Orie, those are good additional references. @Aritra+Tiru: I guess you have not been following the COSE group for a long time and may have therefore been missing that there are discussions ongoing about these issues for months (or better a year). It might be worthwhile to read through the mailing list archive.
Ciao Hannes Von: COSE <[email protected]> Im Auftrag von Orie Steele Gesendet: Freitag, 14. Juli 2023 14:09 An: Tschofenig, Hannes <[email protected]> Cc: Aritra Banerjee (Nokia) <[email protected]>; cose <[email protected]> Betreff: Re: [COSE] Definitions for Hybrid (PQ and classical) encryption There is also: https://github.com/transmute-industries/jose-hpke https://github.com/transmute-industries/hpke.dev Using: https://github.com/dajiaji/hpke-js On Fri, Jul 14, 2023, 6:53 AM Tschofenig, Hannes <[email protected]<mailto:[email protected]>> wrote: Excellent. Please have a look at what Laurence and I have been working on with t_cose, see GitHub - laurencelundblade/t_cose at dev<https://github.com/laurencelundblade/t_cose/tree/dev> Laurence removed HPKE support but the ES-DH with AES-KW support is there. You could try stick the PQC algorithm support in there given that the foundations are already prepared. Von: Aritra Banerjee (Nokia) <[email protected]<mailto:[email protected]>> Gesendet: Freitag, 14. Juli 2023 13:47 An: Tschofenig, Hannes (T CST SEA-DE) <[email protected]<mailto:[email protected]>>; [email protected]<mailto:[email protected]> Betreff: Re: [COSE] Definitions for Hybrid (PQ and classical) encryption Hi Hannes, We are working on it. Regards, Aritra. From: Tschofenig, Hannes <[email protected]<mailto:[email protected]>> Date: Friday, 14. July 2023 at 13:05 To: Aritra Banerjee (Nokia) <[email protected]<mailto:[email protected]>>, [email protected]<mailto:[email protected]> <[email protected]<mailto:[email protected]>> Subject: AW: [COSE] Definitions for Hybrid (PQ and classical) encryption You don't often get email from [email protected]<mailto:[email protected]>. Learn why this is important<https://aka.ms/LearnAboutSenderIdentification> CAUTION: This is an external email. Please be very careful when clicking links or opening attachments. See the URL nok.it/ext<http://nok.it/ext> for additional information. Hi Aritra, Do you have running code with the work you have been doing on your draft? Ciao Hannes Von: COSE <[email protected]<mailto:[email protected]>> Im Auftrag von Aritra Banerjee (Nokia) Gesendet: Freitag, 14. Juli 2023 12:59 An: [email protected]<mailto:[email protected]> Betreff: Re: [COSE] Definitions for Hybrid (PQ and classical) encryption Hello Ilari, Thank you for the comments, we will address all the comments raised. Hello Orlando, Thank you for sending over the document. Please refer to this draft we published (that Ilari mentioned) little over a week ago in the COSE working group: draft-ra-cose-hybrid-encrypt-00 - Hybrid key exchange in JOSE and COSE (ietf.org)<https://datatracker.ietf.org/doc/draft-ra-cose-hybrid-encrypt/> And feel free to contribute to the draft via the GitHub link: tireddy2/jose-hybrid-encrypt (github.com)<https://github.com/tireddy2/jose-hybrid-encrypt>. We would also be happy to collaborate with you on this topic. Thanks! Regards, Aritra. <https://github.com/tireddy2/jose-hybrid-encrypt> GitHub - tireddy2/jose-hybrid-encrypt<https://github.com/tireddy2/jose-hybrid-encrypt> Contribute to tireddy2/jose-hybrid-encrypt development by creating an account on GitHub. github.com<http://github.com/> Hybrid key exchange in JOSE and COSE<https://datatracker.ietf.org/doc/draft-ra-cose-hybrid-encrypt/> Hybrid key exchange refers to using multiple key exchange algorithms simultaneously and combining the result with the goal of providing security even if all but one of the component algorithms is broken. It is motivated by transition to post-quantum cryptography. This document provides a construction for hybrid key exchange in JOSE and COSE. It defines the use of traditional and PQC algorithms, a hybrid post-quantum KEM, for JOSE and COSE. datatracker.ietf.org<http://datatracker.ietf.org/> _______________________________________________ COSE mailing list [email protected]<mailto:[email protected]> https://www.ietf.org/mailman/listinfo/cose
_______________________________________________ COSE mailing list [email protected] https://www.ietf.org/mailman/listinfo/cose
