Re: [Last-Call] [COSE] Last Call: <draft-ietf-cose-webauthn-algorithms-05.txt> (COSE and JOSE Registrations for WebAuthn Algorithms) to Proposed Standard

[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

 



https://tools.ietf.org/html/draft-ietf-cose-webauthn-algorithms-07 now registers secp256k1 and ES256K as “Recommended: No”, per your requests.

 

                                                       -- Mike

 

From: Mike Jones
Sent: Saturday, May 23, 2020 4:49 PM
To: Eric Rescorla <ekr@xxxxxxxx>; rsalz@xxxxxxxxxx
Cc: last-call@xxxxxxxx; Jim Schaad <ietf@xxxxxxxxxxxxxxxxx>; cose@xxxxxxxx
Subject: Re: [COSE] [Last-Call] Last Call: <draft-ietf-cose-webauthn-algorithms-05.txt> (COSE and JOSE Registrations for WebAuthn Algorithms) to Proposed Standard

 

I can certainly change the COSE recommendation status from Yes to No, if that’s the prevailing opinion.  Those that have decided to use secp256k1 over the NIST and 25519 curves will likely continue to do so no matter what we decide in this regard.

 

I’ll wait until the last call expires on Wednesday to see what other comments may come in and then publish an updated draft.

 

                                                       Thanks all,

                                                       -- Mike

 

From: COSE <cose-bounces@xxxxxxxx> On Behalf Of Eric Rescorla
Sent: Saturday, May 23, 2020 2:36 PM
To: Salz, Rich <rsalz=40akamai.com@xxxxxxxxxxxxxx>
Cc: last-call@xxxxxxxx; Jim Schaad <ietf@xxxxxxxxxxxxxxxxx>; cose@xxxxxxxx
Subject: Re: [COSE] [Last-Call] Last Call: <draft-ietf-cose-webauthn-algorithms-05.txt> (COSE and JOSE Registrations for WebAuthn Algorithms) to Proposed Standard

 

Good catch. We definitely should not be recommending sep256k1.

 

-Ekr

 

 

On Sat, May 23, 2020 at 1:30 PM Salz, Rich <rsalz=40akamai.com@xxxxxxxxxxxxxx> wrote:

>    I believe that the IESG needs to debate if this document should be the one
    which makes the secp256k1 curve a recommended IETF curve to use.

A good point, albeit slightly subtle.  +1.



--
last-call mailing list
last-call@xxxxxxxx
https://www.ietf.org/mailman/listinfo/last-call

-- 
last-call mailing list
last-call@xxxxxxxx
https://www.ietf.org/mailman/listinfo/last-call

[Index of Archives]     [IETF Annoucements]     [IETF]     [IP Storage]     [Yosemite News]     [Linux SCTP]     [Linux Newbies]     [Mhonarc]     [Fedora Users]

  Powered by Linux