Hi.

I’ve posted a new version of the ChaCha20-Poly1305 draft.  I have removed the 
stand-alone version of both algorithms, leaving only the combined mode.  
Reasoning:
 - The authenticator is not really needed, as we have HMAC-SHA1, HMAC-SHA2-*, 
AES-XCBC, GHASH. So we’re not short on choices for an algorithm to complement 
AES-CBC.
 - Stand-alone ChaCha is fast, but would require an authenticator anyway, and 
the mailing list did not show enthusiasm for ChaCha20 + HMAC-SHA1
 - The working group (everyone who commented except Yaron) wanted to only have 
the AEAD.
 - This makes the document only 7 pages long, with only three pages containing 
the actual protocol.

Comments are, of course, welcome, and I’d like to repeat my questions from the 
London meeting:
 - Should this be a WG item.
 - Should we apply for early identifier assignment
 - Should this be extended for IKE (current draft covers only ESP)

Yoav

Begin forwarded message:

> From: [email protected]
> Subject: New Version Notification for 
> draft-nir-ipsecme-chacha20-poly1305-02.txt
> Date: March 31, 2014 at 9:44:43 AM GMT+3
> To: Yoav Nir <[email protected]>, "Yoav Nir" <[email protected]>
> 
> 
> A new version of I-D, draft-nir-ipsecme-chacha20-poly1305-02.txt
> has been successfully submitted by Yoav Nir and posted to the
> IETF repository.
> 
> Name:         draft-nir-ipsecme-chacha20-poly1305
> Revision:     02
> Title:                ChaCha20 and Poly1305 and their use in IPsec
> Document date:        2014-03-31
> Group:                Individual Submission
> Pages:                7
> URL:            
> http://www.ietf.org/internet-drafts/draft-nir-ipsecme-chacha20-poly1305-02.txt
> Status:         
> https://datatracker.ietf.org/doc/draft-nir-ipsecme-chacha20-poly1305/
> Htmlized:       
> http://tools.ietf.org/html/draft-nir-ipsecme-chacha20-poly1305-02
> Diff:           
> http://www.ietf.org/rfcdiff?url2=draft-nir-ipsecme-chacha20-poly1305-02
> 
> Abstract:
>   This document describes the use of the ChaCha20 stream cipher along
>   with the Poly1305 authenticator, combined into an AEAD algorithm for
>   IPsec.
> 
> 
> 
> 
> Please note that it may take a couple of minutes from the time of submission
> until the htmlized version and diff are available at tools.ietf.org.
> 
> The IETF Secretariat
> 

_______________________________________________
IPsec mailing list
[email protected]
https://www.ietf.org/mailman/listinfo/ipsec

Reply via email to