[TLS] Re: Working Group Last Call for Use of ML-DSA in TLS 1.3

Yaroslav Rosomakho <yrosomakho@zscaler.com> Sat, 11 April 2026 00:27 UTC

Return-Path: <yrosomakho@zscaler.com>
X-Original-To: tls@mail2.ietf.org
Delivered-To: tls@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id 6EDE2DA263B4 for <tls@mail2.ietf.org>; Fri, 10 Apr 2026 17:27:41 -0700 (PDT)
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/simple; d=ietf.org; s=ietf1; t=1775867261; bh=VjM15yuie0XnSNIeijC/RdcX4hJXNYVOV4cq3W2zyAw=; h=References:In-Reply-To:From:Date:Subject:To:Cc; b=XpFiFVW0iOBpwuvww9B8XBeH6N7IX0p/aJLGsZKQxFxH15+tA6LCf2IW+obqeRRew YrTMyrYfBcYHfzUbfkK8QPr+dzKgmAfUKqUoLBZT3/rAnbJHbl11zvXS6witbCNnDB 0LKibe4/4ulyQTJXu+ah03GCAw3ulCzdGWm3rC6k=
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.097
X-Spam-Level:
X-Spam-Status: No, score=-2.097 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_MESSAGE=0.001, RCVD_IN_DNSWL_NONE=-0.0001, SPF_HELO_NONE=0.001, SPF_NONE=0.001] autolearn=unavailable autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (1024-bit key) header.d=zscaler.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 56JupDPHqfmB for <tls@mail2.ietf.org>; Fri, 10 Apr 2026 17:27:41 -0700 (PDT)
Received: from mail-oa1-x2b.google.com (mail-oa1-x2b.google.com [IPv6:2001:4860:4864:20::2b]) (using TLSv1.3 with cipher TLS_AES_128_GCM_SHA256 (128/128 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id DA327DA263AD for <tls@ietf.org>; Fri, 10 Apr 2026 17:27:40 -0700 (PDT)
Received: by mail-oa1-x2b.google.com with SMTP id 586e51a60fabf-41c4d660b19so806491fac.1 for <tls@ietf.org>; Fri, 10 Apr 2026 17:27:40 -0700 (PDT)
ARC-Seal: i=1; a=rsa-sha256; t=1775867254; cv=none; d=google.com; s=arc-20240605; b=LDcps9fzFRnJs+FUnAKQrQyqSkdMV9ow4QMT5lC5HMh7NJZyGhwWw5tDrOLcLa/jE4 uH87OxKRouCtOwNCU5S9qn08qfKSAWCZ+NHmN+9T4NRDGJBHVEMrjzwJVFr7woSrFOk3 WutfuLUj5vSdtjMWHx0VrQ17YmewTinuF1cbA/8qu3kA5vK8qwD5usMYgGTxMKm5zIAg Wj8W7Rc8nZ5RhnlBULGCb5uVqLsUc5iXmLv8BCX0zFLuU8eoBiZN4rXjfB18uubdDJWg bAd1XsGmQVI0FuQUAuYkMiWNIVsWdNKpo05D8N7bb8XVMH/lwK5xzswRkJzmMocqI+ss zg3w==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=google.com; s=arc-20240605; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:dkim-signature; bh=VjM15yuie0XnSNIeijC/RdcX4hJXNYVOV4cq3W2zyAw=; fh=QWCsXK1b2/fYAfMHPE05CqlukyUDLAw6VTvS0uhxORY=; b=fi2HGDIqxCnj1LT0fIJZIX7Ds6NO8HZ0T8LF4Cdlu9QR7hHQETH8oJV9UXnfPRGQPv RBGzTmBzs81bmxtxznrzPnXDuvvlZg/jedPL9m/lHn5Zu4W9oZmBzE534BXu/hIMsaJV 4ycPDphKkuAbH0A7MXfuttehWMcl7vQKR1sWP2zSlNURgoT0DckgpDVOtlIdbycHjemL QBQhemlyNj/KYWnKrtSTV4JoNQ9CzmvzWQKipSe7ombpZKvI7rzwOfMZtKLWHdUutyzr x130WmI1SO9cwjckNX4Z1LrH/h2sesF7or9Yhf0hD/RuUjpUrxACGsUbDpOQwgIGSKxC kaEw==; darn=ietf.org
ARC-Authentication-Results: i=1; mx.google.com; arc=none
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=zscaler.com; s=google; t=1775867254; x=1776472054; darn=ietf.org; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:from:to:cc:subject:date:message-id:reply-to; bh=VjM15yuie0XnSNIeijC/RdcX4hJXNYVOV4cq3W2zyAw=; b=gtgdnvbe767gWqmPmmb6SLoUrThFTTmXjF3VLBSPZ02N4iyHl62dYYjG+MfNdjkXIp S/ZsaFel4bxmTiTDWo93lZsx2cLap5ivwAAU1exCyRNZ1lR0Trl3B01ajY8FdPvZwrpP 8rYv2jm3dHyL3OKvbKZ8THRZxEb9Ibomwq/bE=
X-Google-DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=1e100.net; s=20251104; t=1775867254; x=1776472054; h=cc:to:subject:message-id:date:from:in-reply-to:references :mime-version:x-gm-gg:x-gm-message-state:from:to:cc:subject:date :message-id:reply-to; bh=VjM15yuie0XnSNIeijC/RdcX4hJXNYVOV4cq3W2zyAw=; b=btEwOhhvpq3KAcpq9RpHhU5W5n897XF4wwXJmuLPsnGyMT222BIoa05Fe4mAUd1tas kp68wiIVHgyOej//PRJ10rHflGkkMxGAsnQh5qrV46Qq3tsN7BOyjLnfo9JCQJOSxS1J v7jwAKlu9ltwHRfQb7vqb6Q8Aq42J8+4PfPzTfFzC2H8u+GAI8Br+Mwxd5xJNbqjsNAI zLg3fH+FPSuJRuKeOS48zGGs19Q8g93rSbfQQDJFMVAUV8y4EpITg8KujALXyjASfEUe 4+jD+tlz/S9d4y/88QXmqcU6T1af13UqCajwgnpLCYqso+0rv4lVqueh9Z7G1e34jYbR Qnzg==
X-Forwarded-Encrypted: i=1; AJvYcCX37UlJMMGVuVnwl62DtixO6aoI14oV2MMFOHy5AIUrYoiBoGWAM0kzl/QkxjmKR4bIq9U=@ietf.org
X-Gm-Message-State: AOJu0Yzf6fk6a+7pdEk+ZwbkVAxaJXKomO50U5KSUfPxU5lJzKYHCiaS mVwG62XljXwKcFdIYJGpzatxnYJ/64pQLCMqBLTcrAnT1dsAJXCSairjVMb+NIVJZo8NiTHM+Im LNuQPzJH5/wA/cFa6HKDCygIlQeE3nDkfndNa8aObOVGRbe6BdQ5cP1+mNCnejvP3+jj3OJklTO keG+SsJUtu8q4=
X-Gm-Gg: AeBDiesT7LPne0g2sr16+qWXpwGkWwdHv1sKuiIMZseibikjzfnhyfuZyHYCadW3mR+ zpb7KVKIcHbd8xOy1TpVnyq/r7YcnZybyZcILDyZsAVJr1MkFncOQlELvwnoS5uke8x0J0xTwNu 9Sklhu6WZy2CUnv1/Teptt2x1drWk4ntAK7b2Mim4WA4KRZAYSTJXT8jlaFpB8OSXoX5zfJ+4Mn HppgC30BftiR2qxI371U5yMvEQJA8J/TlZD+WIR0Javy9oqsu/6FIjixYmzTQnd2dtf5JQu26nE x440CEDpZdmDlFrYZB4IqA5X+Ug6G8ATyJRiqVaJypTEdD9S2ZvV
X-Received: by 2002:a05:6870:658d:b0:41c:de1:b21e with SMTP id 586e51a60fabf-423e0e8ca20mr3115758fac.11.1775867253552; Fri, 10 Apr 2026 17:27:33 -0700 (PDT)
MIME-Version: 1.0
References: <16CF0FDA-7263-461A-9F2B-D37DBEAF5DD9@sn3rd.com> <14ab877f-40de-4ece-92a6-4b06ccac3da7@redhat.com> <CAChr6SxMMCviLyVyS6eee7XHKHqD3Q2hjkF+uZv=yTwgQjr69Q@mail.gmail.com>
In-Reply-To: <CAChr6SxMMCviLyVyS6eee7XHKHqD3Q2hjkF+uZv=yTwgQjr69Q@mail.gmail.com>
From: Yaroslav Rosomakho <yrosomakho@zscaler.com>
Date: Sat, 11 Apr 2026 01:27:21 +0100
X-Gm-Features: AQROBzBqSILUMzNQWooXcEFbcRBbFbR1LAPsLAKIgCizp4FRc_yPNwk6C5iKNoM
Message-ID: <CAMtubr0k4W0eSDwiXVfV83XyG46+AjvunZJDGcAx+X64-t9DCg@mail.gmail.com>
To: Rob Sayre <sayrer@gmail.com>
Content-Type: multipart/alternative; boundary="000000000000d19dc4064f24508d"
Message-ID-Hash: E4OI2C7BCFU2MZJ62PUFT3IIDDIWQBRX
X-Message-ID-Hash: E4OI2C7BCFU2MZJ62PUFT3IIDDIWQBRX
X-MailFrom: yrosomakho@zscaler.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-tls.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
CC: Robert Relyea <rrelyea=40redhat.com@dmarc.ietf.org>, "<tls@ietf.org>" <tls@ietf.org>
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [TLS] Re: Working Group Last Call for Use of ML-DSA in TLS 1.3
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/in0flqIK45zKCr42QuukmJx5Avk>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Owner: <mailto:tls-owner@ietf.org>
List-Post: <mailto:tls@ietf.org>
List-Subscribe: <mailto:tls-join@ietf.org>
List-Unsubscribe: <mailto:tls-leave@ietf.org>

