Integration of Quantum-Safe Algorithms into X.509v3 Certificates
Congli Wang, Weijia Xue, Jingran Wang · 2023
Public key cryptography has become an essential tool for protecting today’s network traffic. Algorithms such as RSA and ECC, based on the mathematical problems of integer factorization or discrete logarithm, are commonly used However, these problems can be solved in polynomial time on a large-scale quantum computer with Shor’s algorithm. To counter this threat, the cryptography community is actively developing post-quantum cryptography (PQC). To enable public key cryptography algorithms, including PQC algorithms, it is necessary to solve a problem of associating the cryptographic key with the entity it belongs to, usually done through public key infrastructure (PKI) and digital certifica In this paper, we explore how to integrate quantum-safe algorithms into X.509v3 certificates, analyze the schemes for migrating to quantum-safe certificates, compare them, and provide migration recommendations.