<?xml version="1.0" encoding="UTF-8"?>
<reference anchor="I-D.wang-ipsecme-hybrid-kem-ikev2-frodo" target="https://datatracker.ietf.org/doc/html/draft-wang-ipsecme-hybrid-kem-ikev2-frodo-00">
   <front>
      <title>Post-quantum Hybrid Key Exchange in the IKEv2 with FrodoKEM</title>
      <author initials="G." surname="WANG" fullname="Guilin WANG">
         <organization>Huawei Int. Pte Ltd</organization>
      </author>
      <author initials="L." surname="Bruckert" fullname="Leonie Bruckert">
         <organization>secunet Security Networks</organization>
      </author>
      <author initials="V." surname="Smyslov" fullname="Valery Smyslov">
         <organization>ELVIS-PLUS</organization>
      </author>
      <date month="March" day="3" year="2025" />
      <abstract>
	 <t>   Multiple key exchanges in the Internet Key Exchange Protocol Version
   2 (IKEv2) [RFC9370] specifies a framework that supports multiple key
   encapsulation mechanisms (KEMs) in the Internet Key Exchange Protocol
   Version 2 (IKEv2) by allowing up to 7 layers of additional KEMs to
   derive the final shared secret keys for IPsec protocols.  The primary
   goal is to mitigate the “harvest now and decrypt later” threat posed
   by cryptanalytically-relevant quantum computers.  For this purpose,
   usually one or more post-quantum KEMs are performed in addition to
   the traditional (EC)DH key exchange.  This draft specifies how the
   post-quantum KEM FrodoKEM is instantiated in IKEv2 as an additional
   key exchange mechanism.

   [EDNOTE: IANA KE code points for FrodoKEM may need to be assigned, as
   the code points for ML-KEM has been considered in [I-D.KR24]. ]

	 </t>
      </abstract>
   </front>
   <seriesInfo name="Internet-Draft" value="draft-wang-ipsecme-hybrid-kem-ikev2-frodo-00" />
   
</reference>
