Soatok Dreamseeker <[email protected]> writes:

>In which case, you shouldn't be hybridizing them either, but refraining from
>using them at all.

Hybrids are useful if you've got people clamoring for PQC but don't want to
take the risk of committing to something that we have almost no deployment
experience with compared to the 30-50 years of practical experience with
conventional PKC algorithms.  So you can check the PQC checkbox without having
to take on the risk that next week someone will publish a weakness in the way
that it's designed, implemented, or deployed.

Peter.
_______________________________________________
TLS mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to