I don't think "shipped" means "enabled by default".

As far as I can tell ML-DSA as described in this draft is shipped in the
following TLS stacks:
- OpenSSL
- BoringSSL
- Rustls (via rustls-post-quantum)
- s2n-tls
- WolfSSL
- BouncyCastle
- GnuTLS

I'm sure there are others.

Running code is supposed to be a good thing when it comes to WGLC, right?
Why is it concerning?

-yaroslav

On Sat, Apr 11, 2026 at 12:35 AM Rob Sayre <sayrer@gmail.com> wrote:

> Not sure it's ready yet.
> So, I am surprised Red Hat shipped it.
> A matter of concern.
>
> thanks,
> Rob
>
>
> On Fri, Apr 10, 2026 at 4:22 PM Robert Relyea <rrelyea=
> 40redhat.com@dmarc.ietf.org> wrote:
>
>> On 4/9/26 12:30 PM, Sean Turner wrote:
>> > This is the working group last call for Use of ML-DSA in TLS 1.3.
>> Please review draft-ietf-tls-mldsa [1] and reply to this thread indicating
>> if you think it is ready for publication or not. If you do not think it is
>> ready please indicate why. This call will end on April 23, 2026.
>>
>> I have read this draft and support publication.
>>
>> We have already built and deployed and implementation based on this draft.
>>
>>
>> >
>> > REMINDER: If you have not done so recently, review the TLS WG's Mail
>> List Procedures; see [2].
>> >
>> > The Chairs,
>> > Deirdre, Joe, and Sean
>> >
>> > [1] https://datatracker.ietf.org/doc/draft-ietf-tls-mldsa/
>> > [2]
>> https://mailarchive.ietf.org/arch/msg/tls/ucdImHExlbOf4Q3BCG81gjzi2xE/
>> >
>> > _______________________________________________
>> > TLS mailing list -- tls@ietf.org
>> > To unsubscribe send an email to tls-leave@ietf.org
>> >
>>
>> _______________________________________________
>> TLS mailing list -- tls@ietf.org
>> To unsubscribe send an email to tls-leave@ietf.org
>>
> _______________________________________________
> TLS mailing list -- tls@ietf.org
> To unsubscribe send an email to tls-leave@ietf.org
>

-- 


This communication (including any attachments) is intended for the sole 
use of the intended recipient and may contain confidential, non-public, 
and/or privileged material. Use, distribution, or reproduction of this 
communication by unintended recipients is not authorized. If you received 
this communication in error, please immediately notify the sender and then 
delete all copies of this communication from your system.