Re: Plans for Post-Quantum Cryptography in GnuPG
Jakob Bohm via Gnupg-users <[email protected]> Tue, 14 Apr 2026 14:28:09 +0200
| Newsgroups | gmane.comp.encryption.gpg.user |
|---|---|
| Organization | WiseMo A/S |
| Message-ID | <[email protected]> |
On 13/04/2026 11:20, Werner Koch via Gnupg-users wrote: > On Sun, 12 Apr 2026 22:37, Robert J. Hansen said: > >> IMO, the necessary algorithms for PQC signing/certifying are not yet >> ready for primetime. Dilithium is obviously the biggest component of a > Right. Experience from 30 years showed that deploying a stable and > secure signing system is much more challenging than an encryption > system. Given that the claimed threat is store-now-maybe-decrypt-later > the deployment of signatures is not yet not needed. Another threat based on similar use of time as an attack tool is to "fake signature later and pretend it is a long term contract signed 25 years earlier" Enjoy Jakob -- Jakob Bohm, CIO, Partner, WiseMo A/S. https://www.wisemo.com Transformervej 29, 2860 Søborg, Denmark. Direct +45 31 13 16 10 This public discussion message is non-binding and may contain errors. WiseMo - Remote Service Management for PCs, Phones and Embedded _______________________________________________ Gnupg-users mailing list [email protected] https://lists.gnupg.org/mailman/listinfo/gnupg-users