[IPsec] Fwd: I-D Action: draft-ietf-ipsecme-ikev2-pqc-auth-07.txt

tirumal reddy <kondtir@gmail.com> Wed, 01 April 2026 13:31 UTC

Return-Path: <kondtir@gmail.com>
X-Original-To: ipsec@mail2.ietf.org
Delivered-To: ipsec@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 3ABCFD4D1956 for <ipsec@mail2.ietf.org>; Wed, 1 Apr 2026 06:31:53 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1775050313; bh=3A3vsgwUcEORg1a9YCM5Tl5fi1RIXod9l7oMM+/I36U=; h=References:In-Reply-To:From:Date:Subject:To; b=StIlmroFb5Jvjy9oS5o7H6CoBbc9b7wfk+luSbRPvzeCQUzGFsNaKhfzyNVe/kBXP 3B0ATXdYzFB0+5OwLjDrMZwQ0B8gZRBZtMpfJkzgnvMb46Ry/Rl8THoGZBhJ3D9JGT BprcSB+JcpWGZ0nnLzEOsIqbEp9LUtMVFMd8NVl4=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.098
X-Spam-Level:
X-Spam-Status: No, score=-2.098 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, FREEMAIL_FROM=0.001, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_PASS=-0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=gmail.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id EgzkUvg9OOX2 for <ipsec@mail2.ietf.org>; Wed, 1 Apr 2026 06:31:52 -0700 (PDT)
Received: from mail-ej1-x62f.google.com (mail-ej1-x62f.google.com [IPv6:2a00:1450:4864:20::62f]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id C3DA3D4D194F for <ipsec@ietf.org>; Wed, 1 Apr 2026 06:31:52 -0700 (PDT)
Received: by mail-ej1-x62f.google.com with SMTP id a640c23a62f3a-b9c01854477so317422766b.0 for <ipsec@ietf.org>; Wed, 01 Apr 2026 06:31:52 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; t=1775050305; cv=none; d=google.com; s=arc-20240605; b=TD/9lYXKIGPC+vqT5EufOicHOHNUS3g+hntw7+nBC3eYORN6FqBBybdH8i2Nfc38WA 48EMu1Mqa/c38cq7xOOiavWe/BGGYzUsttjEGMSuQTtlaWIPr2sZcH3DmFxsblzzB/4u ba+suw738Zd9LMj+ygwJkcC7aNDfGsxQ/GsqYo9ei6ACBZnBiETIOxkzUM7JahvvrPX0 1/LStkcmtp1ufYt7PfnVspjT8k3CoIuL5OPoMZiOVMBZztEPohEBMjyXHH3guNNpmcAX iM6Qnk9todk/6oUu9SK+uK72/mzOEa1JlZh1zYxI8SDp2R5F4wcwWyQa5XKyGg3s9eto XOIg==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=to:subject:message-id:date:from:in-reply-to:references:mime-version :dkim-signature; bh=QxG9WpDL48tVC5eo+i979FnR7tLsiXBljVPPkRqg1uQ=; fh=O7ehlXw3efqd4UFLWI/rivVgfLJNRQNSolHMYqojgrs=; b=HQK73SARj+kt9QzyKpFyeQeJ666n85P+KVpRXw7/3QzNIQ/l6dfHbtREq3fIVmn3AH CMlAl2tCKHqRtrfrikKdkTt5S1gr+5ekApJYntFmVKfseIaSpYXBqFOwaOhl5/pPD6cu wCBOPxpOMZhOqJy2inAyDvKBgdYow+WsimaNAiol8ZlpXkmFlGfYdfFpzk/M/xeb5fSc fp7jNk+xGlCbVb5jb44NX+MQDgdUjmgqiKUjolxR//9yUeM30cgZlX2gwwP4j2y4Lp39 zBWPwLOeOxis1uFGCY5OtIS0T32/Ozqo68D+mmjG6l64uI64JAodVIE1J4XYhRqLt4Ir ocjA==; darn=ietf.org
ARC-Authentication-Results: i=1; mx.google.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=gmail.com; s=20251104; t=1775050305; x=1775655105; darn=ietf.org; h=to:subject:message-id:date:from:in-reply-to:references:mime-version :from:to:cc:subject:date:message-id:reply-to; bh=QxG9WpDL48tVC5eo+i979FnR7tLsiXBljVPPkRqg1uQ=; b=IxsHWlVXUMcugSF3W8aHn/sBBlO8qRHIUHhewHp9ohVEXMO9nxPppgr1RUqlLYwhl9 83HHJOKEoSBXqtJeZXCQfj0Gtgi3kyy9nVSfpf2ygJCq4gjAporgcoTiunpKAvT1RKlO PqHgVLed5JYFlBrV2nDM7JQvlqm2JdXqqDNhDa/bYx7hG2KnwJcU0z9YBE51FtfJNdFr q2uq7P5cji90sdcZomcBgBWmZIKX8u3X0S4i2tc0iB/9jfsr48yMeHsycmi/Yuj9rjUO w4zXx5aArEMi/iXCaojlhUEZO0rWIePvS2ynIZZ6wPWqskJOZgBMXXyg+5lj7rItvxku RH2A==
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20251104; t=1775050305; x=1775655105; h=to:subject:message-id:date:from:in-reply-to:references:mime-version :x-gm-gg:x-gm-message-state:from:to:cc:subject:date:message-id :reply-to; bh=QxG9WpDL48tVC5eo+i979FnR7tLsiXBljVPPkRqg1uQ=; b=LPseePnawCZMf8D9cXUGteu3yt9OdWnGky2OJrILGXiTGkMG3D+O5NdGPZDBBvgU7q aJRkBgahP7VsvB1WKUfHxA/esUWV/UBJjvB5zbwN57dbcGEo0s120ad5akHCCwFfQmqv 2yBLFEJigbvmtc6ThPqqpW05TaaGkVzFpJER/6H535OBMu1QgESYwCro3VJx4/dxqLu4 SCsLgnmDhgfpET9xUf3S85CaKjF0n3b7uv+hrNoozC5nBCtS1ySg6NQ483zfRjjciCsQ 4N/gbdqUAp1sgJPI+RWaoXTJxNV5vh83tdPfpKfMI21jHiEjakLkdCO6YyAxuWQvqvzH yeTg==
X-Gm-Message-State: AOJu0YyeLJQXOWHyx+p2sugnnXjbW2OlKnCSW0/nbOX3Vu/8UfpRhdjm ASnc1M7oS7qNdTy3B70yS6PzUXCRBBXSTzhmqoXWwYRDjMNGOlMQF6+WxBRb4HUFiF2QiqgRDre I3+XahC4fBe581MO9FDf7th8kpJwbrFaByC3i
X-Gm-Gg: ATEYQzyV/aUNscRbO0Qetfa7CfiJ+o2UeJZ/6nTwh6NjnFYJfXm74YPX6yJhq3cCucE K8VW9RLY8do2KOZr1ta66YEXqECkKcza/cBdJGs8E4MrDs+nhfR9GPoW9EgcS66/+x3J7aqtj4e jyZBbx4pYe/KLx573CPi+dqKTlDeWFDazzIS+ljHdM/ChP1fyYpdXxMoeVPCH/lNtYa34ArMWhd tgNOqm5sh+Nf2LHHJiJz3vXn9GsXSJ4p1JoVG6O/lZUsqQkaSUjiw2OogBbIgkIYzk6aHmXxUJc 5oICB+dZ
X-Received: by 2002:a17:907:d23:b0:b98:6926:13da with SMTP id a640c23a62f3a-b9c13c93f19mr268694166b.45.1775050304716; Wed, 01 Apr 2026 06:31:44 -0700 (PDT)
MIME-Version: 1.0
References: <177504999003.1886541.13116971814305236996@dt-datatracker-5775bcb475-pnkww>
In-Reply-To: <177504999003.1886541.13116971814305236996@dt-datatracker-5775bcb475-pnkww>
From: tirumal reddy <kondtir@gmail.com>
Date: Wed, 01 Apr 2026 19:01:07 +0530
X-Gm-Features: AQROBzDOAU4DpXpscBviFdEU4vGvClS8WU_rLcdOs-wwZuZ5f0TGqCKOLNPXbMs
Message-ID: <CAFpG3gf662_z5H0E+DoyRiQq7uWZaNhdiNK14JRQ2UA469fqPg@mail.gmail.com>
To: ipsec <ipsec@ietf.org>
Content-Type: multipart/alternative; boundary="000000000000df06a1064e661a05"
Message-ID-Hash: KZN3PZEDAFASL7JV2CFDWMDFIKHATFJE
X-Message-ID-Hash: KZN3PZEDAFASL7JV2CFDWMDFIKHATFJE
X-MailFrom: kondtir@gmail.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-ipsec.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [IPsec] Fwd: I-D Action: draft-ietf-ipsecme-ikev2-pqc-auth-07.txt
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipsec/VOlKEQu3kHf6ZtPNsUs2m1Un9Zk>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipsec>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Owner: <mailto:ipsec-owner@ietf.org>
List-Post: <mailto:ipsec@ietf.org>
List-Subscribe: <mailto:ipsec-join@ietf.org>
List-Unsubscribe: <mailto:ipsec-leave@ietf.org>

