I am opposed to the adoption of ML-KEM at this time. The main stated benefit of using a standalone ML-KEM is complexity reduction, but with the current progress in the deployment of the ML-KEM + ECC hybrid method, a standalone ML-KEM method actually increases overall complexity in software stacks.
( Standalone ML-KEM should be published in some way, but not as a WG item. ) On Tue, Apr 15, 2025 at 7:33 AM Salz, Rich <rsalz= 40akamai....@dmarc.ietf.org> wrote: > I believe I have already set that I am opposed to adopting pure PQ > algorithms at this time. > _______________________________________________ > TLS mailing list -- tls@ietf.org > To unsubscribe send an email to tls-le...@ietf.org >
_______________________________________________ TLS mailing list -- tls@ietf.org To unsubscribe send an email to tls-le...@ietf.org