tireddy2 / pqc-for-engineers

Other
13 stars 8 forks source link

Define "quantum ready" and "quantum secure" #49

Open ounsworth opened 2 months ago

ounsworth commented 2 months ago

I would like to propose definitions for “quantum resistant” and “quantum ready”.

A “quantum ready” system is one that is capable of interacting with peers using post-quantum cryptographic protocols. A “quantum resistant” or “quantum secure” is a system which is fully upgraded to use post-quantum cryptography for all internal security functions. To illustrate the difference, consider a device which supports PQC TLS ciphersuites, but whose firmware and secure-boot system uses only traditional cryptography. Such a system would be considered quantum ready but not quantum secure.

kriskwiatkowski commented 2 months ago

I don't think I agree. Such distinction makes the matter just more complicated ("quantum ready" and "quantum resistant" are very closely related terms)?

But indeed, it's a good point that there is a difference between quantum-resistant protocol and quantum-resistant computer systems.