Uploaded image for project: 'RHEL'
  1. RHEL
  2. RHEL-64759

Support serialisation of KEM keys only with official OIDs

Linking RHIVOS CVEs to...Migration: Automation ...SWIFT: Generate New Ti...SWIFT: POC ConversionSync from "Extern...XMLWordPrintable

    • No
    • Moderate
    • 1
    • rhel-security-crypto
    • ssg_security
    • 26
    • 0.5
    • QE ack
    • False
    • False
    • Hide

      None

      Show
      None
    • No
    • Crypto25Q1
    • Unspecified Release Note Type - Unknown
    • None

      oqsprovider supports hybrid KEMs which we need for TLS (and maybe for other protocols), but without official OIDs for them, we shouldn't allow serialisation of them.

      At the same time, pure ML-KEM does have specified OIDs: https://csrc.nist.gov/projects/computer-security-objects-register/algorithm-registration so we shouldn't remove support for serialisation, but we will need to figure out when to switch to final OIDs.

              hkario@redhat.com Alicja Kario
              hkario@redhat.com Alicja Kario
              Dmitry Belyavskiy Dmitry Belyavskiy
              Alicja Kario Alicja Kario
              Votes:
              0 Vote for this issue
              Watchers:
              4 Start watching this issue

                Created:
                Updated:
                Resolved: