[openpgp] Re: Size of ML-DSA Secret key in draft-ietf-openpg p-pqc and other considerations

Daniel Huigens <[email protected]>
Newsgroups gmane.ietf.openpgp
Message-ID <T5qQDRoFipqypjxS7EqVzE2G3ATqCJFNm_31Mkd4ixyC6oRHD_hWWnJJp-tEBsNpC2iZe9FnbFl6Gw8TvhX5kisx1uUBnndBfVzo21vPQkk=@protonmail.com>
On Tuesday, February 11th, 2025 at 09:11, Johannes Roth wrote:
> can't we keep SHA3 as well, meaning we allow both a SHA3 and a SHA2
> variant? The user / policy can then decide what to use.

Yeah, I would even say something like; we SHOULD use SHA3 to match
the security of the signing algorithm, but MAY use SHA2 if needed
for CNSA compliance.

Maybe this can be accomplished by keeping the existing text and
table and just changing the MUST to a SHOULD, and then either
adding some text or an additional column for the fallback option?

Best,
Daniel

_______________________________________________
openpgp mailing list -- [email protected]
To unsubscribe send an email to [email protected]
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.