[openpgp] Re: [EXTERNAL] Re: draft-ietf-openpgp-nist-b p-comp: add Category-5/P-384 combinations

Falko Strenzke <[email protected]> Tue, 07 Jul 2026 14:58:17 +0200
Newsgroups gmane.ietf.openpgp
Message-ID <[email protected]>
--===============7426468122820629198==
Content-Type: multipart/signed; micalg="sha-256";
 protocol="application/pkcs7-signature";
	boundary="=-/0LgMy5eRdzn7zCZTeNk"


--=-/0LgMy5eRdzn7zCZTeNk
Content-Type: multipart/alternative; boundary="=-/iimanWHN1KlrAvpShQg"

--=-/iimanWHN1KlrAvpShQg
Content-Type: text/plain; charset="UTF-8"
Content-Transfer-Encoding: quoted-printable

Indeed, it's possible to write a draft and then have code points assigned v=
ia the "specification required" rule for assigning code points. An RFC is n=
ot necessary for assigning code points. WG approval is also not required.

Falko


On Tue, 2026-07-07 at 10:40 +0000, Dang, Quynh H. (Fed) wrote:
>  Hi Gergely,
> =C2=A0
> One thing I know you can do is to write a short draft specifying the opti=
ons that you need/want, then ask the working group to adopt it. =C2=A0If th=
e working group does not adopt it, you could ask for only code  points (I d=
on=E2=80=99t know if the working group would approve that).
> =C2=A0
> Regards,
> Quynh.
> =C2=A0
>    **From:** NGG <[email protected]> =20
> **Sent:** Monday, July 6, 2026 11:05 AM =20
> **To:** Falko Strenzke <[email protected]> =20
> **Cc:** [email protected] =20
> **Subject:** [EXTERNAL] [openpgp] Re: draft-ietf-openpgp-nist-bp-comp: ad=
d Category-5/P-384 combinations
>=20
>=20
> =C2=A0
>         You don't often get email from [[email protected]](ma=
ilto:[email protected]). [
> Learn why this is important](https://aka.ms/LearnAboutSenderIdentificatio=
n)
>=20
>         Hello Falko,
> Thanks for the question.
> I did not mean that any single one of the existing profiles requires both=
 hybrid use and category-5 ML-* alone.
> My point is interoperability across profiles: some environments allow P-3=
84 but not P-521, while other requirements may call for category-5 ML-*. Im=
plementations may need one standardized hybrid option that works across as =
many such environments as possible.
> So the goal is not to satisfy a single profile with one algorithm choice,=
 but to define an optional P-384/category-5 combination that is broadly usa=
ble across multiple profiles and avoids private, non-standard combinations.
> Best regards, =20
> Gergely
>=20
> =C2=A0
>   Falko Strenzke <[[email protected]](mailto:[email protected])> =
ezt =C3=ADrta (id=C5=91pont: 2026. j=C3=BAl. 6., H, 16:35):
>=20
>=20
> >     Hi Gergely,
> > =20
> >   =C2=A0
> > =20
> >   On Sat, 2026-06-20 at 22:56 +0200, NGG wrote:
> > =20
> > =20
> > >   Hello OpenPGP WG, =20
> > >   =20
> > >  I would like to suggest adding the following optional combinations t=
o=C2=A0draft-ietf-openpgp-nist-bp-comp: =20
> > >   =20
> > >  * ML-KEM-1024+ECDH-NIST-P-384 =20
> > >  * ML-DSA-87+ECDSA-NIST-P-384 =20
> > >   =20
> > >  The current draft pairs the category-5 ML-* parameter sets only with=
=C2=A0P-521, while P-384 is paired with category-3. =20
> > >   =20
> > >  The motivation is compliance interoperability.=20
> > >   Some deployed profiles,=C2=A0including CNSA 1.0 and NATO FMN certif=
icate profiles,=C2=A0admit P-384 but not P-521.=20
> > >   Separately, other policies or deployment requirements=C2=A0may call=
 for the category-5 ML-* parameter sets.
> > > =20
> > > =20
> > > =20
> > > =20
> >   What requirements of profiles are you exactly referring to? CNSA does=
 not require multi-algorithm at all, so for this purpose the security level=
 of the traditional component should not matter. In fact it could simply be=
 ignored for the  signature at least.
> > =20
> >   =C2=A0
> > =20
> >   Falko
> > =20
> > =20
> > >       =20
> > >  These are not necessarily requirements imposed by the same profile, =
but=C2=A0software may need to operate across several such environments.
> > > =20
> > >   Standardized P-384/category-5 combinations would provide a useful=
=C2=A0intersection. =20
> > >   =20
> > >  There is already relevant IETF precedent: =20
> > >   =20
> > >  * The TLS ECDHE-MLKEM specification defines SecP384r1MLKEM1024. =20
> > >  * The LAMPS composite-signature specification defines id-MLDSA87-ECD=
SA-P384-SHA512. =20
> > >   =20
> > >  These combinations could be added alongside the existing P-521 varia=
nts,=C2=A0without changing or replacing them. =20
> > >   =20
> > >  Would the WG consider adding them? =20
> > >   =20
> > >  Best regards,=20
> > >   Gergely Nagy
> > > =20
> > > =20
> > > =20
> > > =20
> > > =20
> > >  ```
> _______________________________________________
> ```
>  ```
> openpgp mailing list -- [[email protected]](mailto:[email protected])
> ```
>  ```
> To unsubscribe send an email to [[email protected]](mailto:openpgp-l=
[email protected])
> ```
> =20
> >   =C2=A0
> > =20
> >   ```
> -- ```
>   MTG AG
> > =20
> >   Dr. Falko Strenzke
> > =20
> >   =C2=A0
> > =20
> >   Phone: +49 6151 8000 24
> > =20
> >   E-Mail: [
> > [email protected]](mailto:[email protected])
> > =20
> >   Web: [mtg.de](http://mtg.de/)
> > =20
> >   =C2=A0
> > =20
> >   MTG AG - Dolivostr. 11 - 64293 Darmstadt, Germany
> > =20
> >   Commercial register: HRB 8901
> > =20
> >   Register Court: Amtsgericht Darmstadt
> > =20
> >   Management Board: J=C3=BCrgen Ruf (CEO), Tamer Kemer=C3=B6z
> > =20
> >   Chairman of the Supervisory Board: Dr. Thomas Milde
> > =20
> >   =C2=A0
> > =20
> >   This email may contain confidential and/or privileged information. If=
 you are not the correct recipient or have received this email in error,
> > =20
> >   please inform the sender immediately and delete this email.Unauthoris=
ed copying or distribution of this email is not permitted.
> > =20
> >   =C2=A0
> > =20
> >   Data protection information: Privacy policy
> > =20
> >   =C2=A0
> > =20
> > =20
> > =20
> > =20
> >
>=20
>=20
>=20
>=20

