
From nobody Wed Nov 14 13:44:35 2018
Return-Path: <dilyan.palauzov@aegee.org>
X-Original-To: dcrup@ietfa.amsl.com
Delivered-To: dcrup@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 41CC6128B14 for <dcrup@ietfa.amsl.com>; Wed, 14 Nov 2018 13:44:34 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level: 
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, RCVD_IN_DNSWL_NONE=-0.0001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (4096-bit key) header.d=aegee.org
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id qyEMDjw-91QA for <dcrup@ietfa.amsl.com>; Wed, 14 Nov 2018 13:44:31 -0800 (PST)
Received: from mail.aegee.org (mail.aegee.org [144.76.142.78]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 1D7CB126CB6 for <dcrup@ietf.org>; Wed, 14 Nov 2018 13:44:30 -0800 (PST)
Authentication-Results: mail.aegee.org/wAELiNiO006500; auth=pass (LOGIN) smtp.auth=didopalauzov@AEGEE.ORG
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=aegee.org; s=k4096; t=1542231866; i=dkim+MSA-tls@aegee.org; r=y; bh=/LxaoD1lb/fUPXoEkBuSOegW5h9TifMbnDEFz5CuhsQ=; h=Subject:From:To:Cc:Date; b=DxPDTNVFJC2GO0eMOwwX5OAX+WBg0diAr4H9+fzAhQn8qsMglygE0YdNiHlKTTHCr FWQlDYWu2BdcFF1gRLgg2Meoe+ffWM7xJA0/D0Wp8UbC/cdJRMA1Ki8bwUcYcE67IF fpWLLQq6FDvHbMeSXNHKfZaXSsVXPfqw9V20SOmjcqUGGTd9o1/qqVaC2QvgbJ3yxa YgF4s7IdDFHHf9lOO21onjQKKEUE0HRKYGpGAiQgYPbp1p+gEU97n+epIf+pndJXuE ROTGWN++cDtGSv4yb5v7ndKaXn1CGILosGG4cknOHlKOMbniZkY5l0IzEqtCa/3CJs a++6McOKljkxat3loJcbtwp6PjJmVqV9zckQEaoaje57EZeSLUZ8F8iyHX6EruoZBX 9ws/hl5Plgi7zFVk/Z9r5lJnZXHFKMSxdjY9VWC2KR6ODdN3Fkm8u4xxKaCXQfexJH 03E+rpTZbR7fFT9hwLpmPDe4zKjwwD0GvpKSzRZM/ANyopYLe4i8/axcQhpWgWl22p NDB98WWr/XLgCWh0kBrlw13akU1jIUoTDLMCGg1Tx7+D+19sg+Wy0Kk7VqVPutoCSa sacQJhl/qtpEgApUU/9CbrTJ5+i7z1YOVwxL0l7uCJls+XaTPZb+6HzmB27xzuJFyT qIwN4U5V4T4zyhOYde2c9xdw=
Authentication-Results: mail.aegee.org/wAELiNiO006500; dkim=none
Received: from Tylan (dslb-084-061-083-131.084.061.pools.vodafone-ip.de [84.61.83.131]) (authenticated bits=0) by mail.aegee.org (8.15.2/8.15.2) with ESMTPSA id wAELiNiO006500 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NO); Wed, 14 Nov 2018 21:44:26 GMT
Message-ID: <1b32eeb225568185b52691d684ea59e0b2f9f26d.camel@aegee.org>
From: =?UTF-8?Q?=D0=94=D0=B8=D0=BB=D1=8F=D0=BD_?= =?UTF-8?Q?=D0=9F=D0=B0=D0=BB=D0=B0=D1=83=D0=B7=D0=BE=D0=B2?= <dilyan.palauzov@aegee.org>
To: dcrup@ietf.org
Cc: Nikos Mavrogiannopoulos <nmav@gnutls.org>
Date: Wed, 14 Nov 2018 21:44:22 +0000
Content-Type: text/plain; charset="UTF-8"
User-Agent: Evolution 3.31.2 
Mime-Version: 1.0
Content-Transfer-Encoding: 8bit
X-Virus-Scanned: clamav-milter 0.100.2 at mail.aegee.org
X-Virus-Status: Clean
Archived-At: <https://mailarchive.ietf.org/arch/msg/dcrup/YjeiaMf0kUNvVIOmcgquju6JYZQ>
Subject: [Dcrup] DKIM-Signing hashes with Ed25519
X-BeenThere: dcrup@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: DKIM Crypto Update <dcrup.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dcrup>, <mailto:dcrup-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dcrup/>
List-Post: <mailto:dcrup@ietf.org>
List-Help: <mailto:dcrup-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dcrup>, <mailto:dcrup-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 14 Nov 2018 21:44:34 -0000

Hello,

the algoritm described in RFC 6376 “DomainKeys Identified Mail (DKIM)
Signatures” for signing a message is:

1. Normalize/Canonicalize (Section 5.3)
2. Compute hash (Section 5.5): “The Signer MUST compute the message
hash as described in Section 3.7 and then sign it using the selected
public-key algorithm.”
3. Sign the hash (Section 5.6):  “The DKIM-Signature header field MUST
be the same as used to compute the hash as described above, except that
the value of the "b=" tag MUST be the appropriately signed hash
computed in the previous step…”

This RFC describes the rsa-sha256 algorithm for signing (for the
aforementioned hash).

RFC 8463 “A New Cryptographic Signature Method for DomainKeys
Identified Mail (DKIM)” adds the Ed25519-SHA256 signing algorithm
(Section 3): “The Ed25519-SHA256 signing algorithm computes a message
hash as defined in Section 3 of [RFC6376] using SHA-256 [FIPS-180-4-
2015] as the hash-alg.  It signs the hash with the PureEdDSA variant
Ed25519, as defined in RFC 8032, Section 5.1 [RFC8032].”

At https://www.ietf.org/mail-archive/web/dcrup/current/msg00501.html is
stated, that GnuTLS does ED25519 signing of data, but not of hashed —
ED25519 is not meant for the latter.  The answer at 
https://www.ietf.org/mail-archive/web/dcrup/current/msg00502.html says,
that “if the spec says there’s a pure version that doesn’t hash its
input, the library would implement it.”

I asked at https://gitlab.com/gnutls/gnutls/issues/613 to enhance
GnuTLs to sign per RFC 8463.  The answer is, that there is a pure
EdDSA, which can sign data.  A pre-hashed-EdDSA version, which can sign
hashes, is not standardized.

Please join https://gitlab.com/gnutls/gnutls/issues/613 to explain what
signing ED25519 hashes mean and how and shall it be implemented.

Regards
  Дилян


From nobody Wed Nov 14 15:28:53 2018
Return-Path: <jgh@wizmail.org>
X-Original-To: dcrup@ietfa.amsl.com
Delivered-To: dcrup@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 2F3CD130DFC for <dcrup@ietfa.amsl.com>; Wed, 14 Nov 2018 15:28:52 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.999
X-Spam-Level: 
X-Spam-Status: No, score=-1.999 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=wizmail.org
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id s-Fdlu842Iwv for <dcrup@ietfa.amsl.com>; Wed, 14 Nov 2018 15:28:50 -0800 (PST)
Received: from wizmail.org (wizmail.org [IPv6:2a00:1940:107::2:0:0]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id CE2B5130DFD for <dcrup@ietf.org>; Wed, 14 Nov 2018 15:28:49 -0800 (PST)
ARC-Seal: i=1; cv=none; a=rsa-sha256; d=wizmail.org; s=r201803; t=1542238129;  b=E7ajeo4xnok+ONaMp32WXdGHQ9qNyZ+wXOjG03uHX66RDD71Hu4tQD0qo7O7G9873CwIngN4zG UvzHvgKXHHYUMqwLz5Md8PnP0Ot3J0XW0p4U0lWiEOQPvTqyYhzocJ5RZ5Ctf5KFn/C/BP5oKQ +NX4GiYJGwZsqs2lpInk1oI=;
ARC-Authentication-Results: i=1; wizmail.org; iprev=pass (vgate18.wizint.net) smtp.remote-ip=2a00:1940:107::1:2f:0; auth=pass (PLAIN) smtp.auth=jgh@wizmail.org
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed; d=wizmail.org; s=r201803;  t=1542238129;  bh=FkHMFzYRUGx0lSbF/lpalML5XzRglFeC7TAlmFetfBI=; h=Content-Transfer-Encoding:Content-Type:In-Reply-To:MIME-Version:Date: Message-ID:From:References:To:Subject:DKIM-Signature; b=p+1J9UTzVmrn9iaAbxjaHDrBcXM7Oc2hfKu1aWt19h+AB289CMMpMpXchu621XSQwDLeubb56k NBJtWaYyfOYIOBnr8d4P6q63SoTZNIgy1fex6k4ZxK3zMi+gdNi33ddvGDW21QwI1hwxp4WTId e8oTRb5LF59Lfmu8oxJIPKc=;
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=wizmail.org ; s=r201803; h=Content-Transfer-Encoding:Content-Type:In-Reply-To: MIME-Version:Date:Message-ID:From:References:To:Subject:From:Sender:Reply-To: Subject:Date:Message-ID:To:Cc:MIME-Version:Content-Type: Content-Transfer-Encoding:Content-ID:Content-Description:Resent-Date: Resent-From:Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:In-Reply-To: References:List-Id:List-Help:List-Unsubscribe:List-Subscribe:List-Post: List-Owner:List-Archive; bh=aovcH0WF5QDAhacu5VT8kQt7REN2CExhIPB3knWYzqY=; b=n knxRghTGoeIEKBee2lQIyU5WWwHb4FiffkCremg8N8vnp3wCeC+2HV6J33NXJp5ok2oKrg0ScVYte e+xAB/pn7HB2//smdS4cmc8aCkAgkzFTIhSAgFsIg5zokqCKdCoPPfHOVlHVE4Eg/mHmDJUbIcAgD ry4sV+KTKypuyYvc=;
Authentication-Results: wizmail.org; iprev=pass (vgate18.wizint.net) smtp.remote-ip=2a00:1940:107::1:2f:0; auth=pass (PLAIN) smtp.auth=jgh@wizmail.org
Received: from vgate18.wizint.net ([2a00:1940:107::1:2f:0] helo=lap.dom.ain) by wizmail.org with esmtpsa (TLSv1.2:ECDHE-RSA-AES128-GCM-SHA256:128) (Exim 4.91.116) id 1gN4aV-0007m5-TY for dcrup@ietf.org (return-path <jgh@wizmail.org>); Wed, 14 Nov 2018 23:28:48 +0000
To: dcrup@ietf.org
References: <1b32eeb225568185b52691d684ea59e0b2f9f26d.camel@aegee.org>
From: Jeremy Harris <jgh@wizmail.org>
Openpgp: preference=signencrypt
Autocrypt: addr=jgh@wizmail.org; prefer-encrypt=mutual; keydata= xsBNBFWABsQBCADTFfb9EHGGiDel/iFzU0ag1RuoHfL/09z1y7iQlLynOAQTRRNwCWezmqpD p6zDFOf1Ldp0EdEQtUXva5g2lm3o56o+mnXrEQr11uZIcsfGIck7yV/y/17I7ApgXMPg/mcj ifOTM9C7+Ptghf3jUhj4ErYMFQLelBGEZZifnnAoHLOEAH70DENCI08PfYRRG6lZDB09nPW7 vVG8RbRUWjQyxQUWwXuq4gQohSFDqF4NE8zDHE/DgPJ/yFy+wFr2ab90DsE7vOYb42y95keK tTBp98/Y7/2xbzi8EYrXC+291dwZELMHnYLF5sO/fDcrDdwrde2cbZ+wtpJwtSYPNvVxABEB AAHNJkplcmVteSBIYXJyaXMgKG5vbmUpIDxqZ2hAd2l6bWFpbC5vcmc+wsB7BBMBAgAlAhsD BgsJCAcDAgYVCAIJCgsEFgIDAQIeAQIXgAUCVYAYBAIZAQAKCRC85YyM5B8y34iFB/9wozIY RogNdY1aejFFixb6++y4b1riyjMvWEULeEzDlQ0lMT6Z3PxXhZILD4y4aP7Kzx0ozXa5qaKy 41EAPKQoPipnRAH04QytJbIERvz8Tot/LeCVKUc0G9DVxOPBD03czTgqgz4EjV2qvnLF+rTU 0YBevrNCluKosGSd+3RvLWVu0hBhn9pELKfXJNSQXZb+TpHDhSDZ/gCrglBEOhA6YWbDb/4g z+5TFKdk+B++iAQZSHv7zISabjN+BPYgI47A+MU4JycoXaAUnMc0l5ba6fGNaIrzruE4aAZr lP5o+7mlU9Mm0QJqdqYxYPAiplJGrZv+YXH1fp5ueEK3l+NGzsBNBFWABsQBCADphLHaKToR uR/E7THerBiCjDatwCaETOKOTY2zRBQpaQ32p/F2XIGLS8Cc27+grZSKQ6ZX0ZN47O+AFyFH F8DH90IXZFpJR3Rb8zgXT8jnLX08DM31eECZHnRzFhGlOmq6WAUlqB3GKCPUCY2c4eTRXyoX LteTxrXCYoj45y/YmvlZrlonBNjPBAyHiO/LNz+V7fZtNsN7N/XGrnLbcdNfNd+SD1ENmbLJ 8RvyymxguTyB/ka9JdjHHIoQEJ6L166B3hhfCHpt8iC0GPZkti9IMl0NoJ029jJm3Jq1qEce EBn5H5QMGn6Fq64iXwTsO1TMNUwpWx8pjvV7wVIxjI8ZABEBAAHCwF8EGAECAAkFAlWABsQC GwwACgkQvOWMjOQfMt9N6Af8CS2CTrMQFdhkGEtBXmL4ifD8UHFkBRBGmM8ZL2fWUBTZXT8m rdRMOK6tcPnKWaCvWvKr0knt970j/DyAgFmH8hgOi3yctigFecVDjjilAeCJMq38s1tYKYiL DbBdHWtdkA9uHZwq3lfd3QxcEEO3QamQF+dO7h8gAOXlG+po87Hm+E0wz4swIB8+S37Jzrx9 uu0LSFDfJCTK+TIKGa5Un8LxPxyq9WnnNDh72zK7BiRidk/s40KcNod83NM4Hn/sbGfyLa8s S0F3ME0S+ocSMOiu/ZHHOiwpLYNbwTJ7stZxGsrguWeT9P+amxbA/YlK95LedstwvN+WcHZ7 d++Arg==
Message-ID: <db0f70f4-7d9c-b81e-9e57-35295eeedb19@wizmail.org>
Date: Wed, 14 Nov 2018 23:28:43 +0000
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:60.0) Gecko/20100101 Thunderbird/60.3.0
MIME-Version: 1.0
In-Reply-To: <1b32eeb225568185b52691d684ea59e0b2f9f26d.camel@aegee.org>
Content-Type: text/plain; charset=utf-8
Content-Language: en-US
Content-Transfer-Encoding: 8bit
X-Pcms-Received-Sender: vgate18.wizint.net ([2a00:1940:107::1:2f:0] helo=lap.dom.ain) with esmtpsa
Archived-At: <https://mailarchive.ietf.org/arch/msg/dcrup/JfOiIgvhxp_V3W1JeoQWKpanU-U>
Subject: Re: [Dcrup] DKIM-Signing hashes with Ed25519
X-BeenThere: dcrup@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: DKIM Crypto Update <dcrup.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dcrup>, <mailto:dcrup-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dcrup/>
List-Post: <mailto:dcrup@ietf.org>
List-Help: <mailto:dcrup-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dcrup>, <mailto:dcrup-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 14 Nov 2018 23:28:52 -0000

On 14/11/2018 21:44, Дилян Палаузов wrote:
> I asked at https://gitlab.com/gnutls/gnutls/issues/613 to enhance
> GnuTLs to sign per RFC 8463.  The answer is, that there is a pure
> EdDSA, which can sign data.  A pre-hashed-EdDSA version, which can sign
> hashes, is not standardized.

It certainly confused me when I was implementing it for Exim.  Despite
being called "pure" it does a hash on the data, and signs the hash.
You can't sign raw data, and you can't sign a separately computed
hash.  What DKIM requires is that you precompute a sha256 hash
(just like you would for RSA-signing) and then feed it to this
(oddly-named) "pure" routine for signing.

So you get the signature of a SHA512-hash of a SHA256-hash of the
headers.  Yup, hashed twice.  No, I don't know why.

But you _can_ do it with the provided interfaces in both GnuTLS and
OpenSSL.
-- 
Cheers,
  Jeremy


From nobody Wed Nov 14 15:39:31 2018
Return-Path: <ietf-dane@dukhovni.org>
X-Original-To: dcrup@ietfa.amsl.com
Delivered-To: dcrup@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id DDD60130E73 for <dcrup@ietfa.amsl.com>; Wed, 14 Nov 2018 15:39:29 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -4.2
X-Spam-Level: 
X-Spam-Status: No, score=-4.2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, RCVD_IN_DNSWL_MED=-2.3, SPF_PASS=-0.001, URIBL_BLOCKED=0.001] autolearn=ham autolearn_force=no
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id robBFDTD8UYn for <dcrup@ietfa.amsl.com>; Wed, 14 Nov 2018 15:39:27 -0800 (PST)
Received: from straasha.imrryr.org (straasha.imrryr.org [100.2.39.101]) (using TLSv1.2 with cipher ADH-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 3794D130E4B for <dcrup@ietf.org>; Wed, 14 Nov 2018 15:39:27 -0800 (PST)
Received: from [192.168.1.161] (unknown [192.168.1.161]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by straasha.imrryr.org (Postfix) with ESMTPSA id 69756324173 for <dcrup@ietf.org>; Wed, 14 Nov 2018 18:39:25 -0500 (EST)
Content-Type: text/plain; charset=utf-8
Mime-Version: 1.0 (Mac OS X Mail 12.1 \(3445.101.1\))
From: Viktor Dukhovni <ietf-dane@dukhovni.org>
In-Reply-To: <1b32eeb225568185b52691d684ea59e0b2f9f26d.camel@aegee.org>
Date: Wed, 14 Nov 2018 18:39:24 -0500
Content-Transfer-Encoding: quoted-printable
Reply-To: dcrup@ietf.org
Message-Id: <E4DE9D5E-E0A2-4D28-A674-06885194BDEA@dukhovni.org>
References: <1b32eeb225568185b52691d684ea59e0b2f9f26d.camel@aegee.org>
To: dcrup@ietf.org
X-Mailer: Apple Mail (2.3445.101.1)
Archived-At: <https://mailarchive.ietf.org/arch/msg/dcrup/KuQxralsKqQI0rHNiyZKtOFgdIE>
Subject: Re: [Dcrup] DKIM-Signing hashes with Ed25519
X-BeenThere: dcrup@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: DKIM Crypto Update <dcrup.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dcrup>, <mailto:dcrup-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dcrup/>
List-Post: <mailto:dcrup@ietf.org>
List-Help: <mailto:dcrup-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dcrup>, <mailto:dcrup-request@ietf.org?subject=subscribe>
X-List-Received-Date: Wed, 14 Nov 2018 23:39:30 -0000

> On Nov 14, 2018, at 4:44 PM, =D0=94=D0=B8=D0=BB=D1=8F=D0=BD =
=D0=9F=D0=B0=D0=BB=D0=B0=D1=83=D0=B7=D0=BE=D0=B2 =
<dilyan.palauzov@aegee.org> wrote:
>=20
> At https://www.ietf.org/mail-archive/web/dcrup/current/msg00501.html =
is
> stated, that GnuTLS does ED25519 signing of data, but not of hashed =
=E2=80=94
> ED25519 is not meant for the latter.  The answer at=20
> https://www.ietf.org/mail-archive/web/dcrup/current/msg00502.html =
says,
> that =E2=80=9Cif the spec says there=E2=80=99s a pure version that =
doesn=E2=80=99t hash its
> input, the library would implement it.=E2=80=9D

Suppose a + b =3D c, then we also say: a =3D c - b.

This just boils down hair-splitting as to what is the message, and what
is the signature function.

Traditionally, you take a message M and sign it with a signature =
function
that employs a signing algorithm S combined with a hash function H:

  let f =3D Sign(S, H, keys)
      signature =3D f(metadata || M)

Now with Ed25519 the signature primitive signs data directly, it is not
parametrized by a hash algorithm.  So the RFC boils down to:

	let f =3D Ed25519(keys)
	    signature =3D f(metadata || H(M))

i.e. instead of signing the "message" M, you sign the message H(M).
That's it.  All that changes is whether the hash H is part of the
signature function, or is used separately to prepare the message.

In general uses of Ed25519, whether to pre-hash the message or
not is an implementation choice.  The pure construction with
no pre-hash has better collision-resistance than you get with
pre-hashing, but it requires the whole message to be in memory
at the same time, so is only well-suited to sufficiently short
messages:

  https://tools.ietf.org/html/rfc8032#section-4

--=20
	Viktor.


From nobody Wed Nov 14 20:37:12 2018
Return-Path: <johnl@iecc.com>
X-Original-To: dcrup@ietfa.amsl.com
Delivered-To: dcrup@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 7CB66128A5C for <dcrup@ietfa.amsl.com>; Wed, 14 Nov 2018 20:37:11 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.752
X-Spam-Level: 
X-Spam-Status: No, score=-1.752 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, HEADER_FROM_DIFFERENT_DOMAINS=0.249, SPF_PASS=-0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1536-bit key) header.d=iecc.com header.b=U+9GUae5; dkim=pass (1536-bit key) header.d=taugh.com header.b=jzbcQIt4
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id jXg1kwC_QyEn for <dcrup@ietfa.amsl.com>; Wed, 14 Nov 2018 20:37:10 -0800 (PST)
Received: from gal.iecc.com (gal.iecc.com [IPv6:2001:470:1f07:1126:0:43:6f73:7461]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 43FE31286E3 for <dcrup@ietf.org>; Wed, 14 Nov 2018 20:37:10 -0800 (PST)
Received: (qmail 61866 invoked from network); 15 Nov 2018 04:37:07 -0000
DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=iecc.com; h=date:message-id:from:to:cc:subject:in-reply-to:mime-version:content-type:content-transfer-encoding; s=f1a7.5becf7f3.k1811; bh=Ggqp7IyYF/OAQosnMzAbptuEQFDnIkQBFwIfN6QjNP8=; b=U+9GUae5dgp6Kijp/LUjbtMLS+vw90xtc922xJc4swpQEhzQEcXHXtHkQa6pgdWB+V2Qe+jvnvJ8J5ERZqjW1VKjIZpG8Imf7YvpYvA6WORjI5DlAtlCe6L6qUISqaJtBTftMgQcyAdkoO8BDuaaxAmXtFRmraR1OPunIpeDhoYK9YIDMnBm7EiqXN39QDAgAjibz/Uui3rJz3K34s05belOp4x8kRnP4xutdxy16dNQPgsWLvhpTS9pfnupU6HL
DKIM-Signature: v=1; a=rsa-sha256; c=simple; d=taugh.com; h=date:message-id:from:to:cc:subject:in-reply-to:mime-version:content-type:content-transfer-encoding; s=f1a7.5becf7f3.k1811; bh=Ggqp7IyYF/OAQosnMzAbptuEQFDnIkQBFwIfN6QjNP8=; b=jzbcQIt4rM2M4+JPIAspl2HTwC40/1bq6mjtifoDHgiiRQHnaWXLd8f7zsqX/PGSVBteYNPurL8V6UiHzBXV4LGx3CfUi+6Ae+iel2efTLPulGaieOoqlc0T4zix2q6dHhCAKe7HZ7QWscptfH6LLxeOFcSArboZhgkGg+GmzIGhuGquGYeyb40Oyh1Qsdnv7V7QQXTiXLSycxTBynev0PuqwoxjkH3lOLzyrC908JN89qaai3ra0rEUKL2gEjAz
Received: from ary.qy ([IPv6:2001:470:1f07:1126::78:696d:6170]) by imap.iecc.com ([IPv6:2001:470:1f07:1126::78:696d:6170]) with ESMTP via TCP6; 15 Nov 2018 04:37:07 -0000
Received: by ary.qy (Postfix, from userid 501) id 3FA5920088D849; Wed, 14 Nov 2018 23:37:06 -0500 (EST)
Date: 14 Nov 2018 23:37:06 -0500
Message-Id: <20181115043707.3FA5920088D849@ary.qy>
From: "John Levine" <johnl@taugh.com>
To: dcrup@ietf.org
Cc: jgh@wizmail.org
In-Reply-To: <db0f70f4-7d9c-b81e-9e57-35295eeedb19@wizmail.org>
Organization: Taughannock Networks
X-Headerized: yes
Mime-Version: 1.0
Content-type: text/plain; charset=utf-8
Content-transfer-encoding: 8bit
Archived-At: <https://mailarchive.ietf.org/arch/msg/dcrup/Ms4cQqHzhW4Hi9SnHlqEnliAVBc>
Subject: Re: [Dcrup] DKIM-Signing hashes with Ed25519
X-BeenThere: dcrup@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: DKIM Crypto Update <dcrup.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dcrup>, <mailto:dcrup-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dcrup/>
List-Post: <mailto:dcrup@ietf.org>
List-Help: <mailto:dcrup-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dcrup>, <mailto:dcrup-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 15 Nov 2018 04:37:11 -0000

In article <db0f70f4-7d9c-b81e-9e57-35295eeedb19@wizmail.org> you write:
>So you get the signature of a SHA512-hash of a SHA256-hash of the
>headers.  Yup, hashed twice.  No, I don't know why.

We asked around and the advice we got was that the pure version of
ed25519 was likely to be much more widely implemented than HashEdDSA.  We found
the single and double hash thing pretty confusing too, but as I read
RFC8032, PureEdDSA does *not* do the second sha-512 hash while HashEdDSA does.

By the way, have you checked that your code validates the ed25519
example signature in RFC 8463?  I don't think hashing twice will get
the right result.  You might also see whether it interoperates with Scott
Kittermans python DKIM module.

R's,
John



From nobody Thu Nov 15 02:00:42 2018
Return-Path: <jgh@wizmail.org>
X-Original-To: dcrup@ietfa.amsl.com
Delivered-To: dcrup@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id B707512D4ED for <dcrup@ietfa.amsl.com>; Thu, 15 Nov 2018 02:00:40 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -2
X-Spam-Level: 
X-Spam-Status: No, score=-2 tagged_above=-999 required=5 tests=[BAYES_00=-1.9,  DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1] autolearn=ham autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (1024-bit key) header.d=wizmail.org
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id zFIKpERqufno for <dcrup@ietfa.amsl.com>; Thu, 15 Nov 2018 02:00:35 -0800 (PST)
Received: from wizmail.org (wizmail.org [IPv6:2a00:1940:107::2:0:0]) (using TLSv1.2 with cipher AECDH-AES256-SHA (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 4983E1252B7 for <dcrup@ietf.org>; Thu, 15 Nov 2018 02:00:34 -0800 (PST)
ARC-Seal: i=1; cv=none; a=rsa-sha256; d=wizmail.org; s=r201803; t=1542276035;  b=QGX1I74YXlnZH0cPlMwHU1mxaevOAlDZgV6NbSkBxLT4gV+UdMd97RheKD0g1BlSOyROtJ8ayT 4Ad+eNl9l+oE9HnMkANsvo2J7gK+eVzTlmMneCRBrt4jZqX4igtlm+X5winwB19pUPj6IIpSC4 OFnaKEnEaZoP2NZlnciSgtQ=;
ARC-Authentication-Results: i=1; wizmail.org; iprev=fail smtp.remote-ip=46.33.133.68; auth=pass (PLAIN) smtp.auth=jgh@wizmail.org
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed; d=wizmail.org; s=r201803;  t=1542276035;  bh=/rVX5K0U+QUxYwfNBdmJrf5F1MlYs5HcsM/u3kGUgFg=; h=Content-Transfer-Encoding:Content-Type:In-Reply-To:MIME-Version:Date: Message-ID:From:References:To:Subject:DKIM-Signature; b=fpkRk8WHN9VJYXoW6e8ujIsVWVF86JtxQpwDwYD4q/s1uUYy5C5iOCI1lUHgxMa2mOTPHbIDTc pNPRtinJ7086bBxcSPLEF4PbCUSP/m5qqq/RMuXg52aLa/N14OuOJkDDTakfMOqRy3zJskma83 LgD3JCiWuXDhx8r1gBs+JZQ=;
DKIM-Signature: v=1; a=rsa-sha256; q=dns/txt; c=relaxed/relaxed; d=wizmail.org ; s=r201803; h=Content-Transfer-Encoding:Content-Type:In-Reply-To: MIME-Version:Date:Message-ID:From:References:To:Subject:From:Sender:Reply-To: Subject:Date:Message-ID:To:Cc:MIME-Version:Content-Type: Content-Transfer-Encoding:Content-ID:Content-Description:Resent-Date: Resent-From:Resent-Sender:Resent-To:Resent-Cc:Resent-Message-ID:In-Reply-To: References:List-Id:List-Help:List-Unsubscribe:List-Subscribe:List-Post: List-Owner:List-Archive; bh=SkTUE4vxRUTbyWrs0o3mqusuNfxyI4VoigxZnJKMc6c=; b=t 7NSkw3UwrlEh0p0GEGCwXioLiUB+p1HQwQVpX4tDC3UKc8GnCUuxddMdKx8ZQs4rxBY6WKkTMq+3z DDrd4fq6Dm7C6P2lRJ4o0hF0XGgycnl6fYtDjo3sbh4SNUvkwqr1Z/dWF7zohkfHaICr5VCKW8mdz LtgpnqkKhLTJP5ZA=;
Authentication-Results: wizmail.org; iprev=fail smtp.remote-ip=46.33.133.68; auth=pass (PLAIN) smtp.auth=jgh@wizmail.org
Received: from [46.33.133.68] (helo=lap.dom.ain) from_AS 51561 by wizmail.org with esmtpsa (TLSv1.2:ECDHE-RSA-AES128-GCM-SHA256:128) (Exim 4.91.116) id 1gNERs-0000vp-Rb for dcrup@ietf.org (return-path <jgh@wizmail.org>); Thu, 15 Nov 2018 10:00:33 +0000
To: dcrup@ietf.org
References: <20181115043707.3FA5920088D849@ary.qy>
From: Jeremy Harris <jgh@wizmail.org>
Openpgp: preference=signencrypt
Autocrypt: addr=jgh@wizmail.org; prefer-encrypt=mutual; keydata= xsBNBFWABsQBCADTFfb9EHGGiDel/iFzU0ag1RuoHfL/09z1y7iQlLynOAQTRRNwCWezmqpD p6zDFOf1Ldp0EdEQtUXva5g2lm3o56o+mnXrEQr11uZIcsfGIck7yV/y/17I7ApgXMPg/mcj ifOTM9C7+Ptghf3jUhj4ErYMFQLelBGEZZifnnAoHLOEAH70DENCI08PfYRRG6lZDB09nPW7 vVG8RbRUWjQyxQUWwXuq4gQohSFDqF4NE8zDHE/DgPJ/yFy+wFr2ab90DsE7vOYb42y95keK tTBp98/Y7/2xbzi8EYrXC+291dwZELMHnYLF5sO/fDcrDdwrde2cbZ+wtpJwtSYPNvVxABEB AAHNJkplcmVteSBIYXJyaXMgKG5vbmUpIDxqZ2hAd2l6bWFpbC5vcmc+wsB7BBMBAgAlAhsD BgsJCAcDAgYVCAIJCgsEFgIDAQIeAQIXgAUCVYAYBAIZAQAKCRC85YyM5B8y34iFB/9wozIY RogNdY1aejFFixb6++y4b1riyjMvWEULeEzDlQ0lMT6Z3PxXhZILD4y4aP7Kzx0ozXa5qaKy 41EAPKQoPipnRAH04QytJbIERvz8Tot/LeCVKUc0G9DVxOPBD03czTgqgz4EjV2qvnLF+rTU 0YBevrNCluKosGSd+3RvLWVu0hBhn9pELKfXJNSQXZb+TpHDhSDZ/gCrglBEOhA6YWbDb/4g z+5TFKdk+B++iAQZSHv7zISabjN+BPYgI47A+MU4JycoXaAUnMc0l5ba6fGNaIrzruE4aAZr lP5o+7mlU9Mm0QJqdqYxYPAiplJGrZv+YXH1fp5ueEK3l+NGzsBNBFWABsQBCADphLHaKToR uR/E7THerBiCjDatwCaETOKOTY2zRBQpaQ32p/F2XIGLS8Cc27+grZSKQ6ZX0ZN47O+AFyFH F8DH90IXZFpJR3Rb8zgXT8jnLX08DM31eECZHnRzFhGlOmq6WAUlqB3GKCPUCY2c4eTRXyoX LteTxrXCYoj45y/YmvlZrlonBNjPBAyHiO/LNz+V7fZtNsN7N/XGrnLbcdNfNd+SD1ENmbLJ 8RvyymxguTyB/ka9JdjHHIoQEJ6L166B3hhfCHpt8iC0GPZkti9IMl0NoJ029jJm3Jq1qEce EBn5H5QMGn6Fq64iXwTsO1TMNUwpWx8pjvV7wVIxjI8ZABEBAAHCwF8EGAECAAkFAlWABsQC GwwACgkQvOWMjOQfMt9N6Af8CS2CTrMQFdhkGEtBXmL4ifD8UHFkBRBGmM8ZL2fWUBTZXT8m rdRMOK6tcPnKWaCvWvKr0knt970j/DyAgFmH8hgOi3yctigFecVDjjilAeCJMq38s1tYKYiL DbBdHWtdkA9uHZwq3lfd3QxcEEO3QamQF+dO7h8gAOXlG+po87Hm+E0wz4swIB8+S37Jzrx9 uu0LSFDfJCTK+TIKGa5Un8LxPxyq9WnnNDh72zK7BiRidk/s40KcNod83NM4Hn/sbGfyLa8s S0F3ME0S+ocSMOiu/ZHHOiwpLYNbwTJ7stZxGsrguWeT9P+amxbA/YlK95LedstwvN+WcHZ7 d++Arg==
Message-ID: <76921702-e715-04fe-9c3e-4793d84125a7@wizmail.org>
Date: Thu, 15 Nov 2018 10:00:31 +0000
User-Agent: Mozilla/5.0 (X11; Linux x86_64; rv:60.0) Gecko/20100101 Thunderbird/60.3.0
MIME-Version: 1.0
In-Reply-To: <20181115043707.3FA5920088D849@ary.qy>
Content-Type: text/plain; charset=utf-8
Content-Language: en-US
Content-Transfer-Encoding: 8bit
X-Pcms-Received-Sender: [46.33.133.68] (helo=lap.dom.ain) with esmtpsa
Archived-At: <https://mailarchive.ietf.org/arch/msg/dcrup/pKsJnWiextHCMy4RN4iSYusZTf4>
Subject: Re: [Dcrup] DKIM-Signing hashes with Ed25519
X-BeenThere: dcrup@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: DKIM Crypto Update <dcrup.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dcrup>, <mailto:dcrup-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dcrup/>
List-Post: <mailto:dcrup@ietf.org>
List-Help: <mailto:dcrup-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dcrup>, <mailto:dcrup-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 15 Nov 2018 10:00:41 -0000

