The IESG has approved the following document:
- 'Signature Authentication in the Internet Key Exchange Version 2
   (IKEv2) using PQC'
  (draft-ietf-ipsecme-ikev2-pqc-auth-12.txt) as Proposed Standard

This document is the product of the IP Security Maintenance and Extensions
Working Group.

The IESG contact persons are Christopher Inacio, Éric Vyncke and Deb Cooley.

A URL of this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-ipsecme-ikev2-pqc-auth/




Technical Summary

   Signature-based authentication methods are utilized in the Internet
   Key Exchange Version 2 (IKEv2).  The current version of the IKEv2
   protocol, specified in RFC 7296, supports traditional digital
   signatures.

   This document specifies a generic mechanism for integrating post-
   quantum cryptographic (PQC) digital signature algorithms into the
   IKEv2 protocol.  The approach allows for seamless inclusion of any
   PQC signature scheme within the existing authentication framework of
   IKEv2.  Additionally, it outlines how Module-Lattice-Based Digital
   Signatures (ML-DSA) and Stateless Hash-Based Digital Signatures (SLH-
   DSA), can be employed as authentication methods within the IKEv2
   protocol, as they have been standardized by US NIST.

Working Group Summary

>From the shepherd's write-up: "There has been broad agreement."

Document Quality

Genart and Secdir reviews have been done, a revised I-D was 
authored to address the first secdir review, then the secdir
reviewer agreed with the changes.

Personnel

   The Document Shepherd for this document is Tero Kivinen. The Responsible
   Area Director is Éric Vyncke (acting for this document to relieve
   the SEC AD workload).


_______________________________________________
IPsec mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to