[Cryptography] The role of the IETF in security of the Internet: for or against the NSA? for or against the security of users of the net?

Dominik Schuermann dominik at dominikschuermann.de
Wed Jul 23 16:31:27 EDT 2014



On 07/23/2014 03:25 PM, Werner Koch wrote:
> On Wed, 23 Jul 2014 03:47, watsonbladd at gmail.com said:
> 
>> ECC for PGP is still not implemented by anyone other than a recent
>> in-browser(!) javascript implementation.
> 
> Nope: We released several betas of gnupg 2.1 with full rfc-6637 support.
> The Google folks are using this to test their JS code.  Unfortunately
> the integration of Curve25519 is delayed because I planned to wait for
> IETF standards.  Given that nothing happened over the last 6 months, I
> now feel forced to go forward and write an OpenPGP specific I-D on how
> to use Curve25519 and Ed25519 (mainly to get an algorithm ID for EdDSA).
> 

RFC 6637 has also been implemented in Bouncy Castle (see
http://www.bouncycastle.org/releasenotes.html). Thus, we will support it
in a future version of OpenKeychain (PGP on Android).

Standards take time...

Regards
Dominik

-------------- next part --------------
A non-text attachment was scrubbed...
Name: signature.asc
Type: application/pgp-signature
Size: 555 bytes
Desc: OpenPGP digital signature
URL: <http://www.metzdowd.com/pipermail/cryptography/attachments/20140723/ec39374a/attachment.sig>


More information about the cryptography mailing list