[IPsec] I-D Action: draft-ietf-ipsecme-ikev2-pqc-auth-11.txt

internet-drafts@ietf.org Wed, 05 August 2026 09:54 UTC

Return-Path: <internet-drafts@ietf.org>
X-Original-To: ipsec@ietf.org
Delivered-To: ipsec@mail2.ietf.org
Received: from [10.244.9.190] (gaia.k8s.ietf.org [4.156.85.76]) by mail2.ietf.org (Postfix) with ESMTP id DB023123FCD1C; Wed, 5 Aug 2026 02:54:15 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1785923655; bh=YSafzaUTH7waXKAdgQ9vODfKmmVXbxXvBVk110QfWPU=; h=From:To:Cc:Subject:Reply-To:Date; b=R0aq1W6YekCX8N0nKY91geVo39T5mnfEFk+Cpf6WcQaZDxFv9eCS23pplWcD2wu1Y FctBV68+f0Yg4sCEPIoi244dXj/G4SiiW8hz7L+oPntrsM8tg8eRWTDVQGyCBNSL2o GBVO3k8FnBK2bkwJhhgf5jto1RC2UAzB3wRR35zE=
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 12.69.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <178592365582.711.17235128153151133823@dt-datatracker-54dc84885d-8d5gh>
Date: Wed, 05 Aug 2026 02:54:15 -0700
Message-ID-Hash: MUOD7GDDP2MT3GLYFEFU33H554YDFIK3
X-Message-ID-Hash: MUOD7GDDP2MT3GLYFEFU33H554YDFIK3
X-MailFrom: internet-drafts@ietf.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-ipsec.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: ipsec@ietf.org
X-Mailman-Version: 3.3.9rc6
Reply-To: ipsec@ietf.org
Subject: [IPsec] I-D Action: draft-ietf-ipsecme-ikev2-pqc-auth-11.txt
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipsec/mzGhqXMU82r8dGYy9XRLuK0onCU>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipsec>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Owner: <mailto:ipsec-owner@ietf.org>
List-Post: <mailto:ipsec@ietf.org>
List-Subscribe: <mailto:ipsec-join@ietf.org>
List-Unsubscribe: <mailto:ipsec-leave@ietf.org>

Internet-Draft draft-ietf-ipsecme-ikev2-pqc-auth-11.txt is now available. It
is a work item of the IP Security Maintenance and Extensions (IPSECME) WG of
the IETF.

   Title:   Signature Authentication in the Internet Key Exchange Version 2 (IKEv2) using PQC
   Authors: Tirumaleswar Reddy
            Valery Smyslov
            Scott Fluhrer
   Name:    draft-ietf-ipsecme-ikev2-pqc-auth-11.txt
   Pages:   19
   Dates:   2026-08-05

Abstract:

   Signature-based authentication methods are utilized in the Internet
   Key Exchange Version 2 (IKEv2).  The current version of the IKEv2
   protocol, specified in RFC 7296, supports traditional digital
   signatures.

   This document specifies a generic mechanism for integrating post-
   quantum cryptographic (PQC) digital signature algorithms into the
   IKEv2 protocol.  The approach allows for seamless inclusion of any
   PQC signature scheme within the existing authentication framework of
   IKEv2.  Additionally, it outlines how Module-Lattice-Based Digital
   Signatures (ML-DSA) and Stateless Hash-Based Digital Signatures (SLH-
   DSA), can be employed as authentication methods within the IKEv2
   protocol, as they have been standardized by US NIST.

The IETF datatracker status page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-ipsecme-ikev2-pqc-auth/

There is also an HTML version available at:
https://www.ietf.org/archive/id/draft-ietf-ipsecme-ikev2-pqc-auth-11.html

A diff from the previous version is available at:
https://author-tools.ietf.org/iddiff?url2=draft-ietf-ipsecme-ikev2-pqc-auth-11

Internet-Drafts are also available by rsync at:
rsync.ietf.org::internet-drafts