--=20

```
MTG AG
Dr. Falko Strenzke

Phone: +49 6151 8000 24
E-Mail: [email protected]
Web: mtg.de

MTG AG - Dolivostr. 11 - 64293 Darmstadt, Germany
Commercial register: HRB 8901
Register Court: Amtsgericht Darmstadt
Management Board: J=C3=BCrgen Ruf (CEO), Tamer Kemer=C3=B6z
Chairman of the Supervisory Board: Dr. Thomas Milde

This email may contain confidential and/or privileged information. If you a=
re not the correct recipient or have received this email in error,
please inform the sender immediately and delete this email.Unauthorised cop=
ying or distribution of this email is not permitted.

Data protection information: Privacy policy

```

--=-/iimanWHN1KlrAvpShQg
Content-Type: text/html; charset="utf-8"
Content-Transfer-Encoding: quoted-printable

<p>Indeed, it's possible to write a draft and then have code points assigne=
d via the &quot;specification required&quot; rule for assigning code points=
. An RFC is not necessary for assigning code points. WG approval is also no=
t required.</p>
<p>Falko</p>
<p>On Tue, 2026-07-07 at 10:40 +0000, Dang, Quynh H. (Fed) wrote:</p>
<blockquote type=3D"cite">
<p>Hi Gergely,
=C2=A0
One thing I know you can do is to write a short draft specifying the option=
s that you need/want, then ask the working group to adopt it. =C2=A0If the =
working group does not adopt it, you could ask for only code  points (I don=
=E2=80=99t know if the working group would approve that).
=C2=A0
Regards,
Quynh.
=C2=A0
<strong>From:</strong> NGG <a href=3D"mailto:[email protected]"=
>[email protected]</a><br />
<strong>Sent:</strong> Monday, July 6, 2026 11:05 AM<br />
<strong>To:</strong> Falko Strenzke <a href=3D"mailto:[email protected]=
">[email protected]</a><br />
<strong>Cc:</strong> [email protected]<br />
<strong>Subject:</strong> [EXTERNAL] [openpgp] Re: draft-ietf-openpgp-nist-=
bp-comp: add Category-5/P-384 combinations</p>
<p>=C2=A0
You don't often get email from <a href=3D"mailto:[email protected].=
org">[email protected]</a>. <a href=3D"https://aka.ms/LearnAbou=
tSenderIdentification">
Learn why this is important</a></p>
<pre><code>    Hello Falko,
</code></pre>
<p>Thanks for the question.
I did not mean that any single one of the existing profiles requires both h=
ybrid use and category-5 ML-* alone.
My point is interoperability across profiles: some environments allow P-384=
 but not P-521, while other requirements may call for category-5 ML-*. Impl=
ementations may need one standardized hybrid option that works across as ma=
ny such environments as possible.
So the goal is not to satisfy a single profile with one algorithm choice, b=
ut to define an optional P-384/category-5 combination that is broadly usabl=
e across multiple profiles and avoids private, non-standard combinations.
Best regards,<br />
Gergely</p>
<p>=C2=A0
Falko Strenzke &lt;<a href=3D"mailto:[email protected]">falko.strenzke@=
mtg.de</a>&gt; ezt =C3=ADrta (id=C5=91pont: 2026. j=C3=BAl. 6., H, 16:35):<=
/p>
<blockquote type=3D"cite">
<pre><code>Hi Gergely,
</code></pre>
<p>=C2=A0</p>
<p>On Sat, 2026-06-20 at 22:56 +0200, NGG wrote:</p>
