[TLS] Re: [EXTERNAL] Re: WG Last Call: draft-ietf-tls-mlkem-05 (Ends 2026-02-27)

Ben Schwartz <bemasc@meta.com> Thu, 12 February 2026 19:46 UTC

Return-Path: <prvs=050314fc62=bemasc@meta.com>
X-Original-To: tls@mail2.ietf.org
Delivered-To: tls@mail2.ietf.org
Received: from localhost (localhost [127.0.0.1]) by mail2.ietf.org (Postfix) with ESMTP id BCDF7B67531F; Thu, 12 Feb 2026 11:46:04 -0800 (PST)
X-Virus-Scanned: amavisd-new at ietf.org
X-Spam-Flag: NO
X-Spam-Score: -2.692
X-Spam-Level:
X-Spam-Status: No, score=-2.692 tagged_above=-999 required=5 tests=[BAYES_00=-1.9, DKIM_SIGNED=0.1, DKIM_VALID=-0.1, DKIM_VALID_AU=-0.1, DKIM_VALID_EF=-0.1, HTML_FONT_LOW_CONTRAST=0.001, HTML_MESSAGE=0.001, HTTPS_HTTP_MISMATCH=0.1, RCVD_IN_DNSWL_LOW=-0.7, RCVD_IN_MSPIKE_H3=0.001, RCVD_IN_MSPIKE_WL=0.001, RCVD_IN_VALIDITY_CERTIFIED_BLOCKED=0.001, RCVD_IN_VALIDITY_RPBL_BLOCKED=0.001, SPF_HELO_NONE=0.001, SPF_NONE=0.001] autolearn=ham autolearn_force=no
Authentication-Results: mail2.ietf.org (amavisd-new); dkim=pass (2048-bit key) header.d=meta.com
Received: from mail2.ietf.org ([166.84.6.31]) by localhost (mail2.ietf.org [127.0.0.1]) (amavisd-new, port 10024) with ESMTP id 2lA0iaZHvZ6y; Thu, 12 Feb 2026 11:46:01 -0800 (PST)
Received: from mx0a-00082601.pphosted.com (mx0a-00082601.pphosted.com [67.231.145.42]) (using TLSv1.3 with cipher TLS_AES_256_GCM_SHA384 (256/256 bits) key-exchange X25519 server-signature ECDSA (P-256) server-digest SHA256) (No client certificate requested) by mail2.ietf.org (Postfix) with ESMTPS id 9E5A2B675292; Thu, 12 Feb 2026 11:45:53 -0800 (PST)
Received: from pps.filterd (m0044010.ppops.net [127.0.0.1]) by mx0a-00082601.pphosted.com (8.18.1.11/8.18.1.11) with ESMTP id 61CJSKsA2297763; Thu, 12 Feb 2026 11:45:52 -0800
DKIM-Signature: v=1; a=rsa-sha256; c=relaxed/relaxed; d=meta.com; h= content-type:date:from:in-reply-to:message-id:mime-version :references:subject:to; s=s2048-2025-q2; bh=2DtishGHEgqIXifxb7r0 9uBgi5CvCDju8sFVITDOcKg=; b=jgfZj8cRmgQMPY6gPrBFy8VhpwU2WY2Z+uAj y1yDE+FQAicdhZDq9r/DR6/o+lBSXNX8Dp0p8UdPQi3FZM5wzXjvm+SFijdwffyU hQ8tL6zR3AeIQ/NDlVHUO6iKBAG94bQQrUuAYhlqGJQZkJxaX9upGsLUOMZOO++p ObOdaSXEl+8gx+xxrBM4fuA2Uiw6aNd/OH0zwSLjwxcv1fiOs9oSViXZ5j386vaN 8V+/PznwbBYQqsHNOF4HUFWPCwIXCkD4ntuw0c6SvmFJC5ev6Quvnj28pCT+xjQ+ fQ9xyyvnG7SU7pMsKuNYz7Hz6W84fr/6sa2oz2hKKJUxXvKHgw==
