I am opposed to the adoption of ML-KEM at this time.

The main stated benefit of using a standalone ML-KEM is complexity
reduction, but with the current progress in the deployment of the ML-KEM +
ECC hybrid method, a standalone ML-KEM method actually increases overall
complexity in software stacks.

( Standalone ML-KEM should be published in some way, but not as a WG item. )


On Tue, Apr 15, 2025 at 7:33 AM Salz, Rich <rsalz=
40akamai....@dmarc.ietf.org> wrote:

> I believe I have already set that I am opposed to adopting pure PQ
> algorithms at this time.
> _______________________________________________
> TLS mailing list -- tls@ietf.org
> To unsubscribe send an email to tls-le...@ietf.org
>
_______________________________________________
TLS mailing list -- tls@ietf.org
To unsubscribe send an email to tls-le...@ietf.org

Reply via email to