I support adoption, and I agree with both deprecations.
RSA1.5 for encryption is deprecated by NIST, and, for example, LAMPS is only considering migration mechanisms from RSA-OAEP -> PQ, not RSA1.5. [draft-ietf-lamps-composite-kem]. This draft’s introduction seems clear enough that the deprecation applies to RSA1.5 for encryption (JWE), but maybe could use a specific note that RSA1.5 for signatures (JWS) is still ok? --- Mike Ounsworth From: Orie Steele <[email protected]> Sent: Wednesday, October 2, 2024 7:34 AM To: Karen ODonoghue <[email protected]> Cc: JOSE WG <[email protected]> Subject: [EXTERNAL] [jose] Re: Call for Adoption: draft-madden-jose-deprecate-none-rsa15 I support adoption. On Wed, Oct 2, 2024, 5: 32 AM Karen ODonoghue <kodonog@ pobox. com> wrote: JOSE working group members, The following document has been presented to the jose working group for consideration and been discussed at previous I support adoption. On Wed, Oct 2, 2024, 5:32 AM Karen ODonoghue <[email protected] <mailto:[email protected]> > wrote: JOSE working group members, The following document has been presented to the jose working group for consideration and been discussed at previous meetings. We have agreed to issue a call for adoption. https://datatracker.ietf.org/doc/draft-madden-jose-deprecate-none-rsa15/ <https://urldefense.com/v3/__https:/datatracker.ietf.org/doc/draft-madden-jose-deprecate-none-rsa15/__;!!FJ-Y8qCqXTj2!bLHWLOIyU1QumRudhCavyhmKpH4lUxlEhpa9HsuE8x7V70giOfLoBjWi2rBcbOa17koeAUc74-lWAZ3_RP9GsH6KWW8$> Please respond to this call for adoption with your thoughts on whether or not the working group should adopt this document as a basis for this work. Also, please indicate your willingness to review and/or contribute to the document. The call for adoption closes on Friday 18 October. Thanks, Karen (for the JOSE co-chairs) _______________________________________________ jose mailing list -- [email protected] <mailto:[email protected]> To unsubscribe send an email to [email protected] <mailto:[email protected]>
smime.p7s
Description: S/MIME cryptographic signature
_______________________________________________ jose mailing list -- [email protected] To unsubscribe send an email to [email protected]
