On Thu, Jun 06, 2024 at 12:36:28PM +0200, Hubert Kario wrote: > > So, while I'd love to see x25519 in governmental standards, I think it's > better to spend energy making sure that we deploy ML-KEM as soon as > possible, > in hybrid mode, both with x25519 *and* NIST curves (at the very least P-256 > and > P-384).
I think a good initial set of hybrids would be: - x25519+mlkem768 - x448+mlmem1024 - p256+mlkem768 - p384+mlkem1024 -Ilari _______________________________________________ TLS mailing list -- tls@ietf.org To unsubscribe send an email to tls-le...@ietf.org