<blockquote type=3D"cite">
<p>Hello OpenPGP WG,</p>
<p>I would like to suggest adding the following optional combinations to=C2=
=A0draft-ietf-openpgp-nist-bp-comp:</p>
<ul>
<li>ML-KEM-1024+ECDH-NIST-P-384</li>
<li>ML-DSA-87+ECDSA-NIST-P-384</li>
</ul>
<p>The current draft pairs the category-5 ML-* parameter sets only with=C2=
=A0P-521, while P-384 is paired with category-3.</p>
<p>The motivation is compliance interoperability.
Some deployed profiles,=C2=A0including CNSA 1.0 and NATO FMN certificate pr=
ofiles,=C2=A0admit P-384 but not P-521.
Separately, other policies or deployment requirements=C2=A0may call for the=
 category-5 ML-* parameter sets.</p>
</blockquote>
<p>What requirements of profiles are you exactly referring to? CNSA does no=
t require multi-algorithm at all, so for this purpose the security level of=
 the traditional component should not matter. In fact it could simply be ig=
nored for the  signature at least.</p>
<p>=C2=A0</p>
<p>Falko</p>
<blockquote type=3D"cite">
<p>These are not necessarily requirements imposed by the same profile, but=
=C2=A0software may need to operate across several such environments.</p>
<p>Standardized P-384/category-5 combinations would provide a useful=C2=A0i=
ntersection.</p>
<p>There is already relevant IETF precedent:</p>
<ul>
<li>The TLS ECDHE-MLKEM specification defines SecP384r1MLKEM1024.</li>
<li>The LAMPS composite-signature specification defines id-MLDSA87-ECDSA-P3=
84-SHA512.</li>
</ul>
<p>These combinations could be added alongside the existing P-521 variants,=
=C2=A0without changing or replacing them.</p>
<p>Would the WG consider adding them?</p>
<p>Best regards,
Gergely Nagy</p>
<pre><code></code></pre>
</blockquote>
</blockquote>
<hr />
<pre><code></code></pre>
<p>openpgp mailing list -- <a href=3D"mailto:[email protected]">openpgp@ietf=
.org</a></p>
<pre><code></code></pre>
<p>To unsubscribe send an email to <a href=3D"mailto:[email protected]=
">[email protected]</a></p>
<pre><code>=20
&gt;   =C2=A0
&gt; =20
&gt;   ```
-- ```
  MTG AG
&gt; =20
&gt;   Dr. Falko Strenzke
&gt; =20
&gt;   =C2=A0
&gt; =20
&gt;   Phone: +49 6151 8000 24
&gt; =20
&gt;   E-Mail: [
&gt; [email protected]](mailto:[email protected])
&gt; =20
&gt;   Web: [mtg.de](http://mtg.de/)
&gt; =20
&gt;   =C2=A0
&gt; =20
&gt;   MTG AG - Dolivostr. 11 - 64293 Darmstadt, Germany
&gt; =20
&gt;   Commercial register: HRB 8901
&gt; =20
&gt;   Register Court: Amtsgericht Darmstadt
&gt; =20
&gt;   Management Board: J=C3=BCrgen Ruf (CEO), Tamer Kemer=C3=B6z
&gt; =20
&gt;   Chairman of the Supervisory Board: Dr. Thomas Milde
&gt; =20
&gt;   =C2=A0
&gt; =20
&gt;   This email may contain confidential and/or privileged information. I=
f you are not the correct recipient or have received this email in error,
&gt; =20
&gt;   please inform the sender immediately and delete this email.Unauthori=
sed copying or distribution of this email is not permitted.
&gt; =20
&gt;   =C2=A0
&gt; =20
&gt;   Data protection information: Privacy policy
&gt; =20
&gt;   =C2=A0
&gt; =20
&gt; =20
&gt; =20
&gt; =20
&gt;




