On 07/01/2025 23:02, Michael Thomas wrote:

Has NIST given a timeline of when they are going to pick the quantum resistant algorithm? I suppose if it's far enough out, it might be worthwhile to wait, but on the other hand figuring out a transition sooner rather than later might be good.

They have currently listed ML-DSA, SLH-DSA, LMS, HSS, XMSS and XMSS as the alternatives (they're also mentioned in the document I linked).

Starting a few experiments with any of the currently listed algorithms right now sounds rather important, considering how long it has taken with past changes so far.

Attachment: smime.p7s
Description: S/MIME Cryptographic Signature

_______________________________________________
Ietf-dkim mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to