SearchOpen search

Already by 2030, a Japanese consortium plans to introduce the first practical implementations of cryptography resistant to quantum computing based attacks. In a joint trial, the partners have demonstrated proof of concept for migration from current cryptography to Post-Quantum Cryptography.

Internet security builds on digital certificates that use public-key cryptography to verify the identity of communicating entities. The certificates are issued and validated by trusted third-party organizations. However, quantum computers may be able to crack the public-key cryptography that currently underpins this infrastructure.

While preparations for a new generation of “quantum-resistant” cryptography are well underway, it must be ensured that chaos will not prevail during the interim phase when the current infrastructure will gradually be replaced. Japan’s National Institute of Information and Communications Technology (NICT) and two industry partners have demonstrated proof of concept for seamless migration to Post-Quantum Cryptography.

Transition involves risk of disruptions

Only in theory would it be possible to switch instantly from one cryptography regime to another across the globe. In practice the transition will have to be gradual, which does imply risk of service disruptions or outages.

TOPPAN Holdings Inc., NICT, and ISARA Corporation have successfully conducted proof of concept confirming the effectiveness of technology for seamless migration from current cryptography to Post-Quantum Cryptography for certificate authority frameworks that form the base of the security infrastructure of internet communications.

The three partners target full real-world implementation of Post-Quantum Cryptography in 2030 for sectors requiring high levels of security, such as healthcare, finance, and government.

Simulation on a hybrid ecosystem

Development of Post-Quantum Cryptography involves creation of new algorithms. The US National Institute of Standards and Technology (NIST) has selected the algorithms ML-DSA and ML-KEM as part of its standardization efforts.

ISARA has developed digital certificates issued via a secondary crypto-agile root certificate to facilitate migration from current cryptography to algorithms such as ML-DSA. In the proof of concept, this secondary root certificate was integrated into a smart card system developed by TOPPAN Holdings on a quantum cryptography network testbed constructed by NICT.

The ability to transition smoothly to Post-Quantum Cryptography without disruption of existing authentication infrastructure was demonstrated through simulation of a transitional phase ecosystem in which both current cryptography and Post-Quantum Cryptography are used for smart-card enabled ID verification and internet access.

Source: “TOPPAN Holdings, NICT, and ISARA establish proof of concept for technology enabling seamless migration to Post-Quantum Cryptography for certificate authorities”, Press Release, TOPPAN, NICT, ISARA.

Contributors

Submit a Story

Are you a R&E network with a story to tell? We want to hear it!