IETF organized a "PQC Dialogue with
Government Stakeholders" meeting. This post by John Preuß Mattsson is very informative:
https://groups.google.com/a/list.nist.gov/g/pqc-forum/c/5_WPq6mFi68
Abstract:
- EU: Transition for ”Harvest now, decrypt later” should be done by the end of 2030 and in general, the whole transition by the end of 2035. Not legally binding but might become law in the future.
- US, CA, UK, all agree on a timeline targeting around 2035 for mass adoption of quantum-resistant requirements.
- Heated discussion on the topic of "pure" vs "hybrid" schemes. BSI recommend hybrids for everything except for hash-based signatures.
- Very strong agreement that PQC is the priority. BSI says QKD is not mature and even long-term the only possible use case would be defense-in-depth in niche application. UK NCSC and NIST does not endorse QKD. Sweden says that QKD will never be useful.
- Discussion about paywalled standards. EU and US courts have decided that access to standards referenced by law is a human right.
#pqc #quantum #cryptography #nist #bsi #eu #ietf #nsa