NSA Guidance for Transition to Quantum-Resistant Cryptography
CNSSP 15 milestones for NSS – NSA Guidance for Transition to Quantum-Resistant Cryptography

NSA Guidance for Transition to Quantum-Resistant Cryptography P-PROTO: P-PROTO Use NSA-approved public standards-based cryptographic protocols; NSA approves any other algorithm

To keep NSS interoperable, departments and agencies must use NSA-approved public standards-based cryptographic protocols, following NSA's protocol guidance such as RFC 9206 (CNSA suite for IPsec) and RFC 9151 (CNSA suite profile for TLS and DTLS 1.2 and 1.3), which still apply but need updating for the CNSA 2.0 algorithms. Any other cryptographic algorithm in an NSS needs approval from NSA Encryption Production and Solutions, and NSA may approve other algorithms for specific requirements with their own restrictions.

Maintained by Gerard BlokdykControl text last updated

Other controls in CNSSP 15 milestones for NSS – NSA Guidance for Transition to Quantum-Resistant Cryptography

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.