Hi Nadim,

> > 1. Make ECHDE/MLKEM Recommended=Y (as also suggested by Bas's draft).
> > 2. Decline to publish draft-ietf-tls-mlkem
> 
> This is the best case scenario outcome for TLS’s security and benefit to 
> humanity in my view and I strongly support it.

I agree. The medium-term (i.e. after WGLC) question regarding 2. would be 
whether that draft

a) should be sent to the ISE for publication elsewhere (which in case of no 
conflicts any author may do without WG approval), or
b) should be held at the WG for eventual reevaluation/publication in a few 
years.

Personally, I think we have seen enough interest in deploying this particular 
PQ-no-seatbelt algorithm to prefer b) and expand the considerations in the 
document in the meantime.

-- TBB

Attachment: smime.p7s
Description: S/MIME cryptographic signature

_______________________________________________
TLS mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to