Lessons Learned from Testing Millions of Servers for Post-Quantum Compatibility

  Рет қаралды 46

PKI Consortium

PKI Consortium

Күн бұрын

Protocol ossification delayed the rollout of TLS 1.3 for years, and has once again become a roadblock in the rollout of post-quantum cryptography. In a recent large-scale study of TLS servers, we assessed the deployment compatibility of post-quantum key agreements, uncovering surprising results and insights. Notably, we observed protocol ossification in areas beyond the well-known issue of fragmented ClientHello messages due to large key sizes. We believe more surprises will emerge with post-quantum certificates, making deployment far more complex than a “flip-of-a-switch” transition.
In this talk, we share our findings from the study, and emphasize the importance of testing early to identify potential post-quantum migration challenges rather than making assumptions about where issues may arise. We walk through the subtle deployment complexities and operational issues that can arise when managing the complexities of post-quantum PKI implementations, particularly for end-user connection stability. By offering practical insights, we hope to contribute to a smoother shift to the post-quantum era, enhancing crypto-agility and strengthening the reliability of the Web PKI as a by-product.
Syed Suleman Ahmad - Research Engineer at ‪@cloudflare‬

Пікірлер
How much will ML-DSA Signatures affect Web Metrics after all?
26:56
Architecting PKI Hierarchies for Graceful PQ Migration
34:12
PKI Consortium
Рет қаралды 79
Andro, ELMAN, TONI, MONA - Зари (Official Audio)
2:53
RAAVA MUSIC
Рет қаралды 8 МЛН
OCCUPIED #shortssprintbrasil
0:37
Natan por Aí
Рет қаралды 131 МЛН
БОЙКАЛАР| bayGUYS | 27 шығарылым
28:49
bayGUYS
Рет қаралды 1,1 МЛН
Why the Internet isn’t ready for Post-Quantum Certificates
29:01
Is your HSM quantum-ready? Here’s what you need to know!
28:28
PKI Consortium
Рет қаралды 104
Quantum-Safe Secure Boot: How hard can it be?
26:41
PKI Consortium
Рет қаралды 62
Attention in transformers, step-by-step | DL6
26:10
3Blue1Brown
Рет қаралды 2,1 МЛН
Can You Swim in Shade Balls?
10:42
Veritasium
Рет қаралды 31 МЛН
200 dropped wallets- the 20 MOST and LEAST HONEST cities
8:24
Mark Rober
Рет қаралды 36 МЛН
Transformers (how LLMs work) explained visually | DL5
27:14
3Blue1Brown
Рет қаралды 4,7 МЛН