On 15/11/2018 04:37, John Levine wrote:
>   You might also see whether it interoperates with Scott
> Kittermans python DKIM module.

Scott and I verified interworking, back in February:

https://www.ietf.org/mail-archive/web/dcrup/current/msg00668.html

-- 
Cheers,
  Jeremy


From nobody Thu Nov 15 05:18:54 2018
Return-Path: <rsalz@akamai.com>
X-Original-To: dcrup@ietfa.amsl.com
Delivered-To: dcrup@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 4F0A7130DF5 for <dcrup@ietfa.amsl.com>; Thu, 15 Nov 2018 05:18:46 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -1.172
X-Spam-Level: 
X-Spam-Status: No, score=-1.172 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIMWL_WL_HIGH=-0.47, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, KHOP_DYNAMIC=1.999, RCVD_IN_DNSWL_LOW=-0.7, SPF_PASS=-0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=akamai.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id kj5EUyUvIID9 for <dcrup@ietfa.amsl.com>; Thu, 15 Nov 2018 05:18:45 -0800 (PST)
Received: from mx0b-00190b01.pphosted.com (mx0b-00190b01.pphosted.com [IPv6:2620:100:9005:57f::1]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 404FE130E51 for <dcrup@ietf.org>; Thu, 15 Nov 2018 05:18:45 -0800 (PST)
Received: from pps.filterd (m0122331.ppops.net [127.0.0.1]) by mx0b-00190b01.pphosted.com (8.16.0.27/8.16.0.27) with SMTP id wAFDGqSn020448; Thu, 15 Nov 2018 13:18:42 GMT
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=akamai.com; h=from : to : subject : date : message-id : references : in-reply-to : content-type : content-id : content-transfer-encoding : mime-version; s=jan2016.eng; bh=M7CYoMCIwLTaLlKGBe0XndPSsOfEsYt1nFZXVXMAaHI=; b=glgYe+KmpPjKPSdTsTMvHuCmDtDYhSwwoowDa/8v4B2h1ZluJRpunwvbUf2eZd/g7Ik5 6g6DXEbbLv+Rh2iVYxOKkxGXR0xXSedGaN50++MNz/0HNc9RJI4C85NYnuSWaO0lrtWZ Le1OLqDDThpffAxE78kl0WiDJp9Jp24kDmTNsPMa8+jPQOhYJgo7WO7RMqYOR5HXczEu P0PoF6dJUopcBAEOLQTFmeb/OKQk4g13icAi2o74VxTbgpf4uwOCRJAgTkClv7+0XCHa fpZbfKLwxC6mrODhIJy0juo3NQEKDExzUG6a0v44my4Z21ttzOqvhUYMwGbk8CmIlzhT dg== 
Received: from prod-mail-ppoint2 (prod-mail-ppoint2.akamai.com [184.51.33.19]) by mx0b-00190b01.pphosted.com with ESMTP id 2ns7tr09jg-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-GCM-SHA384 bits=256 verify=NOT); Thu, 15 Nov 2018 13:18:42 +0000
Received: from pps.filterd (prod-mail-ppoint2.akamai.com [127.0.0.1]) by prod-mail-ppoint2.akamai.com (8.16.0.21/8.16.0.21) with SMTP id wAFD5YPZ005881; Thu, 15 Nov 2018 08:18:42 -0500
Received: from email.msg.corp.akamai.com ([172.27.25.33]) by prod-mail-ppoint2.akamai.com with ESMTP id 2nr7j7qxnn-1 (version=TLSv1.2 cipher=ECDHE-RSA-AES256-SHA384 bits=256 verify=NOT); Thu, 15 Nov 2018 08:18:42 -0500
Received: from USTX2EX-DAG1MB1.msg.corp.akamai.com (172.27.27.101) by ustx2ex-dag1mb3.msg.corp.akamai.com (172.27.27.103) with Microsoft SMTP Server (TLS) id 15.0.1365.1; Thu, 15 Nov 2018 07:18:41 -0600
Received: from USTX2EX-DAG1MB1.msg.corp.akamai.com ([172.27.6.131]) by ustx2ex-dag1mb1.msg.corp.akamai.com ([172.27.6.131]) with mapi id 15.00.1365.000; Thu, 15 Nov 2018 07:18:40 -0600
From: "Salz, Rich" <rsalz@akamai.com>
To: Jeremy Harris <jgh@wizmail.org>, "dcrup@ietf.org" <dcrup@ietf.org>
Thread-Topic: [Dcrup] DKIM-Signing hashes with Ed25519
Thread-Index: AQHUfGNCf0EUhDDWiEqbbYECvM8ymqVQT16AgABWKgCAAFpcgP//44sA
Date: Thu, 15 Nov 2018 13:18:40 +0000
Message-ID: <DB8F6651-1343-4740-821B-B75A64D2B58E@akamai.com>
References: <20181115043707.3FA5920088D849@ary.qy> <76921702-e715-04fe-9c3e-4793d84125a7@wizmail.org>
In-Reply-To: <76921702-e715-04fe-9c3e-4793d84125a7@wizmail.org>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach: 
X-MS-TNEF-Correlator: 
user-agent: Microsoft-MacOutlook/10.13.0.181109
x-ms-exchange-messagesentrepresentingtype: 1
x-ms-exchange-transport-fromentityheader: Hosted
x-originating-ip: [172.19.32.206]
Content-Type: text/plain; charset="utf-8"
Content-ID: <D1097B722DFABE46A0B19D8D70AFC741@akamai.com>
Content-Transfer-Encoding: base64
MIME-Version: 1.0
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:, , definitions=2018-11-15_07:, , signatures=0
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 suspectscore=0 malwarescore=0 phishscore=0 bulkscore=0 spamscore=0 mlxscore=0 mlxlogscore=833 adultscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.0.1-1810050000 definitions=main-1811150119
X-Proofpoint-Virus-Version: vendor=fsecure engine=2.50.10434:, , definitions=2018-11-15_09:, , signatures=0
X-Proofpoint-Spam-Details: rule=notspam policy=default score=0 priorityscore=1501 malwarescore=0 suspectscore=0 phishscore=0 bulkscore=0 spamscore=0 clxscore=1011 lowpriorityscore=0 mlxscore=0 impostorscore=0 mlxlogscore=835 adultscore=0 classifier=spam adjust=0 reason=mlx scancount=1 engine=8.0.1-1810050000 definitions=main-1811150121
Archived-At: <https://mailarchive.ietf.org/arch/msg/dcrup/pIBfN7f7aN0xppUYbaQh0GddbdU>
Subject: Re: [Dcrup] DKIM-Signing hashes with Ed25519
X-BeenThere: dcrup@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: DKIM Crypto Update <dcrup.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dcrup>, <mailto:dcrup-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dcrup/>
List-Post: <mailto:dcrup@ietf.org>
List-Help: <mailto:dcrup-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dcrup>, <mailto:dcrup-request@ietf.org?subject=subscribe>
X-List-Received-Date: Thu, 15 Nov 2018 13:18:53 -0000

VGhlIHVzZSBvZiB0aGUgdGVybSAicHVyZSIgY29tZXMgZnJvbSB0aGUgIGNyeXB0b2dyYXBoZXIg
c2lkZSBvZiB0aGUgd29ybGQsIHdoZXJlIHRoZXNlIGRldGVybWluaXN0aWMgRUNDIHNpZ25hdHVy
ZXMgd2VyZSBjcmVhdGVkLiAgSXQgaXMgY29uZnVzaW5nLiAgSnVzdCBsaWtlICJwZXJmZWN0IGZv
cndhcmQgc2VjcmVjeS4iDQoJL3IkDQogDQoNCg==