Received: from dm5pr21cu001.outbound.protection.outlook.com (mail-centralusazon11011010.outbound.protection.outlook.com [52.101.62.10]) by mx0a-00082601.pphosted.com (PPS) with ESMTPS id 4c9n248715-1 (version=TLSv1.3 cipher=TLS_AES_256_GCM_SHA384 bits=256 verify=NOT); Thu, 12 Feb 2026 11:45:52 -0800 (PST)
ARC-Seal: i=1; a=rsa-sha256; s=arcselector10001; d=microsoft.com; cv=none; b=O+dCB+O3irTGOXdk0gWg1OTbXrI2O60l6AWIdnCEyQ0LSeQAPLu+LOV8qAKmJxxGdwsCU0C3m0CpwxHUcHDeOnFivZlO/77wy4N6X/WKPBlKbAhIFKK/TcMi1mDtBrEMQFLQueYcp+j3k+HLZ049P9iaFRuxa8eap4CxxLBh6KK1d8wNK4kTt3mfb7+dfgv+n7owq2+fFq7Lu/AhPn5A7GM5YjSculih91ekR8fQ5QmXoavNwk+XZnVZ/0smMU/ggZQLB0/xPuWan0+6z4FUA+/lZfCVYAQXnw/Mwnz7NsYA3n/xQaexOWmC2F56FK/LYydByfS6DdN/vee5HfYx1A==
ARC-Message-Signature: i=1; a=rsa-sha256; c=relaxed/relaxed; d=microsoft.com; s=arcselector10001; h=From:Date:Subject:Message-ID:Content-Type:MIME-Version:X-MS-Exchange-AntiSpam-MessageData-ChunkCount:X-MS-Exchange-AntiSpam-MessageData-0:X-MS-Exchange-AntiSpam-MessageData-1; bh=9TqBpl4Ak9vZwcXGeryQ8QGaNkx7vNliUoWbW3OORmc=; b=vuD4WDGQvEDVYQPyosU2KL28cIsmeWK9APmU3aq9sDhauummIYUX89tuaMvMvXfFjycjL5rNOVuzxOMa9l3+aDV5Ox2SdZlt8egvixVcXB6g30sDaufURCCoTYEkS0gUpUUx4EX3wVHE7PYoo9c6NY4KaPx+ujveL8QCbS/+1PKDuJ1qX/0C5r9JRKlYnVcaKzJaT3pm30tIAgQGBs1pTrv6mvWlJBBZaGiKFWhQzOduL1RJ3P8FCqi8+Vfgu377yV4QBXyTnPXO9cmw6KkOqJ9t4iBqYDO9pC9DFkH+nUdwrDhkHeGQjgD2473/L3Kk52eNrxRXIjhVeaBpWgD+XQ==
ARC-Authentication-Results: i=1; mx.microsoft.com 1; spf=pass smtp.mailfrom=meta.com; dmarc=pass action=none header.from=meta.com; dkim=pass header.d=meta.com; arc=none
Received: from DS0PR15MB5674.namprd15.prod.outlook.com (2603:10b6:8:151::9) by DS2PR15MB6929.namprd15.prod.outlook.com (2603:10b6:8:32b::15) with Microsoft SMTP Server (version=TLS1_2, cipher=TLS_ECDHE_RSA_WITH_AES_256_GCM_SHA384) id 15.20.9611.10; Thu, 12 Feb 2026 19:45:50 +0000
Received: from DS0PR15MB5674.namprd15.prod.outlook.com ([fe80::c125:b18:8040:19dc]) by DS0PR15MB5674.namprd15.prod.outlook.com ([fe80::c125:b18:8040:19dc%6]) with mapi id 15.20.9611.012; Thu, 12 Feb 2026 19:45:50 +0000
From: Ben Schwartz <bemasc@meta.com>
To: Andrei Popov <Andrei.Popov=40microsoft.com@dmarc.ietf.org>, Joseph Salowey <joe@salowey.net>, "<tls@ietf.org>" <tls@ietf.org>
