انضم إلى نوستر
2025-10-13 06:47:49 UTC
in reply to

Caleb James DeLisle on Nostr: The IETF is interested in specifying post-quantum encryption algorithms for TLS, DJB ...

The IETF is interested in specifying post-quantum encryption algorithms for TLS, DJB is *strongly* of the opinion that these newfangled PQ algorithms must be combined with ordinary elliptic curve cryptography because alone, they are too dangerous to be deployed.

He points to a number of PQ algorithms which were on track to become a standard, before some mathematician "broke them" (i.e. discovered that you could fuck them over entirely with nothing more than a small GPU farm).

DJB raised his objection to this standard when it was being drafted, and his objection was overruled. He believes that the NSA may have something to do with this, as they have in the past put their finger on the scale to promote insecure crypto algorithms such as the dual-EC random generator.

Following this, DJB raised a complaint that the process was railroaded against the IETF's rules regarding "consensus".

They apparently took some of the things he said in his complaint and published them in a different form, and following this he raised a copyright complaint because he did not give them consent to make derivatives of his original words.

They claim that all "contributions" are automatically licensed to them, he claims that a complaint cannot be considered a contribution, otherwise there is no process for complaints, which they are legally obligated to have in order to maintain their status as a neutral standards body and not a monopoly per anti-trust law.

And the thread that follows is fucking spectacular.