On Tue, 13 May 2025 at 20:44, Joseph Salowey <j...@salowey.net> wrote: > > Russ has made modifications to the rfc8773bis and published a new draft [1] > to address the comments from the FATT. You can see the diffs with the > previous version are here: [2] and the FATT commentary from IETF 122 here: > [3]. > > This is a working group last call for this document. If you believe this > document has sufficiently addressed the concerns please indicate so on this > thread. If you do not think it is sufficient please indicate what text > modifications would address your issue. This call will remain open until May > 28, 2025. >
In the security section, While Grover’s algorithm (described in Section 7.1 of [I-D.ietf-pquip-pqc-engineers]) allows a quantum computer to perform a brute force key search using quadratically fewer steps than would be required with classical computers, there are a number of mitigating factors suggesting that Grover’s algorithm will not speed up brute force symmetric key search as dramatically as one might suspect Isn't that section 2.1 of ietf-pquip-pqc-engineers instead of section 7.1 ? _______________________________________________ TLS mailing list -- tls@ietf.org To unsubscribe send an email to tls-le...@ietf.org