[saag] Fwd: New Liaison Statement, "LS on PQC transition for RFC 6509"

Deb Cooley <[email protected]> Wed, 12 Nov 2025 08:52:28 -0500
Newsgroups gmane.ietf.saag,gmane.ietf.irtf.cfrg
Message-ID <CAGgd1OctMg6=sB8vMPOXOpnP1DgbpvW97u963QGdsbJLJDYnkw@mail.gmail.com>
SAAG, CFRG and MSEC,

The Sec ADs received the enclosed liaison request from 3GPP.  The subject
is the PQ transition timeline for MIKEY-SAKKE (MIKEY was originally
specified in RFC 3830, then updated and expanded in RFCs 6507, 6508, 6509)
and whether the IETF plans to update this protocol to be PQ secure.

>From a quick skim of the RFCs (where the later RFCs are Informational and
were AD sponsored), it appears that the basis of this protocol/algorithm is
ECC P256/SHA-256 with a certificate-less Identity Based public key system.

If there is anyone who is planning to do the update work, please speak up
now.  [I'm not making any comments on how easy/hard this work might be.]

Otherwise, we (IETF) will go back to 3GPP stating that we do not plan to
update this protocol.

Thanks,

Deb Cooley
Security Area Director

---------- Forwarded message ---------
From: Liaison Statement Management Tool <[email protected]>
Date: Sat, Nov 1, 2025 at 3:21 PM
Subject: New Liaison Statement, "LS on PQC transition for RFC 6509"
To: Deb Cooley <[email protected]>, Paul Wouters <[email protected]>
Cc: Charles Eckel <[email protected]>, Deb Cooley <[email protected]>,
Paul Wouters <[email protected]>, The IETF Chair <[email protected]>, <
[email protected]>


Title: LS on PQC transition for RFC 6509
Submission Date: 2025-10-30
URL of the IETF Web page: https://datatracker.ietf.org/liaison/2070/

To: Security Area (sec)
From: 3GPP TSG SA WG3
Purpose: For action
Please reply by 2025-11-14

Email Addresses
---------------
From: Zander Lei <[email protected]>
To: Paul Wouters <[email protected]>,Deb Cooley <[email protected]>
Cc: Deb Cooley <[email protected]>,Charles Eckel <[email protected]>,The
IETF Chair <[email protected]>,Paul Wouters <[email protected]>
Response Contacts: 3GPP Liaisons Coordinator <[email protected]>
Peter Schmitt <[email protected]>
Technical Contacts:


Body: 1 Overall description

3GPP SA3 has started a study on “Transitioning to Post Quantum Cryptography
(PQC) in 3GPP”. This is to prepare the PQC transition for security
protocols used in 3GPP systems. 3GPP SA3 has identified that the
MIKEY-SAKKE protocol, which is used in 3GPP systems to transport
cryptographic keys securely for Mission Critical Services, is specified in
the IETF RFC 6509. Since it employs asymmetric cryptography for key
distribution and may be vulnerable to quantum computing, SA3 would like to
know whether there is any plan for IETF to update the RFC 6509 using PQC.
If yes, SA3 appreciate if IETF can provide estimated timeline for the
protocol update.

2       Actions
To IETF SEC Area
ACTION:         SA3 kindly request IETF to provide feedback on the question
above.

3       Dates of next TSG SA WG 3 meetings
SA3#125 17 – 21 November 2025           Dallas, US
SA3#126 9 – 13 February 2026            India (TBD)
Attachments:

    LS on PQC transition for RFC 6509

https://www.ietf.org/lib/dt/documents/LIAISON/liaison-2025-10-30-3gpp-tsg-sa-wg3-sec-ls-on-pqc-transition-for-rfc-6509-attachment-1.docx

_______________________________________________
saag mailing list -- [email protected]
To unsubscribe send an email to [email protected]