Hiya,

On 04/06/2026 00:29, D. J. Bernstein wrote:
IETF does not control software engineering. It_does_ control which TLS
options it will endorse. At that layer, there are currently two choices:
(1) common-sense ECC+PQ; (2) damaging security with solo PQ.

I disagree. There's also: (3) experiment with PQ authentication in TLS
while recommending against production deployment at this time.

Were (3) an IETF-consensus position, IMO publishing this document as an
RFC would not be problematic.

Cheers,
S.

Attachment: OpenPGP_signature.asc
Description: OpenPGP digital signature

_______________________________________________
TLS mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to