Thread-Topic: [EXTERNAL] [TLS] Re: WG Last Call: draft-ietf-tls-mlkem-05 (Ends 2026-02-27)
Thread-Index: AQHcnFWN5V0JiAzKvUawe/Z087SnsbV/dpFs
Date: Thu, 12 Feb 2026 19:45:49 +0000
Message-ID: <DS0PR15MB5674246D1CCF35D0C9C4695AB360A@DS0PR15MB5674.namprd15.prod.outlook.com>
References: <CAOgPGoDLVqAVesWjrrD9ZR8HMkqQVLMp69vOkXPkk87MzcsOSw@mail.gmail.com> <DS0PR15MB5674C02549255D0DF5FE6E4BB360A@DS0PR15MB5674.namprd15.prod.outlook.com> <CH8PR21MB54845D72660066B45087700A8C60A@CH8PR21MB5484.namprd21.prod.outlook.com>
In-Reply-To: <CH8PR21MB54845D72660066B45087700A8C60A@CH8PR21MB5484.namprd21.prod.outlook.com>
Accept-Language: en-US
Content-Language: en-US
X-MS-Has-Attach:
X-MS-TNEF-Correlator:
msip_labels: MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Enabled=True; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SiteId=72f988bf-86f1-41af-91ab-2d7cd011db47; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_SetDate=2026-02-12T19:26:37.072Z; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Name=General; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_ContentBits=1; MSIP_Label_f42aa342-8706-4288-bd11-ebb85995028c_Method=Standard;
x-ms-publictraffictype: Email
x-ms-traffictypediagnostic: DS0PR15MB5674:EE_|DS2PR15MB6929:EE_
x-ms-office365-filtering-correlation-id: af9e3ddc-f33b-4540-187e-08de6a6f5307
x-fb-source: Internal
x-ms-exchange-senderadcheck: 1
x-ms-exchange-antispam-relay: 0
x-microsoft-antispam: BCL:0;ARA:13230040|1800799024|10070799003|376014|366016|13003099007|8096899003|7053199007|38070700021;
x-microsoft-antispam-message-info: 731XZ0Um+Rfp12VNTBt3AztATQv4V7A7rUDKC5JE3yeeWiBictzJYsmkKRkdGV9MQmT/OQyzQiJQ1kY6MZwVVAOG2O3HxvjU88dxpJqKOHNwSEPJEcrkbZoJ971ysefsb921B7XwWy0S70LBKVCnJn93VTdQLDPb5Bm8dFDUUmaPlBgtjhTMvEhx0CTdtJRC4B/p20MElfxCCwlFX9p4afn491xTGvG7kLFM7laemdaCXJmIY3k306mAzX9tJ7N+gVbmc108Wkw+QQ0qBg9VTAl8zkl2ATBlb0uKxvIkILn1QhpQMzC6LG13ebY6JzcmjWQUy3AICUPH+s/8cqzLAflU6EKrWfqtsOiJ2DVywP5Iv8vCMPDwB4DVAsM/hoSND+iCjAj31N4OsiyJ1Oy7tLX90a//urDMZR2FrzaPQahCtchlg3Bp0Wy3+zXafZjU1O4Rkb/IMKepxtM2EU64+jSc/1vtHOQHs///35caOJtLFz7ZlCGFe1J8SDFCT9yzwQdF2GotaKI4q0+TUrCsy12cjECQh+KfxKACDqX16h1XBZiisDQ1n6MDpQEBEHcbruiOhTg11g9k2cjccSlsOJLKUffEI1v0vpQlpo2gA4ev/gGsVidUqXIBH8608hH426arSnK1MLxNWFOWI++4rtoDXZtrBbPOIYt6/VfyN8oQg47CReoTbG7/YG9Ouviu4