• No
    • Low
    • 1
    • rhel-sst-security-crypto
    • ssg_security
    • 22
    • 24
    • 4
    • False
    • Hide

      None

      Show
      None
    • Yes
    • Crypto24Q4
    • Hide
      • X25519MLKEM768 (TLS code point 4588) and SecP256r1MLKEM768 (TLS code point 4587) are supported
      • should be automatically enabled if MLKEM768X25519 and MLKEM768SECP256 is turned on in the allow portion of /etc/crypto-policies/back-ends/nss.config
      Show
      X25519MLKEM768 (TLS code point 4588) and SecP256r1MLKEM768 (TLS code point 4587) are supported should be automatically enabled if MLKEM768X25519 and MLKEM768SECP256 is turned on in the allow portion of /etc/crypto-policies/back-ends/nss.config
    • Pass
    • None
    • Feature
    • Hide
      Feature, enhancement:
      NSS now support ml-kem hybrid mechanisms in TLS.
      Reason:
      As part of the transition to post quantum algorithms, ml-kem hybrid support in TLS allows for transitions to a quantum safe algorthims while maintaining the safetly our existing algorithms. This will protect against 'record now decrypt later' attacks on their tls sessions.
      Result:
      Customers can begin to transition to PQ in their deployments to gain the quantum safe protections.
      Show
      Feature, enhancement: NSS now support ml-kem hybrid mechanisms in TLS. Reason: As part of the transition to post quantum algorithms, ml-kem hybrid support in TLS allows for transitions to a quantum safe algorthims while maintaining the safetly our existing algorithms. This will protect against 'record now decrypt later' attacks on their tls sessions. Result: Customers can begin to transition to PQ in their deployments to gain the quantum safe protections.
    • Proposed
    • None

      NSS should not implement Kyber/Dilithium/etc but ML-KEM/ML-DSA

              hkario@redhat.com Alicja Kario
              dbelyavs@redhat.com Dmitry Belyavskiy
              Robert Relyea Robert Relyea
              Alicja Kario Alicja Kario
              Jan Fiala Jan Fiala
              Votes:
              0 Vote for this issue
              Watchers:
              11 Start watching this issue

                Created:
                Updated: