Skip to content

Releases: lamps-wg/dilithium-certificates

-05 WG Version

04 Nov 13:36
a7a6857
Compare
Choose a tag to compare

Refactoring, added ASN.1 module, examples, etc.

-04 WG version

22 Jul 18:12
f3757b1
Compare
Choose a tag to compare

2024-07-20

  • changed to '21 syntax for AlgorithmIdentifier
  • follow RFC8813 and RFC9295 and prohibit the use of non-signing KUs

-03 WG version

05 Feb 18:41
Compare
Choose a tag to compare

05-02-2024

  • Changed references to algorithm name from Dilithium to ML-DSA, and associated security levels
  • Modified text in security considerations regarding randomized vs deterministic signatures, updated text on 'hedged mode' that is now default
  • Added FIPS 204 reference

-02 WG version

07 Aug 18:32
Compare
Choose a tag to compare

24-10-2022 - Based on feedback from John Gray, Markku-Juhani O. Saarinen, and Mike Ounsworth.

  • The DilithiumPrivateKey data structure has been modified, a call out to the OneAsymmetricKey structure has been explicitly made.
  • Multiple placeholders for the various OIDs at differing security levels have been added (we expect these to be id-dilithium2 id-dilithium3 and id-dilithium5, but await NIST for this).
  • A mention of the Dilithium algorithm version number (version 3.1 2021-02-08) has been added - we can add a paragraph discussing more details of various algorithm versions if desired.
  • A typo in Appendix B that incorrectly listed the dilithium5 public key size has been fixed.
  • The discussion of deterministic vs randomized signing has been removed from section 6 as we continue to decide how to address this. On this topic, deterministic vs randomized signing has been added to the security considerations as a place to discuss the security impact of these choices.

02-02-2023

  • Added example Dilithium3 encoded public key.
  • Cleaned up NIST reference and rephrased first introduction paragraph

08-07-2023

  • ID POP while we await NIST PQC announcement (expected late July)

-01 WG version

06 Feb 21:48
Compare
Choose a tag to compare

24-10-2022 - Based on feedback from John Gray, Markku-Juhani O. Saarinen, and Mike Ounsworth.

  • The DilithiumPrivateKey data structure has been modified, a call out to the OneAsymmetricKey structure has been explicitly made.
  • Multiple placeholders for the various OIDs at differing security levels have been added (we expect these to be id-dilithium2 id-dilithium3 and id-dilithium5, but await NIST for this).
  • A mention of the Dilithium algorithm version number (version 3.1 2021-02-08) has been added - we can add a paragraph discussing more details of various algorithm versions if desired.
  • A typo in Appendix B that incorrectly listed the dilithium5 public key size has been fixed.
  • The discussion of deterministic vs randomized signing has been removed from section 6 as we continue to decide how to address this. On this topic, deterministic vs randomized signing has been added to the security considerations as a place to discuss the security impact of these choices.

02-02-2023

  • Added example Dilithium3 encoded public key.
  • Cleaned up NIST reference and rephrased first introduction paragraph