I support adoption, and I agree with both deprecations.

 

RSA1.5 for encryption is deprecated by NIST, and, for example, LAMPS is only 
considering migration mechanisms from RSA-OAEP -> PQ, not RSA1.5. 
[draft-ietf-lamps-composite-kem]. This draft’s introduction seems clear enough 
that the deprecation applies to RSA1.5 for encryption (JWE), but maybe could 
use a specific note that RSA1.5 for signatures (JWS) is still ok?

 

---

Mike Ounsworth

 

From: Orie Steele <[email protected]> 
Sent: Wednesday, October 2, 2024 7:34 AM
To: Karen ODonoghue <[email protected]>
Cc: JOSE WG <[email protected]>
Subject: [EXTERNAL] [jose] Re: Call for Adoption: 
draft-madden-jose-deprecate-none-rsa15

 

I support adoption. On Wed, Oct 2, 2024, 5: 32 AM Karen ODonoghue <kodonog@ 
pobox. com> wrote: JOSE working group members, The following document has been 
presented to the jose working group for consideration and been discussed at 
previous



I support adoption.

 

On Wed, Oct 2, 2024, 5:32 AM Karen ODonoghue <[email protected] 
<mailto:[email protected]> > wrote:

JOSE working group members,

The following document has been presented to the jose working group
for consideration and been discussed at previous meetings. We have
agreed to issue a call for adoption.

https://datatracker.ietf.org/doc/draft-madden-jose-deprecate-none-rsa15/ 
<https://urldefense.com/v3/__https:/datatracker.ietf.org/doc/draft-madden-jose-deprecate-none-rsa15/__;!!FJ-Y8qCqXTj2!bLHWLOIyU1QumRudhCavyhmKpH4lUxlEhpa9HsuE8x7V70giOfLoBjWi2rBcbOa17koeAUc74-lWAZ3_RP9GsH6KWW8$>
 

Please respond to this call for adoption with your thoughts on whether
or not the working group should adopt this document as a basis for
this work. Also, please indicate your willingness to review and/or
contribute to the document. The call for adoption closes on Friday 18
October.

Thanks,

Karen (for the JOSE co-chairs)

_______________________________________________
jose mailing list -- [email protected] <mailto:[email protected]> 
To unsubscribe send an email to [email protected] 
<mailto:[email protected]> 

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
jose mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to