freenode

← digests

Attested TLS models, PQ auth workshop, LSR and SCITT drafts

Internet & Protocols2026-08-24

IETF lists spent the day on security modeling and operational draft process. SEAT argued over attested TLS assumptions while the IAB sought papers on post-quantum authentication deployment, with smaller adoption and conformance threads in LSR and SCITT.

SEAT debates attested TLS threat model scope

The SEAT working group ran a long technical dispute on the threat model and security properties for attested TLS. Participants argued over TLS 1.3 scope, whether WeakDH and WeakHash belong in the model, and how much weight to give formal results from ESORICS and AsiaCCS. A settled model would set the baseline for anyone standardizing or implementing attested channel protocols.

IAB seeks papers on post-quantum authentication deployment

The IAB issued a call for papers for a workshop on accelerating deployment of post-quantum authentication. The event is framed around signature deployment challenges and PKI impact. Operators and implementers planning algorithm migration have reason to watch what topics the program elevates.

LSR opens adoption call for power-group draft

The LSR working group started an adoption call for draft-many-lsr-power-group-03, ending 2026-08-30. Discussion focused on the draft's traffic-engineering-centric design and possible backwards-compatibility issues. Routing implementers and operators who care about grouped or power-related link advertisements should note whether the work is taken up.

SCITT proposes page for Vaara conformance runs

SCITT contributors discussed a public page to record independent runs of the Vaara conformance vectors. The thread covered how to present disagreement rows and hash-chain fixes. Shared run data would give supply-chain integrity implementers a clearer view of interoperability claims.