NSA Guidance for Transition to Quantum-Resistant Cryptography
NSA transition positions: hybrids, quantum alternatives, pre-shared keys, CSfC, PKI and roots of trust – NSA Guidance for Transition to Quantum-Resistant Cryptography

NSA Guidance for Transition to Quantum-Resistant Cryptography Q-NOVEL: Q-NOVEL Consult NSA before using cryptography CNSA does not specify; no lightweight ciphers

NSS owners must consult NSA before using any cryptography that CNSA 1.0, CNSA 2.0 and NSA's published guidance do not specify. The FAQ names areas with no generally approved NSS solution: private information retrieval, private set intersection, identity-based and attribute-based encryption, homomorphic encryption, group, ring and threshold signatures, searchable encryption and others it lists. NSA does not validate novel vendor cryptography on request; an NSS customer with a mission need engages NSA directly. NSA will not add NIST's lightweight (Ascon-based) ciphers to CNSA, and if CNSA 2.0 does not meet mission performance, early consultation with NSA is required.

Maintained by Gerard BlokdykControl text last updated

Other controls in NSA transition positions: hybrids, quantum alternatives, pre-shared keys, CSfC, PKI and roots of trust – NSA Guidance for Transition to Quantum-Resistant Cryptography

Query this from an agent

The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.