Company
Date Published
Author
Sharon Goldberg, Tochukwu Nkemdilim (Toks), and Koko Uko
Word count
2531
Language
English
Hacker News points
None

Summary

The Internet is undergoing a crucial transition to post-quantum cryptography (PQC) to prepare for the potential threat of quantum computers breaking classical cryptographic systems. The U.S. National Institute of Standards and Technology (NIST) has set a timeline for phasing out classical cryptography by 2035. Cloudflare is ahead of schedule by implementing PQC across its products, including the WARP client, which now supports post-quantum key agreement, providing immediate protection against potential future data breaches. The transition involves an intricate process, including a phased approach to introducing PQC in the WARP client, balancing security and robustness, and supporting multiple operating systems. Cloudflare's strategy includes using post-quantum encrypted tunnels to protect internet traffic, even if individual connections have not yet adopted PQC. This effort is part of Cloudflare's commitment to making a secure and private Internet accessible at no extra cost, while maintaining compliance with standards like FedRAMP and FIPS for cryptography.