The revised draft
https://datatracker.ietf.org/doc/draft-ietf-ipsecme-ikev2-pqc-auth/ addresses
comments from Tero.

-Tiru

---------- Forwarded message ---------
From: <internet-drafts@ietf.org>
Date: Wed, 1 Apr 2026 at 18:56
Subject: [IPsec] I-D Action: draft-ietf-ipsecme-ikev2-pqc-auth-07.txt
To: <i-d-announce@ietf.org>
Cc: <ipsec@ietf.org>


Internet-Draft draft-ietf-ipsecme-ikev2-pqc-auth-07.txt is now available. It
is a work item of the IP Security Maintenance and Extensions (IPSECME) WG of
the IETF.

   Title:   Signature Authentication in the Internet Key Exchange Version 2
(IKEv2) using PQC
   Authors: Tirumaleswar Reddy
            Valery Smyslov
            Scott Fluhrer
   Name:    draft-ietf-ipsecme-ikev2-pqc-auth-07.txt
   Pages:   19
   Dates:   2026-04-01

Abstract:

   Signature-based authentication methods are utilized in IKEv2
   [RFC7296].  The current version of the Internet Key Exchange Version
   2 (IKEv2) protocol supports traditional digital signatures.

   This document specifies a generic mechanism for integrating post-
   quantum cryptographic (PQC) digital signature algorithms into the
   IKEv2 protocol.  The approach allows for seamless inclusion of any
   PQC signature scheme within the existing authentication framework of
   IKEv2.  Additionally, it outlines how Module-Lattice-Based Digital
   Signatures (ML-DSA) and Stateless Hash-Based Digital Signatures (SLH-
   DSA), can be employed as authentication methods within the IKEv2
   protocol, as they have been standardized by NIST.

The IETF datatracker status page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-ipsecme-ikev2-pqc-auth/

There is also an HTML version available at:
https://www.ietf.org/archive/id/draft-ietf-ipsecme-ikev2-pqc-auth-07.html

A diff from the previous version is available at:
https://author-tools.ietf.org/iddiff?url2=draft-ietf-ipsecme-ikev2-pqc-auth-07

Internet-Drafts are also available by rsync at:
rsync.ietf.org::internet-drafts


_______________________________________________
IPsec mailing list -- ipsec@ietf.org
To unsubscribe send an email to ipsec-leave@ietf.org