The Agence nationale de la sécurité des systèmes d’information (ANSSI) published technical guidance in February 2024 on adapting Transport Layer Security (TLS) 1.3, Internet Protocol Security (IPsec), and Secure Shell (SSH) protocols for post-quantum cryptography ANSSI technical guidance on PQC protocol transition. The guidance recommends a hybrid cryptography approach that combines classical and post-quantum algorithms during the transition period.
ANSSI outlines a three-phase transition timeline extending through 2030. Phase one emphasizes pre-quantum security with optional post-quantum cryptography. Phase two encourages hybrid deployments. Phase three, beginning after 2030, anticipates standalone post-quantum cryptography with validated quantum resistance. First French security certifications for products implementing hybrid post-quantum cryptography are expected in 2024 or 2025.
ANSSI holds advisory functions on cryptographic algorithm selection and regulatory supervision of security evaluations for Common Criteria certifications. The document references ongoing standardization efforts at the National Institute of Standards and Technology and the European Union Agency for Cybersecurity.