Brainpool removed from crypto-refresh PQC spec

Werner Koch wk at gnupg.org
Mon May 27 16:20:21 CEST 2024


Hi!

The IETF OpenPGP WG just released draft-ietf-openpgp-pqc-03.txt with
this surprising change [1]:

  * Removed NIST and Brainpool curve hybrids, dropped ECDSA from the	
    current specification.	

I wonder why the BSI now favors dropping of Brainpool as part of the
composite encryption algorithms and demand a Bernstein curve - one of
the authors works at the BSI.

Note that the LibrePGP specification explictly marks Brainpool as
SHOULD-implement algorithm for composite PQC encryption.


Salam-Shalom,

   Werner


[1] https://author-tools.ietf.org/iddiff?url2=draft-ietf-openpgp-pqc-03

-- 
The pioneers of a warless world are the youth that
refuse military service.             - A. Einstein
-------------- next part --------------
A non-text attachment was scrubbed...
Name: openpgp-digital-signature.asc
Type: application/pgp-signature
Size: 247 bytes
Desc: not available
URL: <https://librepgp.org/pipermail/librepgp-discuss/attachments/20240527/5b5ec76a/attachment.sig>


More information about the LibrePGP-discuss mailing list