P6kfpRJfKhU+2b8aCP/UbS0ufZf9ZlKibVI4g9xqeu29gBhwmluxQa2qTV2yasSOpq/kPVoomQ/0xRI1NMIGiCCrUNvB3IP0GnH+VeY7L29FwFXKic1U2U7LFI+Z0vWxIffrKcKzSuaz/Dk3pTQdGcnb+ILdPRZr44umJNvIUhozFmaDnF5eMHMDzp7A5SwYsRbwLO/ZOMfXq9n/grz1ZbCKRnQUrPmpCAp7ud9hUwOZeZS1UP3RZhWwsaKHVj/JBdsmFImBQ+e4IrFBmd8B5ZEqiH5FC5dGHodWyN9yO25cqb9zk+VZydD8XUqcofPW53hiKLo4nMJVU+0QBbqRSKFC7dG2ygh1nO9r2zKcaP1B6ynIEQHBRPaWaoJaUpk1j/1JK4vXWQf8xaxoOCJ81mceRxY8PnzgoeYPjE8zSLtkZUVF1niTHI6ieIUw4BVHJBPkjzDrNTb4RIVcW2XRT8HBMc1XIfxJWTH9Fh1U8QFhphUFD/5edbcxqeWrPMFwYFA48bFKkBeb+bzs7lzEnfBnEEBF1fOk1ybQ++ypDoNz7F4Bh56v/9AgbJPXX7fso63KDocoTslLoz8ZQG+wUdgJJ8pELdlkhRs+u0oVFZSeXD+gnjp4hYUKIc+c1nKFxMi8FX4oShQQEZaxm99bfClFt2VQ3IljZxVSqlvUscuWUI8vnPrOf6koxD987zJ7w3SV83Y5yVQB+KTkgUJc880ZpHZOS8pktTZbasSwwmRKkJ8mvK6q+5nDxifD5EHOweuT0DB4ikLLWxwmHM9moorTfkiHnkzbe9gcXlmwgIW1DBK5IVK40WB5gzmZXKLMjbUJj+6sK+yRkpeFGTzt9qzjcDgRAQu4N0WEnOWZpC/3eGaNig8ZV9Oqz8xtAwTlfmvguBLQTx3kghIAk1eEPnoou5GCmKzmeNggX1M9Zo=
x-forefront-antispam-report: CIP:255.255.255.255;CTRY:;LANG:en;SCL:1;SRV:;IPV:NLI;SFV:NSPM;H:DS0PR15MB5674.namprd15.prod.outlook.com;PTR:;CAT:NONE;SFS:(13230040)(1800799024)(10070799003)(376014)(366016)(13003099007)(8096899003)(7053199007)(38070700021);DIR:OUT;SFP:1101;
x-ms-exchange-antispam-messagedata-chunkcount: 1
x-ms-exchange-antispam-messagedata-0: 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
Content-Type: multipart/alternative; boundary="_000_DS0PR15MB5674246D1CCF35D0C9C4695AB360ADS0PR15MB5674namp_"
MIME-Version: 1.0
X-OriginatorOrg: meta.com
X-MS-Exchange-CrossTenant-AuthAs: Internal
X-MS-Exchange-CrossTenant-AuthSource: DS0PR15MB5674.namprd15.prod.outlook.com
X-MS-Exchange-CrossTenant-Network-Message-Id: af9e3ddc-f33b-4540-187e-08de6a6f5307
X-MS-Exchange-CrossTenant-originalarrivaltime: 12 Feb 2026 19:45:49.9664 (UTC)
X-MS-Exchange-CrossTenant-fromentityheader: Hosted
X-MS-Exchange-CrossTenant-id: 8ae927fe-1255-47a7-a2af-5f3a069daaa2
X-MS-Exchange-CrossTenant-mailboxtype: HOSTED
X-MS-Exchange-CrossTenant-userprincipalname: mEqLTpRJTkzehYsY6Yc3Jgn5fc1ogXo3lSFp9BmoZa5FNpBe3YVweGA+aKHy4NW2
X-MS-Exchange-Transport-CrossTenantHeadersStamped: DS2PR15MB6929