From dkim.mobiowner@gmail.com  Mon Nov 19 20:57:27 2018
Return-Path: <dkim.mobiowner@gmail.com>
X-Original-To: dcrup@ietfa.amsl.com
Delivered-To: dcrup@ietfa.amsl.com
Received: from localhost (localhost [127.0.0.1]) by ietfa.amsl.com (Postfix) with ESMTP id 773BC130DE8 for <dcrup@ietfa.amsl.com>; Mon, 19 Nov 2018 20:57:27 -0800 (PST)
X-Virus-Scanned: amavisd-new at amsl.com
X-Spam-Flag: NO
X-Spam-Score: -0.018
X-Spam-Level: 
X-Spam-Status: No, score=-0.018 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, FREEMAIL_FROM=0.001, FREEMAIL_REPLY=1, FROM_EXCESS_BASE64=0.979, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_PASS=-0.001, TVD_SPACE_RATIO=0.001, URIBL_BLOCKED=0.001] autolearn=no autolearn_force=no
Authentication-Results: ietfa.amsl.com (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail.ietf.org ([4.31.198.44]) by localhost (ietfa.amsl.com [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id I08ChnRhXrcy for <dcrup@ietfa.amsl.com>; Mon, 19 Nov 2018 20:57:26 -0800 (PST)
Received: from mail-io1-xd2e.google.com (mail-io1-xd2e.google.com [IPv6:2607:f8b0:4864:20::d2e]) (using TLSv1.2 with cipher ECDHE-RSA-AES128-GCM-SHA256 (128/128 bits)) (No client certificate requested) by ietfa.amsl.com (Postfix) with ESMTPS id 8309C128C65 for <dcrup@ietf.org>; Mon, 19 Nov 2018 20:57:26 -0800 (PST)
Received: by mail-io1-xd2e.google.com with SMTP id x6so444072ioa.9 for <dcrup@ietf.org>; Mon, 19 Nov 2018 20:57:26 -0800 (PST)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20161025;  h=mime-version:from:date:message-id:subject:to:cc; bh=L8LPtaM4bVMEgpDYdkxrk8oZzx6o89+pSRezCv1AWu4=; b=SWCUHiCr6cN7B1uH8TwiC0fQcHehBgLKlB57o8Cnh4s/l2iscs4hstDlql4qpeNatp RUygwFmDyRO2Zdjk6WfRRyN9rkxC/YmN47WKGPgoLVTJaWjGjbIOUKYCW6TW9WeudFzX 2holUZDwS2Ia/TSrPnpZ2zve+tg44ke4QXmCysYfwM8YZrrTeLC9XSo/gg5ACQqIc8O+ OdDxauCqIRJwqlXkcfUPudhJKSl5t5qWXHn113C63HlrVJ/kRv47ZTCPDTw/0zoI4Z5i c71pChGm8jdaKtZCnKY1Ablnz2N7oZdMyl0MeVnTXwTbZl2fx/Y5VrE3fAMiwfP0RLN9 44UQ==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20161025; h=x-gm-message-state:mime-version:from:date:message-id:subject:to:cc; bh=L8LPtaM4bVMEgpDYdkxrk8oZzx6o89+pSRezCv1AWu4=; b=prIFGhhHqXZXRZRiePbci96TOZxNJNNT6L7J9rJf4v+ClxReQWILMzNKn9X0jyTwmC YiLaAMr5f5QbucofxCAhkXbTvHusuLS3YlBlvJqIqIGyDVOxj7aT2lB1t4ocHH8E0P5j rZR6kIJnWDikgXfMOJMOxLCKG6oE6qWrDRPwe8AwfA0YkX95ms1lGfVGaPB9IsmoEAWa mC3bcI8JZaZ/r/KtRX+4RZpal8USK0cW00AMYZb/Rc/nobqem409GLsQVmupBUr5LECE s+WtHGVsMtZbj0SfaPcURPi+617QYJydMf8YC4I5Fct/b/0UzQCjfr4kbE1tUmY4nIB4 wiqg==
X-Gm-Message-State: AA+aEWbseBOSWye+e7m1d8pD2sN1ePq9IKeJD/0vPqDVJd98WdtPOw9G QktWwLiYID2B5GZ8/uw5XrpCLBrQBJmCKXG2uq8vkg==
X-Google-Smtp-Source: AFSGD/Ug8Jca5vdaO56BzPIvLbXnR+hpgqFynosatNxgRqGlNzsQDW5L9MCT5+mk/aCkduEnkWhR2y+Yuj4Xu56H+Zg=
X-Received: by 2002:a6b:2a05:: with SMTP id q5mr413344ioq.188.1542689385624; Mon, 19 Nov 2018 20:49:45 -0800 (PST)
MIME-Version: 1.0
From: =?UTF-8?B?6rmA7ISx7ZWc?= <dkim.mobiowner@gmail.com>
Date: Tue, 20 Nov 2018 13:49:34 +0900
Message-ID: <CAOn0jpwvdXAf-sFfib1jXYf=U=YC=sK92joYCWxKxGZ4AVcoDA@mail.gmail.com>
To: dcrup@ietf.org
Cc: SHA1 sha1RSA HaN1-CloudComputing-N1 OSIS Driver <gloomystar81@msn.com>,  "Sr SUNGHAN ENTERKHAN CO LTD KIM, DigitalObjectIdentifier" <sunghan.kim@enterkhan.com>
Content-Type: multipart/alternative; boundary="000000000000d4398d057b115c85"
Archived-At: <https://mailarchive.ietf.org/arch/msg/dcrup/rPG03dMmTM6acUHJEWoIm6IH6JI>
X-Mailman-Approved-At: Wed, 21 Nov 2018 08:09:15 -0800
Subject: [Dcrup] Mail regarding draft-ietf-dcrup-dkim-crypto
X-BeenThere: dcrup@ietf.org
X-Mailman-Version: 2.1.29
Precedence: list
List-Id: DKIM Crypto Update <dcrup.ietf.org>
List-Unsubscribe: <https://www.ietf.org/mailman/options/dcrup>, <mailto:dcrup-request@ietf.org?subject=unsubscribe>
List-Archive: <https://mailarchive.ietf.org/arch/browse/dcrup/>
List-Post: <mailto:dcrup@ietf.org>
List-Help: <mailto:dcrup-request@ietf.org?subject=help>
List-Subscribe: <https://www.ietf.org/mailman/listinfo/dcrup>, <mailto:dcrup-request@ietf.org?subject=subscribe>
X-List-Received-Date: Tue, 20 Nov 2018 08:28:30 -0000

--000000000000d4398d057b115c85
Content-Type: text/plain; charset="UTF-8"

sunghan.kim@enterkhan.com
gloomystar81@msn.com
legal-discuss@apache.org
DOI
SUNGHAN KIM

--000000000000d4398d057b115c85
Content-Type: text/html; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

<div><a href=3D"mailto:sunghan.kim@enterkhan.com" target=3D"_blank">sunghan=
.kim@enterkhan.com</a><div dir=3D"auto"><a href=3D"mailto:gloomystar81@msn.=
com" target=3D"_blank">gloomystar81@msn.com</a></div><div dir=3D"auto"><a h=
ref=3D"mailto:legal-discuss@apache.org" target=3D"_blank">legal-discuss@apa=
che.org</a></div><div dir=3D"auto">DOI</div><div dir=3D"auto">SUNGHAN KIM</=
div></div><span>
</span>

--000000000000d4398d057b115c85--

