Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Latest feedback from John on the limits and probabilities #2

Open
rikard-sics opened this issue Mar 1, 2022 · 1 comment
Open

Latest feedback from John on the limits and probabilities #2

rikard-sics opened this issue Mar 1, 2022 · 1 comment
Labels

Comments

@rikard-sics
Copy link
Member

Got the feedback below from John via mail. We should take it into account for future versions.

These probabilities must be acceptably low

I don’t think this is true. The advantage per key is a quite useless measure for security protocols/use cases with several keys and maybe ever several connections. Keeping these probabilities low does not increase security when advantage functions are linear.

I would not talk so much of the CA IA probabilities per key on slide 4-5. These are not very relevant measures for OSCORE, especially not OSCORE with rekeying. A relevant measure instead of IA per key would be forgery probability per forgery attempt (or perharps per number of byte sent.)

@rikard-sics rikard-sics transferred this issue from core-wg/oscore-key-update Apr 7, 2023
@rikard-sics
Copy link
Member Author

I think we need more discussions with John to resolve this

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

No branches or pull requests

1 participant