X-Proofpoint-Spam-Details-Enc: AW1haW4tMjYwMjEyMDE1MyBTYWx0ZWRfX3uPptSjUR04A SmpckTupPoDPDAszuEg4GSeFdXJ8cjEF//5u9AOJiLhfKUkgH9qqSN0JbUuF2MDsk1kD36Le3Zf DUndluxeD36CNGHZ9ugDDk5E8P04MjZ37TFVmCjTvxmHx/AMTMoeyt+ei4p0KK33FHjj4zm3v6s mn3cPXloaDmnRD69SIAHtAriKNLhykqmp2OPhVS2nAqJO+02VQeN/Q77EeYabLL8JJo7GNNXNOk Ys8y5w/HJCM2mRm0GtDmakz5C1n8TEHvw92eSuOrNnmteB0ymbhW1CKQW4BjDIuLcNz6MrX7OAR 0cLJHRZxJXOVbs1r5559sg5SZLgt7qeMUJpcMsEpQDvZGCBr85UCw5kWr5kGSwGkDKW6deUvUfs 8/pa2M9n0+XLH7RPfCwzQA5tYkYNngabDeTG0+9uUYf+rIfJwov1cukpzXsSOsEPor3wZKTttAN 4dPPThnGT1yIYcSLDKA==
X-Proofpoint-ORIG-GUID: W2YhwASJpSH4Zg2cI9dVfxLu0yodmqO_
X-Proofpoint-GUID: W2YhwASJpSH4Zg2cI9dVfxLu0yodmqO_
X-Authority-Analysis: v=2.4 cv=Vbz6/Vp9 c=1 sm=1 tr=0 ts=698e2df0 cx=c_pps a=1oswHZhTlIntAJ9aeONiTQ==:117 a=z/mQ4Ysz8XfWz/Q5cLBRGdckG28=:19 a=lCpzRmAYbLLaTzLvsPZ7Mbvzbb8=:19 a=xqWC_Br6kY4A:10 a=HzLeVaNsDn8A:10 a=VkNPw1HP01LnGYTKEx00:22 a=Mpw57Om8IfrbqaoTuvik:22 a=GgsMoib0sEa3-_RKJdDe:22 a=48vgC7mUAAAA:8 a=VabnemYjAAAA:8 a=VJFHFPW5AAAA:8 a=oPrykNhpLsGGsUJnPMAA:9 a=PRpDppDLrCsA:10 a=QEXdDO2ut3YA:10 a=7M15-DHm3E_-TEx8vE0A:9 a=2q4O/K3rjNU7EHYdBHB6dYyilSc=:19 a=GjyXAgx-EmXkANF1:21 a=frz4AuCg-hUA:10 a=_W_S_7VecoQA:10 a=gKebqoRLp9LExxC7YDUY:22 a=AgADThdNmWmKxPRFMdYg:22
X-Proofpoint-Virus-Version: vendor=baseguard engine=ICAP:2.0.293,Aquarius:18.0.1121,Hydra:6.1.51,FMLib:17.12.100.49 definitions=2026-02-12_05,2026-02-12_03,2025-10-01_01
Message-ID-Hash: HT4KRN4PGEJXGOOEQGCYFAT2PG4UJS3T
X-Message-ID-Hash: HT4KRN4PGEJXGOOEQGCYFAT2PG4UJS3T
X-MailFrom: prvs=050314fc62=bemasc@meta.com
X-Mailman-Rule-Misses: dmarc-mitigation; no-senders; approved; emergency; loop; banned-address; member-moderation; header-match-tls.ietf.org-0; nonmember-moderation; administrivia; implicit-dest; max-recipients; max-size; news-moderation; no-subject; digests; suspicious-header
X-Mailman-Version: 3.3.9rc6
Precedence: list
Subject: [TLS] Re: [EXTERNAL] Re: WG Last Call: draft-ietf-tls-mlkem-05 (Ends 2026-02-27)
List-Id: "This is the mailing list for the Transport Layer Security working group of the IETF." <tls.ietf.org>
Archived-At: <https://mailarchive.ietf.org/arch/msg/tls/5eNNUkioyCwz4yklLa_EHtIg9o0>
List-Archive: <https://mailarchive.ietf.org/arch/browse/tls>
List-Help: <mailto:tls-request@ietf.org?subject=help>
List-Owner: <mailto:tls-owner@ietf.org>
List-Post: <mailto:tls@ietf.org>
List-Subscribe: <mailto:tls-join@ietf.org>
List-Unsubscribe: <mailto:tls-leave@ietf.org>

