Re: [DNSOP] Question regarding RFC 7793

2023-09-19 Thread Benno Overeinder

Dear Von,

As others have noted, your questions and comments are not relevant to 
the IETF DNSOP WG mailing list.


I would ask that you refrain from follow-up emails on off-topic DNSOP 
topics that may be more appropriate for other IETF WGs, or IRTF Reserach 
Groups discussing cryptography (CFRG) and quantum internet (QIRG).


Kind regards,

Benno Overeinder
DNSOP WG co-chair


On 19/09/2023 10:21, Von Johnson wrote:
Protect current Chrome TLS traffic against future quantum cryptanalysis 
by deploying the Kyber768 quantum-resistant key agreement algorithm.


This is a hybrid X25519 + Kyber768 key agreement based on an IETF 
standard. This specification and launch is outside the scope of W3C. 
This key agreement will be launched as a TLS cipher, and should be 
transparent to users.


https://blog.chromium.org/2023/08/protecting-chrome-traffic-with-hybrid.html 

Motivation
In order to protect today’s network traffic against future quantum 
cryptanalytic attacks, we need to begin migrating network security 
protocols, like TLS, to use quantum-resistant cryptography.
TLS will need to update to quantum-resistant cryptography in three 
separate areas:

- Establishing, or agreeing upon a symmetric session key
- Authenticating the server’s identity (e.g. X.509 certificate validation)
- Authenticating the connection was established by the holder of the 
server’s private key



Why does my public IP address have me showing in new York city?

On Mon, Sep 18, 2023, 11:04 PM Paul Wouters > wrote:


On Mon, 18 Sep 2023, Von Johnson wrote:

 > Hello. Any updates?

There will be no updates from this list. This mailing list is about
designing protocols. Other people and vendors implement these. So
if you have a device problem with any application, please contact
the device vendor or application vendor. We just write lots of pages
of RFC text.

Paul

 > On Fri, Sep 15, 2023, 8:36 PM Mark Andrews mailto:ma...@isc.org>> wrote:
 >       Again please make an understandable request. You do not
describe your problem.  Screen shots are not descriptions.
 >
 >       -- Mark Andrews
 >
 >       On 16 Sep 2023, at 10:20, Von Johnson mailto:voni...@gmail.com>> wrote:
 >
 >       Please help me fix. The x25519 exchange is 
 >
 > On Fri, Sep 15, 2023, 7:58 PM Mark Andrews mailto:ma...@isc.org>> wrote:
 >       Please make a understandable request.
 >       --
 >       Mark Andrews
 >
 >       > On 16 Sep 2023, at 05:24, Von Johnson mailto:voni...@gmail.com>> wrote:
 >       >
 >       >
 >       > Please help me return this to normal
 >       > ___
 >       > DNSOP mailing list
 >       > DNSOP@ietf.org 
 >       > https://www.ietf.org/mailman/listinfo/dnsop

 >
 > Screenshot_20230915-201854.png
 >
 >
 >


___
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop


--
Benno J. Overeinder
NLnet Labs
https://www.nlnetlabs.nl/

___
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop


Re: [DNSOP] Question regarding RFC 7793

2023-09-19 Thread Von Johnson
Protect current Chrome TLS traffic against future quantum cryptanalysis by
deploying the Kyber768 quantum-resistant key agreement algorithm.

This is a hybrid X25519 + Kyber768 key agreement based on an IETF standard.
This specification and launch is outside the scope of W3C. This key
agreement will be launched as a TLS cipher, and should be transparent to
users.

https://blog.chromium.org/2023/08/protecting-chrome-traffic-with-hybrid.html
Motivation
In order to protect today’s network traffic against future quantum
cryptanalytic attacks, we need to begin migrating network security
protocols, like TLS, to use quantum-resistant cryptography.
TLS will need to update to quantum-resistant cryptography in three separate
areas:
- Establishing, or agreeing upon a symmetric session key
- Authenticating the server’s identity (e.g. X.509 certificate validation)
- Authenticating the connection was established by the holder of the
server’s private key


Why does my public IP address have me showing in new York city?

On Mon, Sep 18, 2023, 11:04 PM Paul Wouters  wrote:

> On Mon, 18 Sep 2023, Von Johnson wrote:
>
> > Hello. Any updates?
>
> There will be no updates from this list. This mailing list is about
> designing protocols. Other people and vendors implement these. So
> if you have a device problem with any application, please contact
> the device vendor or application vendor. We just write lots of pages
> of RFC text.
>
> Paul
>
> > On Fri, Sep 15, 2023, 8:36 PM Mark Andrews  wrote:
> >   Again please make an understandable request. You do not describe
> your problem.  Screen shots are not descriptions.
> >
> >   -- Mark Andrews
> >
> >   On 16 Sep 2023, at 10:20, Von Johnson  wrote:
> >
> >   Please help me fix. The x25519 exchange is 
> >
> > On Fri, Sep 15, 2023, 7:58 PM Mark Andrews  wrote:
> >   Please make a understandable request.
> >   --
> >   Mark Andrews
> >
> >   > On 16 Sep 2023, at 05:24, Von Johnson  wrote:
> >   >
> >   >
> >   > Please help me return this to normal
> >   > ___
> >   > DNSOP mailing list
> >   > DNSOP@ietf.org
> >   > https://www.ietf.org/mailman/listinfo/dnsop
> >
> > Screenshot_20230915-201854.png
> >
> >
> >
>
___
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop


Re: [DNSOP] Question regarding RFC 7793

2023-09-18 Thread Paul Wouters

On Mon, 18 Sep 2023, Von Johnson wrote:


Hello. Any updates?


There will be no updates from this list. This mailing list is about 
designing protocols. Other people and vendors implement these. So

if you have a device problem with any application, please contact
the device vendor or application vendor. We just write lots of pages
of RFC text.

Paul


On Fri, Sep 15, 2023, 8:36 PM Mark Andrews  wrote:
  Again please make an understandable request. You do not describe your 
problem.  Screen shots are not descriptions.  

  -- Mark Andrews

  On 16 Sep 2023, at 10:20, Von Johnson  wrote:

  Please help me fix. The x25519 exchange is 

On Fri, Sep 15, 2023, 7:58 PM Mark Andrews  wrote:
  Please make a understandable request.
  --
  Mark Andrews

  > On 16 Sep 2023, at 05:24, Von Johnson  wrote:
  >
  >
  > Please help me return this to normal
  > ___
  > DNSOP mailing list
  > DNSOP@ietf.org
  > https://www.ietf.org/mailman/listinfo/dnsop

Screenshot_20230915-201854.png





___
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop


Re: [DNSOP] Question regarding RFC 7793

2023-09-15 Thread Mark Andrews
Please make a understandable request. 
-- 
Mark Andrews

> On 16 Sep 2023, at 05:24, Von Johnson  wrote:
> 
> 
> Please help me return this to normal 
> ___
> DNSOP mailing list
> DNSOP@ietf.org
> https://www.ietf.org/mailman/listinfo/dnsop

___
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop


[DNSOP] Question regarding RFC 7793

2023-09-15 Thread Von Johnson
Please help me return this to normal
___
DNSOP mailing list
DNSOP@ietf.org
https://www.ietf.org/mailman/listinfo/dnsop