[openpgp] Re: Updated persistent symmetric keys draft to avo id message limits

Andrew Gallagher <[email protected]> Fri, 14 Nov 2025 11:44:20 +0000
Newsgroups gmane.ietf.openpgp
Message-ID <[email protected]>
Hi, Daniel.

On 11/11/2025 18:16, Daniel Huigens wrote:
> 
> I've pushed an update to the persistent symmetric keys draft at
> https://twisstle.gitlab.io/openpgp-persistent-symmetric-keys,
> adding an HKDF step (see section 7.4) to avoid message limits,
> particularly in the case of GCM.
> 
> Let me know if it looks reasonable. Thanks!

I think this looks reasonable. :-)

I do have one other question though... can we be confident that it is OK 
to pass the empty string as additional data in the AEAD encryption mode? 
Would it be less confusing, simpler and/or more resilient to use similar 
additional data as in the SEIPDv2 packet spec?

https://gitlab.com/twisstle/openpgp-persistent-symmetric-keys/-/commit/9a62b611e6969479f58cf9552a5b16b4c55958cc

A

_______________________________________________
openpgp mailing list -- [email protected]
To unsubscribe send an email to [email protected]