RFC 9954 on Hybrid Key Exchange in TLS 1.3
rfc-editor@rfc-editor.org Wed, 15 July 2026 22:22 UTC
Return-Path: <rfc-editor@rfc-editor.org>
X-Original-To: ietf-announce@ietf.org
Delivered-To: ietf-announce@mail2.ietf.org
Received: from celery-85b65cd86-67tcf (gaia.k8s.ietf.org [4.156.85.76]) by mail2.ietf.org (Postfix) with ESMTP id 1D22611774710; Wed, 15 Jul 2026 15:22:35 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1784154155; bh=XDmTlahBJ7kjBLxuKVbl+UWbytgZAQC+Wou2zdBw1mg=; h=Subject:From:To:Cc:Date; b=wdpwd49FZW3ToRmWBIdKLiC2BYAlJblQrMEUpYAdDcUH0yrUNATCevhhbeNUqLLWl 3pVV50KzIiEkpmCILjooENh5/yHzPIEg6z+5OPm2b+u+TZmwzgaNpfRO9eFq3rWedi zFiNsH64r6yho4Y32thG6KGXwE+gZwv3r9iJq+xY=
Content-Type: text/plain; charset="utf-8"
MIME-Version: 1.0
Content-Transfer-Encoding: 7bit
Subject: RFC 9954 on Hybrid Key Exchange in TLS 1.3
From: rfc-editor@rfc-editor.org
To: ietf-announce@ietf.org, rfc-dist@rfc-editor.org
Date: Wed, 15 Jul 2026 22:22:35 -0000
message-id: <178415415498.15.15912599801661039709@rfc-editor.org>
Message-ID-Hash: LXG46VYZCLJU5ZZJLVMEZ353CQL5IQC3
X-Message-ID-Hash: LXG46VYZCLJU5ZZJLVMEZ353CQL5IQC3
X-MailFrom: rfc-editor@rfc-editor.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-ietf-announce.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: rfc-editor@rfc-editor.org, tls@ietf.org, drafts-update-ref@iana.org
X-Mailman-Version: 3.3.9rc6
Precedence: list
List-Id: "IETF announcement list. No discussions." <ietf-announce.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/ietf-announce/um0E6TbnHv96yapgEYAF7xZPMG8>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ietf-announce>
List-Help: <mailto:ietf-announce-request@ietf.org?subject=help>
List-Owner: <mailto:ietf-announce-owner@ietf.org>
List-Post: <mailto:ietf-announce@ietf.org>
List-Subscribe: <mailto:ietf-announce-join@ietf.org>
List-Unsubscribe: <mailto:ietf-announce-leave@ietf.org>
A new Request for Comments is now available in online RFC libraries.
RFC 9954
Title: Hybrid Key Exchange in TLS 1.3
Author: D. Stebila,
S. Fluhrer,
S. Gueron
Status: Informational
Stream: IETF
Date: July 2026
Mailbox: dstebila@uwaterloo.ca,
sfluhrer@cisco.com,
shay.gueron@gmail.com
Pages: 18
I-D Tag: draft-ietf-tls-hybrid-design-16
URL: https://www.rfc-editor.org/info/rfc9954
DOI: 10.17487/RFC9954
Hybrid key exchange refers to using multiple key exchange algorithms simultaneously and combining the result with the goal of providing security even if a way is found to defeat the encryption for all but one of the component algorithms. It is motivated by the transition to post-quantum cryptography. This document provides a construction for hybrid key exchange in the Transport Layer Security (TLS) protocol version 1.3.
This document is a product of the Transport Layer Security Working Group of the IETF.
INFORMATIONAL: This memo provides information for the Internet community.
It does not specify an Internet standard of any kind. Distribution of
this memo is unlimited.
This announcement is sent to the IETF-Announce and rfc-dist lists.
To subscribe or unsubscribe, see
https://www.ietf.org/mailman/listinfo/ietf-announce
https://mailman.rfc-editor.org/mailman/listinfo/rfc-dist
For searching the RFC series, see https://www.rfc-editor.org/search/
For downloading RFCs, see https://www.rfc-editor.org/series/rfc-download/
Requests for special distribution should be addressed to either the
author of the RFC in question, or to rfc-editor@rfc-editor.org. Unless
specifically noted otherwise on the RFC itself, all RFCs are for
unlimited distribution.
The RFC Editor Team
- RFC 9954 on Hybrid Key Exchange in TLS 1.3 rfc-editor