Commercial National Security Algorithm Suite (CNSA) 2.0
CNSA 2.0: Approved Quantum-Resistant Algorithms

Commercial National Security Algorithm Suite (CNSA) 2.0 SWSIG: Software/Firmware Signing: LMS or XMSS

For software and firmware signing, use the stateful hash-based signature schemes LMS or XMSS (NIST SP 800-208) at the CNSA 2.0 parameter levels (or ML-DSA); these are approved first because signing is an early-priority use case.

Other controls in CNSA 2.0: Approved Quantum-Resistant Algorithms

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.