The impact of ML-KEM and ML-DSA on mTLS connection Time-to-Last-Byte

  Рет қаралды 47

PKI Consortium

PKI Consortium

Күн бұрын

Multiple studies have evaluated the impact of PQC algorithms in TLS 1.3. These studies have been focusing on server authentication with PQC signatures. To our knowledge, there has been no study focusing on mTLS authentication where the client sends a PQ certificate chain as well. Such connections could be used in Zero Trust Architectures where the client opens multiple connections to various destinations each of which uses mTLS authentication. These sessions will be double impacted by the size of the “authentication data” travelling both directions. This presentation will share experimental results of the Time-to-Last-Byte (TTLB) of mTLS connections using ML-KEM and ML-DSA and transferring small and larger amounts of data. We will evaluate different round-trips, network bandwidth and TCP initial congestion windows. We will discuss the effect of PQC on mTLS sessions and compare it to previous experiments on typical TLS connections. We will cover potential mTLS use-cases that will suffer more than others and ways to improve them.
Mila Anastasova - Applied Scientist at Amazon Web Services (AWS)
Panos Kampanakis - Principal Security Engineer, Applied Scientist at Amazon Web Services (AWS)
‪@amazonwebservices‬

Пікірлер
X9.146 Quantum TLS
32:21
PKI Consortium
Рет қаралды 47
Hybrid PQC E-Mail Communication: Easing Migration Pain
31:01
PKI Consortium
Рет қаралды 37
Beat Ronaldo, Win $1,000,000
22:45
MrBeast
Рет қаралды 158 МЛН
How to treat Acne💉
00:31
ISSEI / いっせい
Рет қаралды 108 МЛН
黑天使被操控了#short #angel #clown
00:40
Super Beauty team
Рет қаралды 61 МЛН
The evil clown plays a prank on the angel
00:39
超人夫妇
Рет қаралды 53 МЛН
Data Blitz - EdCog 2024
25:08
IntroPsych Media
Рет қаралды 3
How much will ML-DSA Signatures affect Web Metrics after all?
26:56
Why the Internet isn’t ready for Post-Quantum Certificates
29:01
Architecting PKI Hierarchies for Graceful PQ Migration
34:12
PKI Consortium
Рет қаралды 79
Update on end-to-end PKI and HSM integrations with ML-DSA
24:17
PKI Consortium
Рет қаралды 158
Quantum Key Distribution - What is done and what is to come
21:54
Making PQ Signatures work in the WebPKI
55:23
PKI Consortium
Рет қаралды 37
Beat Ronaldo, Win $1,000,000
22:45
MrBeast
Рет қаралды 158 МЛН