On Tue, 13 May 2025 at 20:44, Joseph Salowey <j...@salowey.net> wrote:
>
> Russ has made modifications to the rfc8773bis and published a new draft [1] 
> to address the comments from the FATT.  You can see the diffs with the 
> previous version are here: [2] and the FATT commentary from IETF 122 here: 
> [3].
>
> This is a working group last call for this document.  If you believe this 
> document has sufficiently addressed the concerns please indicate so on this 
> thread.  If you do not think it is sufficient please indicate what text 
> modifications would address your issue.  This call will remain open until May 
> 28, 2025.
>

In the security section,

While Grover’s algorithm (described in
   Section 7.1 of [I-D.ietf-pquip-pqc-engineers]) allows a quantum
   computer to perform a brute force key search using quadratically
   fewer steps than would be required with classical computers, there
   are a number of mitigating factors suggesting that Grover’s algorithm
   will not speed up brute force symmetric key search as dramatically as
   one might suspect

Isn't that section 2.1 of ietf-pquip-pqc-engineers instead of section 7.1 ?

_______________________________________________
TLS mailing list -- tls@ietf.org
To unsubscribe send an email to tls-le...@ietf.org

Reply via email to