On Thu, Apr 23, 2026 at 4:58 AM David Stainton <[email protected]>
wrote:

> Hi Sean,
>
> I'm opposed to the publication of pure ML-DSA, full stop.
>
> Once a signature scheme is in the registry it becomes a deployment
> default,


That ship has already sailed. The code points for pure ML-DSA were
registered on the basis of draft-ietf-tls-mldsa-00.

It's certainly a reasonable position to take publishing an RFC is
different, but if your position is, as stated above, that having
it in the registry is a problem, then we're already past that point
and have been for s ome time.

-Ekr




> and a pure lattice-only default is a standing bet that
> lattice cryptanalysis never surprises us. That's not a bet worth
> making when composite exists at trivial cost. Hybrids are cheap
> insurance, and the only post-quantum signature TLS should be
> publishing is a composite one.
>
> David Stainton
>
>
> On Wed, Apr 22, 2026 at 4:43 PM Sean Turner <[email protected]> wrote:
> >
> > Reminder that this WGLC ends tomorrow.
> >
> > spt
> >
> > > On Apr 15, 2026, at 15:07, Sean Turner <[email protected]> wrote:
> > >
> > > Reminder that this WGLC is still ongoing.
> > >
> > > spt
> > >
> > >> On Apr 9, 2026, at 15:30, Sean Turner <[email protected]> wrote:
> > >>
> > >> This is the working group last call for Use of ML-DSA in TLS 1.3.
> Please review draft-ietf-tls-mldsa [1] and reply to this thread indicating
> if you think it is ready for publication or not. If you do not think it is
> ready please indicate why. This call will end on April 23, 2026.
> > >>
> > >> REMINDER: If you have not done so recently, review the TLS WG's Mail
> List Procedures; see [2].
> > >>
> > >> The Chairs,
> > >> Deirdre, Joe, and Sean
> > >>
> > >> [1] https://datatracker.ietf.org/doc/draft-ietf-tls-mldsa/
> > >> [2]
> https://mailarchive.ietf.org/arch/msg/tls/ucdImHExlbOf4Q3BCG81gjzi2xE/
> > >
> >
> > _______________________________________________
> > TLS mailing list -- [email protected]
> > To unsubscribe send an email to [email protected]
>
> _______________________________________________
> TLS mailing list -- [email protected]
> To unsubscribe send an email to [email protected]
>
_______________________________________________
TLS mailing list -- [email protected]
To unsubscribe send an email to [email protected]

Reply via email to