Hi Nadim, > > 1. Make ECHDE/MLKEM Recommended=Y (as also suggested by Bas's draft). > > 2. Decline to publish draft-ietf-tls-mlkem > > This is the best case scenario outcome for TLS’s security and benefit to > humanity in my view and I strongly support it.
I agree. The medium-term (i.e. after WGLC) question regarding 2. would be whether that draft a) should be sent to the ISE for publication elsewhere (which in case of no conflicts any author may do without WG approval), or b) should be held at the WG for eventual reevaluation/publication in a few years. Personally, I think we have seen enough interest in deploying this particular PQ-no-seatbelt algorithm to prefer b) and expand the considerations in the document in the meantime. -- TBB
smime.p7s
Description: S/MIME cryptographic signature
_______________________________________________ TLS mailing list -- [email protected] To unsubscribe send an email to [email protected]
