Open marek-lach opened 3 years ago
IMO post-quantum cryptography shouldn't be implemented or in the spec for at least the next 2 or 3 years, and we shouldn't need to worry about it seriously until 2030-35, which means starting to work on using the then-standards in the DIDComm spec by 2027 maybe.
Adding any kind of specifc algorithms to the current spec isn't necessarily a good idea, even if I agree that Crystals-kyber is a good candidate, I don't think we should be that pro-active on the post-quantum front. We can let the PQ competition finish and see what are the standards everybody ends up using in a few years before doing that move.
That's also the position the WG has gone with as well which we tried to allude to in the spec
Although standardization process is ongoing, implementations already exist.