "2023-07-28T19:51:57Z"}, {"author": "Benjamin Kaduk", "text": "<p>Maybe the keyholder could make some kind of countersignature to attest that they endorse the attachment of the certification to their certificate</p>", "time": "2023-07-28T19:52:03Z"}, {"author": "Mike Ounsworth", "text": "<p><span class=\"user-mention silent\" data-user-id=\"499\">Benjamin Kaduk</span> <a href=\"#narrow/stream/13-openpgp/topic/ietf-117/near/87379\">said</a>:</p>\n<blockquote>\n<p>(or, if you want to really push the etymology, -tris)</p>\n</blockquote>\n<p>@dkg \"-tris\" not \"-tird\"</p>", "time": "2023-07-28T19:57:01Z"}, {"author": "Falko Strenzke", "text": "<p>@Mike: yes sure, we can talk about non-composites (what that exactly refers to here I am not sure though)</p>", "time": "2023-07-28T20:00:42Z"}, {"author": "Pieter Kasselman", "text": "<p>Cross-device security BCP: <a href=\"https://datatracker.ietf.org/doc/draft-ietf-oauth-cross-device-security/\">https://datatracker.ietf.org/doc/draft-ietf-oauth-cross-device-security/</a></p>", "time": "2023-07-28T20:06:57Z"}, {"author": "Stephen Farrell", "text": "<p>thanks pieter</p>", "time": "2023-07-28T20:07:13Z"}, {"author": "Mallory Knodel", "text": "<p>I find the organisational CA use case really interesting and potentially very useful.</p>", "time": "2023-07-28T20:07:45Z"}, {"author": "Mallory Knodel", "text": "<p>Might be related to the revocation clean up work, too.</p>", "time": "2023-07-28T20:08:03Z"}, {"author": "Mallory Knodel", "text": "<p>The universe is expanding, Stephen, metaphorically and actually :)</p>", "time": "2023-07-28T20:09:20Z"}, {"author": "Aron Wussler", "text": "<p>Ask LAMPS how to do a charter :)</p>", "time": "2023-07-28T20:09:41Z"}, {"author": "Roman Danyliw", "text": "<p>We need both the charter text + the milestones with it.</p>", "time": "2023-07-28T20:10:11Z"}]