Thanks for that reference.  CNSA 2.0 seems like an important reference point here, but I don't think it's really a "regulatory framework".  Updated text:

"Use cases include compliance with policies that require standalone post-quantum key establishment (e.g. [CNSA20]), ..."

--Ben Schwartz
________________________________
From: Andrei Popov <Andrei.Popov=40microsoft.com@dmarc.ietf.org>
Sent: Thursday, February 12, 2026 2:26 PM
To: Ben Schwartz <bemasc@meta.com>; Joseph Salowey <joe@salowey.net>; <tls@ietf.org> <tls@ietf.org>
Subject: Re: [EXTERNAL] [TLS] Re: WG Last Call: draft-ietf-tls-mlkem-05 (Ends 2026-02-27)

. . . but are there any active or anticipated regulatory frameworks that impose such a requirement? CNSA: https: //datatracker. ietf. org/doc/draft-becker-cnsa2-tls-profile/ Cheers, Andrei From: Ben Schwartz <bemasc=40meta. com@ dmarc. ietf. org>


  *
...but are there any active or anticipated regulatory frameworks that impose such a requirement?

CNSA: https://datatracker.ietf.org/doc/draft-becker-cnsa2-tls-profile/<https://urldefense.com/v3/__https://datatracker.ietf.org/doc/draft-becker-cnsa2-tls-profile/__;!!Bt8RZUm9aw!6PTLzdFdLSNUl84Z-amiRyhvVmFgJdJLnbEwhFtRA6MF5MaOpgJuU0R3nk0D6zJRW5p2n20yRAP1ZjOPDW-v80kswa0$>

Cheers,

Andrei

________________________________
From: Ben Schwartz <bemasc=40meta.com@dmarc.ietf.org>
Sent: Thursday, February 12, 2026 11:23 AM
To: Joseph Salowey <joe@salowey.net>; <tls@ietf.org> <tls@ietf.org>
Subject: [EXTERNAL] [TLS] Re: WG Last Call: draft-ietf-tls-mlkem-05 (Ends 2026-02-27)

The Motivation section says "Use cases include regulatory frameworks that require standalone post-quantum key establishment".  I know this has been discussed ad nauseam, but are there any active or anticipated regulatory frameworks that impose such a requirement?  I am not aware of any.  If there are regulatory requirements of this kind, I would like to see them included as references for this sentence.  Otherwise, this point should be removed.

Also, as a clarification, I would like to see the following change to the abstract:

Before: "to achieve post-quantum (PQ) key establishment"
After: "to provide post-quantum-only (PQ-only) key agreement"

(This will not be the first proposed standard for PQ key agreement, but it may be the first for PQ-only.)

Finally, the title mentions "Key Agreement", but the text only uses the term "Key Establishment".  (RFC 9794 is similarly mixed up.)  Perhaps we can settle on one term or the other.

--Ben Schwartz
________________________________
From: Joseph Salowey <joe@salowey.net>
Sent: Thursday, February 12, 2026 2:05 PM
To: <tls@ietf.org> <tls@ietf.org>
Subject: [TLS] WG Last Call: draft-ietf-tls-mlkem-05 (Ends 2026-02-27)

This message starts the second Working Group Last Call for the pure ML-KEM document (draft-ietf-tls-mlkem-07). The file can be retrieved from: https: //datatracker. ietf. org/doc/draft-ietf-tls-mlkem/ The diff with the previous WGLC draft (-05)

This message starts the second Working Group Last Call for the pure ML-KEM document (draft-ietf-tls-mlkem-07).


The file can be retrieved from:

https://datatracker.ietf.org/doc/draft-ietf-tls-mlkem/<https://urldefense.com/v3/__https://datatracker.ietf.org/doc/draft-ietf-tls-mlkem/__;!!Bt8RZUm9aw!-_8yM4LiMEqSGuZhY9-gAKTLSdNcbFyFvPQR521wj9mcZiDU4GsBuZynatVvc7avWv4fvQdm$>

The diff with the previous WGLC draft (-05) is here:


https://author-tools.ietf.org/iddiff?url1=draft-ietf-tls-mlkem-05&url2=draft-ietf-tls-mlkem-07&difftype=--html<https://urldefense.com/v3/__https://author-tools.ietf.org/iddiff?url1=draft-ietf-tls-mlkem-05&url2=draft-ietf-tls-mlkem-06&difftype=--html__;!!Bt8RZUm9aw!-_8yM4LiMEqSGuZhY9-gAKTLSdNcbFyFvPQR521wj9mcZiDU4GsBuZynatVvc7avWiBixrEa$>


The main focus of this WGLC is to review new text providing more context around the use of pure ML-KEM.  For those who indicated they wanted this text, please let us know if the new text satisfies you and if you support publication. This working group last call will end on February 27, 2026.


Thank You.