PQC

PQC – Fit for Future

 

 

Quantum computing – new technology, but risks for security

IT systems rely heavily on current cryptographic algorithms, that can be broken in the near future

Quantum computers are poised to disrupt the cryptographic foundations of our digital world. Current encryption methods, such as RSA and ECC, rely on mathematical problems that quantum computers can solve efficiently, rendering them vulnerable. This poses a significant risk to data protection, email exchanges, payments, communications, and more. The threat is real: data encrypted today could be harvested and decrypted in the future once quantum computing becomes viable.

Transitioning to post-quantum cryptography (PQC) isn’t merely an option—it’s imperative

Governments and standards bodies, including NIST and ENISA, are actively developing and promoting PQC standards. Organisations are encouraged to begin their migration efforts promptly to safeguard their digital assets and ensure long-term security. Delaying this transition could expose your organisation to significant security risks. Embracing PQC now is essential to protect against the impending quantum threat and maintain the integrity of your digital infrastructure..

It’s time to prepare for the future !

The replacement of classic algorithms won’t occur overnight. Nonetheless, it is of utmost importance to know the foreseen time schedule and to prepare most efficiently for migration. Don’t get overwhelmed by PQC deadline, thorough preparation is key. Eviden helps you in planning and executing your migration.

 

Accompanying our customers for the post-quantum era

Create, deploy, manage, and use digital identities is at the heart of Eviden Digital ID

It goes without saying that our product offer is completely aligned to this approach. Providing a coherent end-to-end solution is the guarantee for our customers to rely on future-proof products for digital trust, taking in consideration newest evolution in technology. Digital ID’s product roadmaps focus on inclusion of post quantum algorithms at every step:

  • Cryptographic key generation by means of Eviden Trustway HSM and on-chip with CardOS in conjunction with our partners from the smart card industry.
  • PQC Ready IDnomic PKI implementing crypto-agility and able to issue hybrid/composite and PQC only electronic certificates for users and objects
  • Smart card middleware cryptovision SCinterface and credential management system IDnomic CMS to deploy PQC credentials on all kind of devices
  • End-user applications such as cryptovision Greenshield for secure email and file encryption and IDnomic Sign electronic signature platform, implementing PQC based digital identities.

A concrete example of end-to-end PQC use cases In close cooperation between Innovation and R&D departments, Eviden Digital ID is setting up several proofs-of-concept demonstrating a complete real-life example of PQC implementation. The intention is to showcase typical daily life use cases such as strong authentication and raw/email signature and to help our customers to get better understanding of the new challenges and opportunities of post-quantum and crypto agility implemented in-the-field, making use of almost the complete product portfolio.

Digital ID helps you mastering the PQC challenge

Interested in understanding real-life use cases?

Do you want to test PQC based electronic certificates?

Want to know more about PQC and Eviden Digital ID?

Frequently Asked Questions – Postquantum Cryptography

What is the potential impact of quantum computers on today's cybersecurity?
Our core expertise focuses on cryptography, which is a subset of cybersecurity. From a cryptographic point of view, the threats are different depending on the kind of cryptography used: Symmetric (e.g. AES): Grover’s algorithm will reduce security by a factor of two. We’ll have to use keys twice as big to have the same level of security as today. Asymmetric (RSA/ECC/DH): Shor’s algorithm provides a “fast” way of solving the mathematical problems on which the security of deployed asymmetric crypto (RSA, ECDSA, Diffie-Hellmann, etc.) is based. In order to mitigate this threat, there are other asymmetric cryptosystems that are not threatened by the quantum computer: post-quantum cryptography

How is IDnomic PKI trust infrastructure affected by the advent of post-quantum algorithms?

PKI infrastructures use digital signatures to certify public keys for a broad range of applications. The signatures and public keys used in today’s PKIs are part of the asymmetric cryptography threatened by the quantum computer. PKIs will therefore have to use quantum-resistant algorithms (post-quantum cryptography).

What are international recommandations on PQC?

French ANSSI has published different articles on the Post-Quantum Cryptography (PQC). ANSSI shared recommendations including:

  • A list of asymmetric cryptographic algorithms secured against quantum computer (for KEM and signature)
  • The transition to post-quantum asymmetric algorithms must be a hybrid approach: use of traditional cryptography with post-quantum one (not for USA, hybrid mode is not mandatory)
  • We must anticipate and prepare now

ANSSI views on the Post-Quantum Cryptography transition

Follow-position-paper-post-quantum-cryptography and PQC transition in France ANSSI views

What steps can we take now to prepare for the transition to PQC?

We recommend reading the PQC Migration Guide.

In brief, we can recommend you as a first step to initiate a crypto inventory to identify the risks and challenges associated to the post-quantum era.

Do you have a question? Contact us now!

Do you have any questions about one of our products or solutions? Don't hesitate to contact us. We'll give you expert advice.

Do you want to learn more about Post-quantum migration ?

Download our white paper to better understand all aspects. Get prepared and master your future migration.

For all subjects concerning post-quantum cryptography, ranging from algorithms to international recommendations, you can find an answer in our FAQ document. Don’t hesitate to get in touch with us for further questions about PQC and our products.

Loading

 

Memberships