[IPsec] I-D Action: draft-ietf-ipsecme-ikev2-pqc-auth-11.txt
internet-drafts@ietf.org Wed, 05 August 2026 09:54 UTC
Return-Path: <internet-drafts@ietf.org>
X-Original-To: ipsec@ietf.org
Delivered-To: ipsec@mail2.ietf.org
Received: from [10.244.9.190] (gaia.k8s.ietf.org [4.156.85.76]) by mail2.ietf.org (Postfix) with ESMTP id DB023123FCD1C; Wed, 5 Aug 2026 02:54:15 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1785923655; bh=YSafzaUTH7waXKAdgQ9vODfKmmVXbxXvBVk110QfWPU=; h=From:To:Cc:Subject:Reply-To:Date; b=R0aq1W6YekCX8N0nKY91geVo39T5mnfEFk+Cpf6WcQaZDxFv9eCS23pplWcD2wu1Y FctBV68+f0Yg4sCEPIoi244dXj/G4SiiW8hz7L+oPntrsM8tg8eRWTDVQGyCBNSL2o GBVO3k8FnBK2bkwJhhgf5jto1RC2UAzB3wRR35zE=
MIME-Version: 1.0
Content-Type: text/plain; charset="utf-8"
Content-Transfer-Encoding: 7bit
From: internet-drafts@ietf.org
To: i-d-announce@ietf.org
X-Test-IDTracker: no
X-IETF-IDTracker: 12.69.0
Auto-Submitted: auto-generated
Precedence: bulk
Message-ID: <178592365582.711.17235128153151133823@dt-datatracker-54dc84885d-8d5gh>
Date: Wed, 05 Aug 2026 02:54:15 -0700
Message-ID-Hash: MUOD7GDDP2MT3GLYFEFU33H554YDFIK3
X-Message-ID-Hash: MUOD7GDDP2MT3GLYFEFU33H554YDFIK3
X-MailFrom: internet-drafts@ietf.org
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-ipsec.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: ipsec@ietf.org
X-Mailman-Version: 3.3.9rc6
Reply-To: ipsec@ietf.org
Subject: [IPsec] I-D Action: draft-ietf-ipsecme-ikev2-pqc-auth-11.txt
List-Id: Discussion of IPsec protocols <ipsec.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/ipsec/mzGhqXMU82r8dGYy9XRLuK0onCU>
List-Archive: <https://mailarchive.ietf.org/arch/browse/ipsec>
List-Help: <mailto:ipsec-request@ietf.org?subject=help>
List-Owner: <mailto:ipsec-owner@ietf.org>
List-Post: <mailto:ipsec@ietf.org>
List-Subscribe: <mailto:ipsec-join@ietf.org>
List-Unsubscribe: <mailto:ipsec-leave@ietf.org>
Internet-Draft draft-ietf-ipsecme-ikev2-pqc-auth-11.txt is now available. It
is a work item of the IP Security Maintenance and Extensions (IPSECME) WG of
the IETF.
Title: Signature Authentication in the Internet Key Exchange Version 2 (IKEv2) using PQC
Authors: Tirumaleswar Reddy
Valery Smyslov
Scott Fluhrer
Name: draft-ietf-ipsecme-ikev2-pqc-auth-11.txt
Pages: 19
Dates: 2026-08-05
Abstract:
Signature-based authentication methods are utilized in the Internet
Key Exchange Version 2 (IKEv2). The current version of the IKEv2
protocol, specified in RFC 7296, supports traditional digital
signatures.
This document specifies a generic mechanism for integrating post-
quantum cryptographic (PQC) digital signature algorithms into the
IKEv2 protocol. The approach allows for seamless inclusion of any
PQC signature scheme within the existing authentication framework of
IKEv2. Additionally, it outlines how Module-Lattice-Based Digital
Signatures (ML-DSA) and Stateless Hash-Based Digital Signatures (SLH-
DSA), can be employed as authentication methods within the IKEv2
protocol, as they have been standardized by US NIST.
The IETF datatracker status page for this Internet-Draft is:
https://datatracker.ietf.org/doc/draft-ietf-ipsecme-ikev2-pqc-auth/
There is also an HTML version available at:
https://www.ietf.org/archive/id/draft-ietf-ipsecme-ikev2-pqc-auth-11.html
A diff from the previous version is available at:
https://author-tools.ietf.org/iddiff?url2=draft-ietf-ipsecme-ikev2-pqc-auth-11
Internet-Drafts are also available by rsync at:
rsync.ietf.org::internet-drafts
- [IPsec] I-D Action: draft-ietf-ipsecme-ikev2-pqc-… internet-drafts