On Sun, Mar 22, 2026 at 2:56 PM Filippo Valsorda <[email protected]> wrote:
> 2026-03-22 22:23 GMT+01:00 Muhammad Usama Sardar < > [email protected]>: > > Hi Joe and Sean, > > I have the same concern as Stephen. Please precisely specify the binary > outcome of the WGLC. > > Moreover, please add the following to the list: > > - Bring an attestation of ML-KEM from Crypto Review Panel [0] of CFRG > > > I’m sorry, what is a Crypto Review Panel “attestation,” what is it > expected to bring over the multi-year, international NIST competition, and > why would an IRTF opinion be blocking for an IETF document? > FWIW, I agree with you in the specific case of ML-KEM. To the broader question, I think that the IETF should avoid adopting algorithms that haven't seen a sufficient level of vetting. This could be provided by CFRG or, as you observe, by a multi-year international NIST competition. -Ekr
_______________________________________________ TLS mailing list -- [email protected] To unsubscribe send an email to [email protected]
