/plushcap/analysis/cloudflare/cloudflare-another-look-at-pq-signatures

A look at the latest post-quantum signature standardization candidates

What's this blog post about?

The National Institute of Standards and Technology (NIST) has advanced 14 post-quantum signature schemes to the second round of its "signatures on ramp" competition, with a focus on their feasibility for use in Transport Layer Security (TLS). The goal is to develop a widely accepted standard for post-quantum signatures that can be used to secure online communication. The current top performers include HAWK, SNOVA, and MAYO, which offer improvements over existing algorithms like ML-DSA and Falcon. However, even these new schemes have limitations, such as requiring additional bytes on the wire. To mitigate this, experts suggest exploring alternative designs that reduce the number of signatures used in TLS, such as using a Key Encryption Mechanism (KEM) instead of a signature for handshake authentication or redesigning the vast majority of visits to use fewer online signatures. The industry is expected to continue working together to develop post-quantum security solutions without compromising performance.

Company
Cloudflare

Date published
Nov. 7, 2024

Author(s)
Bas Westerbaan, Luke Valenta

Word count
4793

Language
English

Hacker News points
None found.


By Matt Makai. 2021-2024.