Internet-Draft draft-ietf-emu-hybrid-pqc-eapaka-00.txt is now available. It is a work item of the EAP Method Update (EMU) WG of the IETF.
Title: Enhancing Security in EAP-AKA' with Hybrid Post-Quantum Cryptography Authors: Aritra Banerjee Tirumaleswar Reddy Name: draft-ietf-emu-hybrid-pqc-eapaka-00.txt Pages: 13 Dates: 2025-07-22 Abstract: Forward Secrecy for the Extensible Authentication Protocol Method for Authentication and Key Agreement (EAP-AKA' FS) is specified in [RFC9678], providing updates to [RFC9048] with an optional extension that offers ephemeral key exchange using the traditional Ephemeral Elliptic Curve Diffie-Hellman (ECDHE) key agreement algorithm for achieving perfect forward secrecy (PFS). However, it is susceptible to future threats from Cryptographically Relevant Quantum Computers, which could potentially compromise a traditional ephemeral public key. If the adversary has also obtained knowledge of the long-term key and ephemeral public key, it could compromise session keys generated as part of the authentication run in EAP-AKA'. This draft aims to enhance the security of EAP-AKA' FS protocol by leveraging PQ/T Hybrid [I-D.ietf-pquip-pqt-hybrid-terminology] algorithms to make it quantum-safe. The IETF datatracker status page for this Internet-Draft is: https://datatracker.ietf.org/doc/draft-ietf-emu-hybrid-pqc-eapaka/ There is also an HTML version available at: https://www.ietf.org/archive/id/draft-ietf-emu-hybrid-pqc-eapaka-00.html Internet-Drafts are also available by rsync at: rsync.ietf.org::internet-drafts _______________________________________________ Emu mailing list -- emu@ietf.org To unsubscribe send an email to emu-le...@ietf.org