We make this proposal for two reasons. First, we believe it to be an interesting case study into the practicality of quantum-safe cryptography and into the difficulties one might encounter when transitioning to quantum-safe primitives within real-world protocols and code-bases. Second, we believe that Tor is a strong candidate for an early transition to quantum-safe primitives; users of Tor may be justifiably concerned about adversaries who record traffic in the present and store it for decryption when technology or cryptanalytic techniques improve in the future.
Category / Keywords: cryptographic protocols / tor, lattice-based cryptography, quantum-safe cryptography Original Publication (in the same form): NIST Workshop on Cybersecurity in a Post-Quantum World 2015 (http://www.nist.gov/itl/csd/ct/post-quantum-crypto-workshop-2015.cfm) -- presented but proceedings are not published. Date: received 26 Mar 2015 Contact author: wwhyte at securityinnovation com Available format(s): PDF | BibTeX Citation Version: 20150401:130659 (All versions of this report) Short URL: ia.cr/2015/287 Discussion forum: Show discussion | Start new discussion