The revised draft
https://datatracker.ietf.org/doc/draft-ietf-ipsecme-ikev2-pqc-auth/ addresses
pending comments received during the WGLC.

-Tiru

---------- Forwarded message ---------
From: <[email protected]>
Date: Tue, 14 Apr 2026 at 10:40
Subject: New Version Notification for
draft-ietf-ipsecme-ikev2-pqc-auth-08.txt
To: Tirumaleswar Reddy.K <[email protected]>, Scott Fluhrer <
[email protected]>, Valery Smyslov <[email protected]>


A new version of Internet-Draft draft-ietf-ipsecme-ikev2-pqc-auth-08.txt has
been successfully submitted by Tirumaleswar Reddy and posted to the
IETF repository.

Name:     draft-ietf-ipsecme-ikev2-pqc-auth
Revision: 08
Title:    Signature Authentication in the Internet Key Exchange Version 2
(IKEv2) using PQC
Date:     2026-04-14
Group:    ipsecme
Pages:    19
URL:
https://www.ietf.org/archive/id/draft-ietf-ipsecme-ikev2-pqc-auth-08.txt
Status:
https://datatracker.ietf.org/doc/draft-ietf-ipsecme-ikev2-pqc-auth/
HTML:
https://www.ietf.org/archive/id/draft-ietf-ipsecme-ikev2-pqc-auth-08.html
HTMLized:
https://datatracker.ietf.org/doc/html/draft-ietf-ipsecme-ikev2-pqc-auth
Diff:
https://author-tools.ietf.org/iddiff?url2=draft-ietf-ipsecme-ikev2-pqc-auth-08

Abstract:

   Signature-based authentication methods are utilized in IKEv2.  The
   current version of the Internet Key Exchange Version 2 (IKEv2)
   protocol, specified in RFC 7296, supports traditional digital
   signatures.

   This document specifies a generic mechanism for integrating post-
   quantum cryptographic (PQC) digital signature algorithms into the
   IKEv2 protocol.  The approach allows for seamless inclusion of any
   PQC signature scheme within the existing authentication framework of
   IKEv2.  Additionally, it outlines how Module-Lattice-Based Digital
   Signatures (ML-DSA) and Stateless Hash-Based Digital Signatures (SLH-
   DSA), can be employed as authentication methods within the IKEv2
   protocol, as they have been standardized by NIST.



The IETF Secretariat
_______________________________________________
IPsec mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to