[openpgp] AusGov Information Security Manual

Andrew <[email protected]>
Newsgroups gmane.ietf.openpgp
Message-ID <[email protected]>
As discussed in the WG session, here is a link to the AusGov requirements documents https://www.cyber.gov.au/resources-business-and-government/essential-cybersecurity/ism
The Guidelines for Cryptography area is the relevant section.

A rough summary for the discussion. Pure PQC options are the desired position using approved PQC algorithms. The approved algorithms are specified in the linked document.

If hybrids are used, at least one of the algorithms must be approved. If that is the Traditional algorithm, which uses ECC, it would need to be using a NIST curve. Currently, curves such as CFRG curves aren’t in used AusGov, so only those options may cause friction for deployment.

Sorry I didn’t make that clear at the mic, chalk that up to first time nervousness.

Hopefully that helps the discussions for the WG.

Regards,
Andrew Holder


Sent from my iPhone

_______________________________________________
openpgp mailing list -- [email protected]
To unsubscribe send an email to [email protected]
lmpx.com only provides a reader for public news (NNTP) servers. It is not affiliated with the servers or forums shown here and is not responsible for the content of articles, which is written by their respective authors.