I am opposed to the adoption of ML-KEM at this time. The main stated benefit of using a standalone ML-KEM is complexity reduction, but with the current progress in the deployment of the ML-KEM + ECC hybrid method, a standalone ML-KEM method actually increases overall complexity in software stacks.
( Standalone ML-KEM should be published in some way, but not as a WG item. ) On Tue, Apr 15, 2025 at 7:33 AM Salz, Rich <rsalz= [email protected]> wrote: > I believe I have already set that I am opposed to adopting pure PQ > algorithms at this time. > _______________________________________________ > TLS mailing list -- [email protected] > To unsubscribe send an email to [email protected] >
_______________________________________________ TLS mailing list -- [email protected] To unsubscribe send an email to [email protected]
