View Issue Details

IDProjectCategoryView StatusLast Update
000895610000-007: ProfilesSpecpublic2024-07-09 15:29
ReporterRandy Armstrong Assigned ToPaul Hunkar  
PrioritynormalSeverityminorReproducibilityalways
Status assignedResolutionreopened 
Product Version1.05.02 RC1 
Target Version1.05.03 RC1 
Summary0008956: SymmetricSignatureAlgorithm_Poly1305 is a non-standard algorithm
Description

Using Poly1305 on its own is not standard and potential security risk.
Recommend using ChaCha20Poly1305 with 0 length encrypted data for Sign only user cases.

TagsNo tags attached.
Commit Version
Fix Due Date

Relationships

related to 0009343 closedRandy Armstrong 10000-006: Mappings Deprecate ECC Support in 1.04 
related to 0009638 resolvedRandy Armstrong 10000-006: Mappings Errata required for 1.04 to allow ECC algorithms 
related to 0009452 assignedPaul Hunkar 10000-007: Profiles LegacySequenceNumbers for all ECC profiles have changed in ProfileReporting 

Activities

Randy Armstrong

2023-05-10 22:38

administrator   ~0019309

In 1.05 and 1.04 profile groups:

Deprecated SymmetricSignatureAlgorithm_Poly1305
Added SymmetricSignatureAlgorithm_ChaCha20Poly1305
Deprecated: SecurityPolicy – ECC-curve448
Added: SecurityPolicy – ECC-curve448-ChaCha20Poly1305
Deprecated: SecurityPolicy – ECC-curve25519
Added: SecurityPolicy – ECC-curve25519-ChaCha20Poly1305

Added 1.04 Errata.

Randy Armstrong

2023-05-16 15:28

administrator   ~0019377

Need to add errata statement to Amendment 4 saying see 1.05.03

Jim Luth

2024-07-02 16:11

administrator   ~0021404

Fixed with close of related issue.

Jim Luth

2024-07-02 16:16

administrator   ~0021405

Need to promote 1.04 to Release in profile database.

Jim Luth

2024-07-02 16:23

administrator   ~0021406

There are still differences between the 1.05 and 1.04 versions of the ECC Profiles that need to be fixed.

Issue History

Date Modified Username Field Change
2023-05-10 22:35 Randy Armstrong New Issue
2023-05-10 22:35 Randy Armstrong Status new => assigned
2023-05-10 22:35 Randy Armstrong Assigned To => Karl Deiretsbacher
2023-05-10 22:38 Randy Armstrong Status assigned => resolved
2023-05-10 22:38 Randy Armstrong Resolution open => fixed
2023-05-10 22:38 Randy Armstrong Note Added: 0019309
2023-05-16 15:28 Randy Armstrong Note Added: 0019377
2024-07-02 16:10 Jim Luth Relationship added related to 0009497
2024-07-02 16:11 Jim Luth Relationship added related to 0009343
2024-07-02 16:11 Jim Luth Relationship deleted related to 0009497
2024-07-02 16:11 Jim Luth Status resolved => closed
2024-07-02 16:11 Jim Luth Note Added: 0021404
2024-07-02 16:16 Jim Luth Status closed => feedback
2024-07-02 16:16 Jim Luth Resolution fixed => reopened
2024-07-02 16:16 Jim Luth Note Added: 0021405
2024-07-02 16:17 Jim Luth Status feedback => assigned
2024-07-02 16:23 Jim Luth Note Added: 0021406
2024-07-09 15:28 Jim Luth Assigned To Karl Deiretsbacher => Paul Hunkar
2024-07-09 15:28 Jim Luth Relationship added related to 0009638
2024-07-09 15:29 Jim Luth Relationship added related to 0009452