The IESG has approved the following document: - 'Signature Authentication in the Internet Key Exchange Version 2 (IKEv2) using PQC' (draft-ietf-ipsecme-ikev2-pqc-auth-12.txt) as Proposed Standard
This document is the product of the IP Security Maintenance and Extensions Working Group. The IESG contact persons are Christopher Inacio, Éric Vyncke and Deb Cooley. A URL of this Internet-Draft is: https://datatracker.ietf.org/doc/draft-ietf-ipsecme-ikev2-pqc-auth/ Technical Summary Signature-based authentication methods are utilized in the Internet Key Exchange Version 2 (IKEv2). The current version of the IKEv2 protocol, specified in RFC 7296, supports traditional digital signatures. This document specifies a generic mechanism for integrating post- quantum cryptographic (PQC) digital signature algorithms into the IKEv2 protocol. The approach allows for seamless inclusion of any PQC signature scheme within the existing authentication framework of IKEv2. Additionally, it outlines how Module-Lattice-Based Digital Signatures (ML-DSA) and Stateless Hash-Based Digital Signatures (SLH- DSA), can be employed as authentication methods within the IKEv2 protocol, as they have been standardized by US NIST. Working Group Summary >From the shepherd's write-up: "There has been broad agreement." Document Quality Genart and Secdir reviews have been done, a revised I-D was authored to address the first secdir review, then the secdir reviewer agreed with the changes. Personnel The Document Shepherd for this document is Tero Kivinen. The Responsible Area Director is Éric Vyncke (acting for this document to relieve the SEC AD workload). _______________________________________________ IPsec mailing list -- [email protected] To unsubscribe send an email to [email protected]
