← Back to release summary

CECPQ1 in TLS

Category
Network / Connectivity
Type
New or changed feature
Status
Enabled by default (Chrome 54)
Intent stage
None

Summary

CECPQ1 is a post-quantum cipher suite: one that is designed to provide confidentiality even against an attacker who possesses a large quantum computer. It is a key-agreement algorithm plugged into TLS that combines X25519 and NewHope, a ring-learning-with-errors primitive. Even if NewHope turns out to be breakable, the X25519 key-agreement will ensure that it provides at least the security of our existing connections. This is only an experiment and will only be used on a small fraction of HTT

Standards & signals

Docs: https://security.googleblog.com/2016/07/experimenting-with-post-quantum.html https://www.imperialviolet.org/2015/12/24/rlwe.html https://eprint.iacr.org/2015/1092

View on chromestatus.com