CL
Clemens Lang
— On the schedule —
The Good, the Bad and the Ugly: Tales from the last three years PQC transition at Red Hat
The post-quantum transition isn't always smooth sailing, especially when you're adopting early. Whether it's the larger sizes of PQC key exchange in TLS, availability of HSMs for your signing keys, switching to a different implementation of OpenPGP, or that unexpected corner case you just didn't think of, there's always something that goes wrong. With dedicated people, management top cover and persistence, RHEL was the first distribution to sign its packages with PQC. It wasn't a 100% smooth roll-out. Learn which trade-offs we made, what went wrong and what you should do better. We'll look at common problems we identified while working on the PQC transition for TLS, the current state of what's deploy-able for SSH and IPSec, what's next, and what to do first if you don't yet have a plan.
— Compositor's note —
Clemens Lang is the Product Owner of the Red Hat Enterprise Linux Crypto Team, and represents the Distributions community on the OpenSSL Foundation (Business) Advisory Committee. He is involved in the technical details of the post-quantum transition at Red Hat, contributes to the MacPorts project, and has a background in automotive infotainment systems.