Post #2501069
2026-05-07 23:07 UTC
Replies (2)
-
@phlogiston@mastodon.nz 2026-05-07 23:24
There seems to be an ML-KEM WebAuthn draft: https://datatracker.ietf.org/doc/draft-vitap-ml-dsa-webauthn/ And the 'advanced' section of this FIDO2/WebAuthn PQC Testing Platform and Dev Tools are suggesting ML-KEM testability. https://webauthnlab.tech/ But it all seems still a bit 'further out there' to give me warm fuzzies without having to face another disruptive transformation yet again.
-
@iinuwa@fosstodon.org 2026-05-08 16:02
@phlogiston@mastodon.nz @nitrokey@social.nitrokey.com ML-DSA is supported by the protocol today via cryptographic agility, but RPs and authenticators need to catch up. If RPs update their servers to support and prefer ML-DSA then, whenever authenticators support ML-DSA, they will register PQ-safe keys. There is a separate issue of how to support upgrading authenticators that support both classical and PQ algorithms and have previously created a classical credential to use a new PQ cred. More discussion is needed there.