From mboxrd@z Thu Jan 1 00:00:00 1970 Return-Path: Received: from mp0 ([2001:41d0:2:4a6f::]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)) by ms11 with LMTPS id kJOAGuMkxF4RIwAA0tVLHw (envelope-from ) for ; Tue, 19 May 2020 18:26:43 +0000 Received: from aspmx1.migadu.com ([2001:41d0:2:4a6f::]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits)) by mp0 with LMTPS id 2BJtFuMkxF6aWwAA1q6Kng (envelope-from ) for ; Tue, 19 May 2020 18:26:43 +0000 Received: from lists.gnu.org (lists.gnu.org [209.51.188.17]) (using TLSv1.2 with cipher ECDHE-RSA-AES256-GCM-SHA384 (256/256 bits)) (No client certificate requested) by aspmx1.migadu.com (Postfix) with ESMTPS id 8231D940429 for ; Tue, 19 May 2020 18:26:42 +0000 (UTC) Received: from localhost ([::1]:59464 helo=lists1p.gnu.org) by lists.gnu.org with esmtp (Exim 4.90_1) (envelope-from ) id 1jb6wq-0006mo-RV for larch@yhetil.org; Tue, 19 May 2020 14:26:40 -0400 Received: from eggs.gnu.org ([2001:470:142:3::10]:41620) by lists.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_256_GCM_SHA384:256) (Exim 4.90_1) (envelope-from ) id 1jb6rO-0005rL-Iy for guix-patches@gnu.org; Tue, 19 May 2020 14:21:05 -0400 Received: from debbugs.gnu.org ([209.51.188.43]:39373) by eggs.gnu.org with esmtps (TLS1.2:ECDHE_RSA_AES_128_GCM_SHA256:128) (Exim 4.90_1) (envelope-from ) id 1jb6rO-0008Uc-9m for guix-patches@gnu.org; Tue, 19 May 2020 14:21:02 -0400 Received: from Debian-debbugs by debbugs.gnu.org with local (Exim 4.84_2) (envelope-from ) id 1jb6rO-0001xt-6I for guix-patches@gnu.org; Tue, 19 May 2020 14:21:02 -0400 X-Loop: help-debbugs@gnu.org Subject: [bug#41382] [PATCH 0/6] Allow for a cryptographic hash function migration Resent-From: Leo Famulari Original-Sender: "Debbugs-submit" Resent-CC: guix-patches@gnu.org Resent-Date: Tue, 19 May 2020 18:21:02 +0000 Resent-Message-ID: Resent-Sender: help-debbugs@gnu.org X-GNU-PR-Message: followup 41382 X-GNU-PR-Package: guix-patches X-GNU-PR-Keywords: patch To: Marius Bakke Cc: 41382@debbugs.gnu.org, Ludovic =?UTF-8?Q?Court=C3=A8s?= Received: via spool by 41382-submit@debbugs.gnu.org id=B41382.15899124117454 (code B ref 41382); Tue, 19 May 2020 18:21:02 +0000 Received: (at 41382) by debbugs.gnu.org; 19 May 2020 18:20:11 +0000 Received: from localhost ([127.0.0.1]:50916 helo=debbugs.gnu.org) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1jb6qY-0001wA-Vn for submit@debbugs.gnu.org; Tue, 19 May 2020 14:20:11 -0400 Received: from out4-smtp.messagingengine.com ([66.111.4.28]:49571) by debbugs.gnu.org with esmtp (Exim 4.84_2) (envelope-from ) id 1jb6qX-0001vv-O9 for 41382@debbugs.gnu.org; Tue, 19 May 2020 14:20:09 -0400 Received: from compute2.internal (compute2.nyi.internal [10.202.2.42]) by mailout.nyi.internal (Postfix) with ESMTP id A9A555C01AA; Tue, 19 May 2020 14:20:04 -0400 (EDT) Received: from mailfrontend2 ([10.202.2.163]) by compute2.internal (MEProxy); Tue, 19 May 2020 14:20:04 -0400 DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=famulari.name; h=date:from:to:cc:subject:message-id:references:mime-version :content-type:in-reply-to; s=mesmtp; bh=Fqyynu7rkZhhrkDiQOJ2D+6D KXYN/+yJ7Vv/3nP0M9A=; b=vmWlUFzEzlLr6UbN+4sXA2aLAZmNoEysG1njeIoj 7QwP43WiAOITxa681wEHvEXOzCoardp9V8abZoB3tKUzMv4Oha7Oe6BvpDRXdYJI rspqRaYd0AxPk6t7Aj4tFMkRWeazEykvr7Yk5RyHVi9OCtCodxXDbv5itAecT1iK hAk= DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d= messagingengine.com; h=cc:content-type:date:from:in-reply-to :message-id:mime-version:references:subject:to:x-me-proxy :x-me-proxy:x-me-sender:x-me-sender:x-sasl-enc; s=fm2; bh=Fqyynu 7rkZhhrkDiQOJ2D+6DKXYN/+yJ7Vv/3nP0M9A=; b=V4t/dQSu2Gjf5SQBNTvNfZ nZh4bGWnA3pP/ahT66CqlHEjuIHMMXKNbYlK0Oif+geRoUw8G7PlNj5ASzAOiwa+ kayx/2VGCNFv2usm1cmKGzzdsEQeBCC7EtG5kohgQ5KwRv0V1HIAVR789oL0b1jh V/GXOvIjHxGG8tYeK4A7zBRIuWzutVWZgbmdl2DHolNAJRmzYOeA5/IOmyTQi2YG 779pbFqXw6s3DjJVBTMuqzArcG/xHSNk8y1uKXV4OYuSIjPPFkpmQokzx4ya0s6t DbLxyy8TzLQUu3KspB1OoAI4lfXlh++oacxXFeRrqar13r8DRQUh1Mk+iUpn+kJQ == X-ME-Sender: X-ME-Proxy-Cause: gggruggvucftvghtrhhoucdtuddrgeduhedruddtjedguddvvdcutefuodetggdotefrod ftvfcurfhrohhfihhlvgemucfhrghsthforghilhdpqfgfvfdpuffrtefokffrpgfnqfgh necuuegrihhlohhuthemuceftddtnecusecvtfgvtghiphhivghnthhsucdlqddutddtmd enucfjughrpeffhffvuffkfhggtggujgesghdtreertddtvdenucfhrhhomhepnfgvohcu hfgrmhhulhgrrhhiuceolhgvohesfhgrmhhulhgrrhhirdhnrghmvgeqnecuggftrfgrth htvghrnhepudekveegteekleetgfeitdejgfejkeffudethedvhfeukeduleeikeejfeeh ffetnecukfhppeejiedruddvgedrudefkedrieefnecuvehluhhsthgvrhfuihiivgeptd enucfrrghrrghmpehmrghilhhfrhhomheplhgvohesfhgrmhhulhgrrhhirdhnrghmvg X-ME-Proxy: Received: from localhost (c-76-124-138-63.hsd1.pa.comcast.net [76.124.138.63]) by mail.messagingengine.com (Postfix) with ESMTPA id 3F848306643E; Tue, 19 May 2020 14:20:04 -0400 (EDT) Date: Tue, 19 May 2020 14:20:01 -0400 From: Leo Famulari Message-ID: <20200519182001.GA19528@jasmine.lan> References: <20200518213116.23978-1-ludo@gnu.org> <871rnggf4d.fsf@gnu.org> <87wo57reil.fsf@devup.no> MIME-Version: 1.0 Content-Type: multipart/signed; micalg=pgp-sha256; protocol="application/pgp-signature"; boundary="/04w6evG8XlLl3ft" Content-Disposition: inline In-Reply-To: <87wo57reil.fsf@devup.no> X-Spam-Score: -0.7 (/) X-BeenThere: debbugs-submit@debbugs.gnu.org X-Mailman-Version: 2.1.18 Precedence: list X-Spam-Score: -1.7 (-) X-BeenThere: guix-patches@gnu.org List-Id: List-Unsubscribe: , List-Archive: List-Post: List-Help: List-Subscribe: , Errors-To: guix-patches-bounces+larch=yhetil.org@gnu.org Sender: "Guix-patches" X-Scanner: scn0 Authentication-Results: aspmx1.migadu.com; dkim=fail (rsa verify failed) header.d=famulari.name header.s=mesmtp header.b=vmWlUFzE; dkim=fail (rsa verify failed) header.d=messagingengine.com header.s=fm2 header.b=V4t/dQSu; dmarc=none; spf=pass (aspmx1.migadu.com: domain of guix-patches-bounces@gnu.org designates 209.51.188.17 as permitted sender) smtp.mailfrom=guix-patches-bounces@gnu.org X-Spam-Score: -2.11 X-TUID: OinA8M41uyL4 --/04w6evG8XlLl3ft Content-Type: text/plain; charset=us-ascii Content-Disposition: inline On Tue, May 19, 2020 at 08:00:34PM +0200, Marius Bakke wrote: > This is a great initiative, and the patches LGTM. +1 > I think that if we are to move away from SHA256, we should go with > something that is immune to length extension attacks[0] such as BLAKE2/3 > or SHA-3 (Keccak). I think we are so far from needing to move away from SHA256 that we can't know what the best replacement will be when the time comes. It will probably be quite a long time, maybe decades. --/04w6evG8XlLl3ft Content-Type: application/pgp-signature; name="signature.asc" -----BEGIN PGP SIGNATURE----- iQIzBAABCAAdFiEEsFFZSPHn08G5gDigJkb6MLrKfwgFAl7EI04ACgkQJkb6MLrK fwjNyg//RezzHAl3lY9p7ZmqFP0uWeyWQ5rayMHwZPmIsYUcmOXafE3geXV4bzob J1Fcyt+i8eV4EjunlJb5T8GEhHcOg9DOobLqUgWKBSGGjudvfyDSOK7cSQOqJoU8 tZKQ31lMqL4gCT9IOndmQm2yHoqwsVBOHtEEoUxggxxI9zMZwYHPHDmArL8vmbrQ VzwYYGHgqDUsc0N3+ut+nYFpHUpx1J8gZcP4Wp2rVezhMcg1BSVQzaNrlp3eHftt nlHOPequwQE3ub4qEmw1S8LfNWNj0VOrnnR9A4N+7PxUJLXZmxK8eP7pqTE6SO0I xudHCot/tfW1r40/OWvUoGHrFS0oOSoPE+S49eraZJWl8w/c0amshXl9HoHsfGA1 rRd7aF2g6J1KbXR8EVBoXZjgTDf/mD0GaVNqGSuoC09Kt/llXm1ZKAY5phi08+vx +oRC2N+zjxOEimUtX1j8unwHvpxcTABXzt6pCdSxo3xVnxn90k5f2wjOZV64yJvs k07Nfg29oUcCmGtD7nFi/KgO+BaHvxyz/o3O/TchGra+1phgPV20Kvd2YUwGqwDD aQClpBlHzelFRniqbArX4ygoeuzYhoMPNGw92IfhhUKrB//rRQ0T1E+tt/Gy7v0a 0LJhlHNO8MsmuIdqqKurfN5GTZO0tRCte749ae7RUT6FXTmryMQ= =qhqw -----END PGP SIGNATURE----- --/04w6evG8XlLl3ft--