Skip to Content.

rare-users - Re: [RARE-users] Post Quantum Cryptography(PQC) and freeRouter

Subject: RARE user and assistance email list

List archive


Re: [RARE-users] Post Quantum Cryptography(PQC) and freeRouter


Chronological Thread 
  • From: mc36 <>
  • To: Eoin Kenny <>, "" <>
  • Subject: Re: [RARE-users] Post Quantum Cryptography(PQC) and freeRouter
  • Date: Tue, 14 Dec 2021 16:21:37 +0100

hi,
hopefully they'll conclude sooner...
as far as i know quantum computers are real for a while for now:
https://www.google.com/search?q=rent+quantum+computer
regards,
cs



On 12/14/21 15:59, Eoin Kenny wrote:
Hi Csaba,

That does sound promising. Maybe a project for GN5.

Regards
Eoin

-----Original Message-----
From: mc36 <>
Sent: Tuesday 14 December 2021 12:33
To: ; Eoin Kenny <>
Subject: Re: [RARE-users] Post Quantum Cryptography(PQC) and freeRouter

CAUTION[External]: This email originated from outside of the organisation. Do
not click on links or open the attachments unless you recognise the sender
and know the content is safe.


hi,
first of all, im also very interested in the outcome of these efforts...
as i see there is nothing stable i can test against for now, so i'm waiting
for the outcome...
this stands for the ietf efforts...
on the other hand, during wireguard implementation, i added the wg-pqc
extensions...
that one is achieved basically with a pre-shared secret used in key
derivations only...
then i remembered that during macsec key exchange i was not able to reverse
engineer what cisco does, so i came up with my own dhe+preshared
implementation which uses similar thing: does not exchange the preshared key
or anything but uses it to feed the key derivation functions... so for now i
believe we have at least 2 implementation that are pqc-safe at the moment:
wg-psk and macsec-psk...
and as soon as ietf progresses, i plan to proceed with the official ones
too...
regards,
cs




On 12/14/21 13:21, Eoin Kenny wrote:

Hi RARE team,

Has there been any discussion in relation to the possibility of implementing
post-quantum cryptography(PQC) in freeRouter?
https://csrc.nist.gov/projects/post-quantum-cryptography/round-3-submi
ssions

Standardisation is expected to be completed in 2022 and Classic McEliece
looks like a good candidate for testing.
https://classic.mceliece.org/
There are already some implementations, Adva [1] and
https://post-quantum.com/.

There is working ongoing in the IETF on extending IKEv2 to handle larger
payloads. It may be possible to implement PQC for IPsec with PQ-IKEv2 and
Classic McEliece coding.

Regards
Eoin

[1]
https://www.adva.com/en/resources/resources-gated-page/solution-briefs
/making-networks-quantum-safe



Archive powered by MHonArc 2.6.19.

Top of Page