</code></pre>
</blockquote>
<p>-- <br></p>
<div>MTG AG</div><div>Dr. Falko Strenzke</div><div><br></div><div>Phone: +4=
9 6151 8000 24</div><div>E-Mail: <a href=3D"mailto:[email protected]">f=
[email protected]</a></div><div>Web: mtg.de</div><div><br></div><div>MTG=
 AG - Dolivostr. 11 - 64293 Darmstadt, Germany</div><div>Commercial registe=
r: HRB 8901</div><div>Register Court: Amtsgericht Darmstadt</div><div>Manag=
ement Board: J=C3=BCrgen Ruf (CEO), Tamer Kemer=C3=B6z</div><div>Chairman o=
f the Supervisory Board: Dr. Thomas Milde</div><div><br></div><div>This ema=
il may contain confidential and/or privileged information. If you are not t=
he correct recipient or have received this email in error,</div><div>please=
 inform the sender immediately and delete this email.Unauthorised copying o=
r distribution of this email is not permitted.</div><div><br></div><div>Dat=
a protection information: Privacy policy</div><div><br></div>

--=-/iimanWHN1KlrAvpShQg--

--=-/0LgMy5eRdzn7zCZTeNk
Content-Type: application/pkcs7-signature; name="smime.p7s"
Content-Disposition: attachment; filename="smime.p7s"
Content-Transfer-Encoding: base64
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--=-/0LgMy5eRdzn7zCZTeNk--


--===============7426468122820629198==
Content-Type: text/plain; charset="utf-8"
MIME-Version: 1.0
Content-Transfer-Encoding: base64
Content-Disposition: inline

X19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX19fX18Kb3BlbnBncCBt
YWlsaW5nIGxpc3QgLS0gb3BlbnBncEBpZXRmLm9yZwpUbyB1bnN1YnNjcmliZSBzZW5kIGFuIGVt
YWlsIHRvIG9wZW5wZ3AtbGVhdmVAaWV0Zi5vcmcK

--===============7426468122820629198==--