[openpgp] Re: Size of ML-DSA Secret key in draft-ietf-openpg p-pqc and other considerations
Daniel Huigens <[email protected]>
| Newsgroups | gmane.ietf.openpgp |
|---|---|
| Message-ID | <T5qQDRoFipqypjxS7EqVzE2G3ATqCJFNm_31Mkd4ixyC6oRHD_hWWnJJp-tEBsNpC2iZe9FnbFl6Gw8TvhX5kisx1uUBnndBfVzo21vPQkk=@protonmail.com> |
On Tuesday, February 11th, 2025 at 09:11, Johannes Roth wrote: > can't we keep SHA3 as well, meaning we allow both a SHA3 and a SHA2 > variant? The user / policy can then decide what to use. Yeah, I would even say something like; we SHOULD use SHA3 to match the security of the signing algorithm, but MAY use SHA2 if needed for CNSA compliance. Maybe this can be accomplished by keeping the existing text and table and just changing the MUST to a SHOULD, and then either adding some text or an additional column for the fallback option? Best, Daniel _______________________________________________ openpgp mailing list -- [email protected] To unsubscribe send an email to [email protected]