Uploaded image for project: 'JDK'
  1. JDK
  2. JDK-8310572

Support CNSA 2.0

XMLWordPrintable

    • Icon: Enhancement Enhancement
    • Resolution: Unresolved
    • Icon: P3 P3
    • 25
    • None
    • security-libs
    • None

      CNSA 2.0 is announced in Sept 2022: https://media.defense.gov/2022/Sep/07/2003071834/-1/-1/0/CSA_CNSA_2.0_ALGORITHMS_.PDF

      We should check and try to support the new PQC algorithms as well as making necessary adjustments accordingly. See Table IV: CNSA 2.0 algorithms under Appendix for the list of algorithms.

      Update: new release on 1/13/2025: https://media.defense.gov/2022/Sep/07/2003071836/-1/-1/1/CSI_CNSA_2.0_FAQ_.PDF

      According to https://groups.google.com/a/list.nist.gov/g/pqc-forum/c/sS47RFCdJ74/m/WzM0pPcOBQAJ:
      - Listing the NIST standards documents that define CNSA 2.0 suite of algorithms and updated timelines for transitions
      - Clarification on which NIST signatures from the recent standards are allowed for use in NSS
      - Allowance of additional options in internal hardware checks, such as boot-up integrity checks
      - Added context on our views on hybrid systems

            valeriep Valerie Peng
            valeriep Valerie Peng
            Votes:
            0 Vote for this issue
            Watchers:
            1 Start watching this issue

              Created:
              Updated: