
-----Original Message-----
From: Stephen Farrell [mailto:stephen.farr...@cs.tcd.ie] 
Sent: Friday, November 15, 2024 11:41 AM
To: Bas Westerbaan <bas=40cloudflare....@dmarc.ietf.org>; tls@ietf.org
Subject: [TLS] Re: ML-DSA in TLS

On 15/11/2024 10:51, Bas Westerbaan wrote:
> We have posted a -00.
> https://datatracker.ietf.org/doc/html/draft-tls-westerbaan-mldsa-00

I'm unenthusiastic but don't strongly oppose adoption of this and similar 
drafts, mostly because I think we should try get some WG consensus on guidance 
for when these things may be needed (if ever) and what the consequences might 
be should people deploy 'em in the meantime. (By 'em I mean anything with any 
kind of PQ sig or non hybrid PQ key exchange.) That guidance might or might not 
be in a separate document, or be copied into each relevant one.


TLS mailing list -- tls@ietf.org
To unsubscribe send an email to tls-le...@ietf.org

Reply via email to